v1.24.2
A server with credential encryption enabled now hands the one-time key-derivation memory back to the operating system at startup, so it idles at the same small footprint as one without. The docs also gain a benchmarks page with measured, reproducible numbers.