Fixed
- Reject unknown named upstream profiles before egress and preserve the selected profile name in telemetry.
- Enforce proxy and telemetry request limits using UTF-8 byte counts, including both external telemetry intake routes.
- Classify trusted externally supplied costs as provider-reported and validate that supplied costs are non-negative numbers.
- Make backup retention inventory the generated files on disk so missing or stale manifests cannot bypass pruning.
- Validate reprice time and row-limit selectors before generating SQL and record every pricing source actually applied.
- Treat missing, null, and empty OpenRouter base rates as unavailable instead of zero-cost pricing.
Changed
- Refresh the checked-in provider and OpenRouter pricing catalogs and their documented coverage.
Migration notes
No migration is required. This patch release contains backward-compatible fixes and pricing catalog updates.
Verification
- Full
tests/*.jsregression suite passed with the Kujo runtime. - Compatibility entrypoints are synchronized.
- Release metadata is aligned at
1.0.1.