Changed
- Hardened inbound email ingestion across IMAP, Gmail, and Microsoft Graph with bounded provider hydration, safer attachment handling, stable idempotency, and stricter ticket-thread authorization.
- Strengthened authentication and recovery flows with single-use links, account-scoped rate limits, reauthentication for identity changes, and consistent session and credential revocation.
- Reduced sensitive data exposure in agent and customer responses, rendered stored message content inertly, and tightened ticket and portal authorization.
- Hardened Docker deployment and update workflows, including private service topology, per-installation database credentials, protected backups, verified immutable release tags, secret-safe build contexts, and pinned build inputs.
- Fixed Docker first boot, PHP IMAP availability, mailbox credential access, mailbox type hydration, and frontend dependency builds.
- Resolved known JavaScript dependency advisories and made the installed version code-owned so existing environment files cannot report a stale release.
Upgrade
For supported Docker Compose installations, review the upgrade guide and run ./deploy/update-docker.sh v1.1.2 from a clean QueueFix checkout while the current app service is running. The updater verifies this immutable release, creates a restricted PostgreSQL backup, rebuilds services, installs locked dependencies, and runs migrations.
An existing QUEUEFIX_VERSION entry may remain in .env; v1.1.2 ignores it so the installed version always follows the checked-out release.
Verification
The release commit passed PostgreSQL, MySQL, frontend, Docker build, deployment security, formatting, and static-analysis checks. The full local suite passed 543 tests with 2,799 assertions; dependency audits reported no known vulnerabilities.