Skip to content

v0.2.0 — security hardening

Choose a tag to compare

@tonylchang tonylchang released this 15 Aug 23:54
· 15 commits to main since this release

A security-hardening release: a deep review of the redaction pipeline, approval flow, and policy layer found and fixed ten defects — including a CronJob identity-annotation leak, an out-of-band approval bait-and-switch window, fabricated readiness on approval cards, a masked-node-name oracle via field selectors, and IPv6/entropy scrubbing gaps. All fixes ship with regression tests (157 tests + live kind-cluster write-path coverage), and locked dependencies were upgraded past 10 known CVEs.

Upgrading is strongly recommended: uv tool upgrade janus-mcp-server (or pipx upgrade janus-mcp-server).

Full details: CHANGELOG.md
Website: https://janus-mcp.ns47.com