NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
Go modules · #1527 by repository stars
Last release 2 days ago
06 Oct 2026
Release timing varies
gaps range from 8 days to 4 months
Some releases are documented
notes for 24 of the last 60 stable releases
Nothing withdrawn
no release was ever pulled
6 years old
120 releases · first in 2020
One column per quarter.
709b709 : fix(server): take a foreign value in a key its own lease holds as a loss, and leave a value that names no session out of the watch's view (
8c4540f : feat(cli): show a reconnecting session's connect string, and why and when it retries ( #617 ) ( @owenthereal )
723a701 : build(deps): bump github/codeql-action from 4.38.1 to 4.38.2 ( #611 ) ( @dependabot [bot])
Security issues can be reported privately through GitHub's private vulnerability reporting; see SECURITY.md.
Security
--authorized-user and --authorized-keys. The relay now honours the identity in a guest certificate only if it signed the certificate itself, and the host only if the relay it connected to did. If you run your own uptermd, upgrade every serving node: a patched host alone does not protect a session routed through an unpatched relay. uptermd.upterm.dev already runs 0.33.0.Behaviour changes
--detach, CI), the session's output now goes at the pace of the guest who joined first, as over plain ssh, instead of dropping every guest on a large burst. If the guest setting the pace takes no output for 5 seconds while output is waiting, it is disconnected and the next guest takes over.--accept, an SFTP operation nobody can be asked about is denied. When no permission dialog can be shown (no display, such as on a machine reached over SSH, or on Linux no zenity, qarma or matedialog), downloads, uploads and changes are refused and logged; before, they were allowed without asking. Directory listing still works. Pass --accept to allow transfers without asking, or --no-sftp to turn SFTP off. Detached sessions and CI are unaffected, because --detach requires --accept.--authorized-keys.Fixes
upterm session info show, not by the relay's certificate.~^Z in upterm host or upterm attach hands the shell a normal terminal (off a full-screen program's alternate screen, cursor shown, mouse off), and fg puts the program back. bg leaves the job stopped instead of detaching it; fg resumes it.upterm session wait exits 125, as for any other startup failure, when a detached session cannot record that it is ready. It used to report the teardown's hangup (129 on Unix) as the command's own exit.Security issues can be reported privately through GitHub's private vulnerability reporting; see SECURITY.md.
Nothing published for this version
Corrects upterm session set --help and its man page: a session a guest has already claimed also exits 0. No behaviour changes since v0.32.0.
Corrects upterm session set --help and its man page: a session a guest has already claimed also exits 0. No behaviour changes since v0.32.0.
Upgrading from v0.31? v0.32.0 changed:
upterm session info and upterm session stop exit 4, not 1, when no session has the name. Other failures still exit 1; session wait is unchanged.--authorized-user github:NAME fetches the user's public keys from github.com anonymously, logging a warning, when gh auth token does not answer within 5 s; before, the session failed to start. GitHub Enterprise hosts and github:NAME@HOST references still fail.upterm session set NAME --join-timeout D sets a running session's join timeout, counted from now: open a session during a build and give people a window to join after it. Each call restarts the window; 0 disables it. Once a guest has joined, the session is claimed and set changes nothing. session info -o json and upterm host --detach -o json show joinTimeout, joinDeadline and joinStateSource.upterm session info and upterm session stop exit 4, not 1, when no session has the name. Other failures still exit 1; session wait is unchanged.
Behaviour changes
upterm session info and upterm session stop exit 4, not 1, when no session has the name. Other failures still exit 1; session wait is unchanged.--authorized-user github:NAME fetches the user's public keys from github.com anonymously, logging a warning, when gh auth token does not answer within 5 s; before, the session failed to start. GitHub Enterprise hosts and github:NAME@HOST references still fail.New
upterm session set NAME --join-timeout D sets a running session's join timeout, counted from now: open a session during a build and give people a window to join after it. Each call restarts the window; 0 disables it. Once a guest has joined, the session is claimed and set changes nothing. session info -o json and upterm host --detach -o json show joinTimeout, joinDeadline and joinStateSource.9018c40 : build(deps): bump github.com/cli/go-gh/v2 from 2.16.0 to 2.16.1 ( #576 ) ( @dependabot [bot])
78eba9e : Four follow-ups on --private-key under --identities-only ( #564 ) ( #569 ) ( @optimalone )
upterm host becomes a daemon with its terminal as a client, and upterm attach puts any terminal on a running session (#559) (@optimalone)67b12cb : Bump github.com/cli/go-gh/v2 from 2.13.0 to 2.16.0 ( #545 ) ( @dependabot [bot])
ea38079 : Clarify host-key confirmation errors when stdin closes ( #543 ) ( @owenthereal )
Nothing published for this version
6a27526 : Authorize users from self-hosted forges with a single --authorized-user flag ( #538 ) ( @optimalone )
5f86e79 : Exercise WebSocket CLI sync in Go E2E tests ( #528 ) ( @owenthereal )
Nothing published for this version
bdc1ebe : Keep PROXY headers optional for internal SSH hops ( #527 ) ( @optimalone )
1d36cf4 : Fix staticcheck SA1019 on deprecated sentryslog Option.Level ( #514 ) ( @optimalone )
postflight stanza (#522) (@owenthereal)Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
1a62f52 : Bump github.com/getsentry/sentry-go/slog from 0.46.1 to 0.46.2 ( #478 ) ( @dependabot [bot])
e36c605 : Add Claude Code GitHub Workflow ( #461 ) ( @owenthereal )
Nothing published for this version
00f00da : Add E2E tests using tmux as headless terminal emulator ( #436 ) ( @owenthereal )
059c8c4 : Bump github.com/samber/slog-multi from 1.6.0 to 1.7.0 ( #435 ) ( @dependabot [bot])
7ec24bb : Add --output flag to upterm session current for shell integration and improve session commands TUI ( #433 ) ( @owenthereal )
d842842 : Add robust XDG directory fallback for non-interactive environments ( #419 ) ( @owenthereal )
8245d37 : Add --skip-host-key-check flag to auto-accept server host keys ( #412 ) ( @owenthereal )
97cf757 : Add Windows Support ( #391 ) ( @mxschmitt )
417e7b8 : Add Prometheus metrics for connection monitoring ( #385 ) ( @optimalone )
7d09f81 : Fix known_hosts IPv6 formatting and remove IP address storage ( @owenthereal )
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Your coding agent can read these notes before it upgrades. Set up the MCP server →