hostit changelog

The recent releases of hostit, newest first. Dates are the release date. Anything that changes a config default or on-disk state is called an Upgrade note.

v0.48.1 – 2026-09-28

A quieter node while someone is watching, and two small fixes.

v0.48.0 – 2026-09-28

Alert destinations for everyone, and a much quieter node.

v0.47.0 – 2026-09-28

Alerting, password sign-in, a Settings page, and apps that can call each other through a proxy on a private network.

v0.46.0 – 2026-09-23

Cluster members must be approved before they get in, a revoked node stops serving, and an assistant chat can no longer wedge itself on an oversized tool result.

v0.45.0 – 2026-09-19

IPv6 support, MCP connection tools, and an assistant that keeps working when a model’s limit is reached.

v0.44.0 – 2026-09-18

hostit as an MCP server: create and manage your apps from an assistant on your own machine.

v0.43.0 – 2026-09-17

Delegated connections, and a redesigned Connections page.

v0.42.0 – 2026-09-16

Node-to-node app moves for admins, capacity-aware placement, and a security fix for chat-to-app conversion.

v0.41.0 – 2026-09-14

Conversations: standalone chats with the built-in assistant, separate from apps, plus an always-on app gallery and sharper admin and CLI tooling.

v0.40.0 – 2026-09-08

A security fix for app egress that had never actually worked, plus GitHub, Stripe and GitHub App connections. Upgrading is strongly recommended for any instance running untrusted apps, and required on a cloud host with a metadata service.

v0.39.1 – 2026-09-04

Security fixes from a review of the whole codebase. Recommended for any instance where people share or hand over apps.

v0.39.0 – 2026-09-04

A public app gallery, a Google Drive connection, an instance default for the assistant’s model, and a substantially more reliable app preview.

v0.38.0 – 2026-09-03

Deferred app deletion (a delete you can take back), plus assistant reliability and SSH-relay improvements.

v0.37.0 – 2026-09-02

Connections gain permission checkboxes, editable and genuinely narrowable permissions, token revocation, and richer provider configuration.