Skip to content

Release notes

This is the public changelog for AuroraDocs. It is updated when a public release is prepared and focuses on visible product changes, compatibility notes, and important fixes.

Internal engineering notes, private issue links, and commit-level details are intentionally left out. Changes that do not affect day-to-day use are only mentioned when they improve availability, security, compatibility, or trust.

Recent releases

0.9.4 — 2026-07-16

Improved

  • Sensitive session controls now guide you through fresh verification. When revoking a session requires renewed confirmation, Security settings offer the account's email-code or authenticator method and safely retry the action after verification.

  • MCP workspace access is more reliable for approved agents. Workspace owners can issue scoped grants without the database error that previously interrupted grant creation, while deny-by-default policy, independent revocation, and explicit workspace selection remain enforced.

  • Scheduled backup handling is safer under pressure. AuroraCloud now stops exhausted backup jobs from being leased again and reads bounded metadata when checking stored artifacts, reducing memory and disk pressure without changing restore compatibility.

Fixed

  • The in-app changelog shows the complete recent release history again. The Changelog view no longer skips directly from the latest release to an older entry.

0.9.3 — 2026-07-15

New

  • Closed-app E2EE capture is safer and more useful. The browser clipper can submit opaque encrypted captures for approval after the workspace is unlocked, without receiving workspace keys or read access.

  • MCP access can now span explicitly approved workspaces. Workspace owners control client identities, grants, scopes, expiry, and revocation, while project context remains bounded and least-privilege by default.

Improved

  • Sign-in is clearer across browser and desktop. Provider controls use recognizable monochrome marks, browser OAuth completes in the current window, and Apple login/signup behavior is aligned across supported surfaces.

  • Desktop endpoint switching is safer. Switching between production, staging, local, and self-hosted AuroraCloud realms now protects pending work, closes secondary contexts, and fails closed before destructive cleanup when a prerequisite is not met.

Fixed

  • Password recovery is available directly from sign-in. Users can request a reset link without exposing whether an account exists, and signup recovery verification can return to the phrase display without losing entered words.

0.9.2 — 2026-07-12

New

  • Important workspace notices can appear directly in AuroraDocs. Workspace operators can publish active alerts that appear in the app and Notification Center, making service and operational notices easier to see.

Improved

  • Research and retrieval evidence is easier to inspect. Research Studio provides more reviewable source citations, while Ask and Intelligence expose clearer retrieval readiness and source diagnostics. Optional local embeddings can improve matching while preserving sparse search as a fallback.

  • Block references are more durable. Addressable editor blocks now retain stable anchors through ordinary edits and moves, while copied or restored content avoids accidental duplicate identities.

  • Desktop builds can connect to self-hosted AuroraCloud servers. A hidden maintainer control can switch between production, hosted staging, a local backend, or a validated custom endpoint. Production remains the default.

0.9.1 — 2026-07-09

Improved

  • Hosted AuroraAI has stricter fair-use protection. AuroraCloud now protects the hosted provider path with provider-wide request pressure limits, a cap on concurrent hosted requests, per-user anti-abuse limits, and output-token caps before provider calls are made.

  • AuroraAI allowances can be tuned without another deploy. Operators can adjust Plus and Pro hosted-AI allowance values from the AuroraAI admin settings page, while the default allowances now match the fixed-price provider path.

Fixed

  • Production API and desktop release packaging are unblocked. The API release package installs cleanly from its standalone server directory, and the Windows desktop release job can run the web build step during stable desktop packaging.

0.8.8 — 2026-06-24

Improved

  • Desktop pages open from local data first. AuroraDocs Desktop now paints object pages from the local cache before cloud collaboration catch-up runs, so opening a note is no longer blocked by AuroraCloud or a full collaboration document load.

  • Desktop sync does less duplicate work. Local editor saves write to the device first, queued sync work is coalesced when repeated changes target the same resource, and existing folder imports wake open documents through the same local document update path.

  • The desktop updater currently focuses on Apple silicon macOS. To save build time while the desktop recovery work is being tested, this release publishes the macOS Apple silicon installer/update artifact. Linux, Windows, and macOS Intel artifacts can be re-enabled later.

Fixed

  • Opening a page no longer creates extra tag sync writes. Aurora no longer rewrites hashtag metadata just because existing content was loaded, reducing page-open queue noise and avoiding unnecessary sync retries.

  • Collaboration recovery is safer around large or unhealthy documents. Desktop collaboration state loads lazily, uses smaller catch-up requests when available, and avoids applying oversized remote collaboration blobs on the UI thread before the page is usable.

  • Existing desktop sessions recover more calmly from missing local folders. If a previously selected local folder is missing or inaccessible, Aurora now keeps the recovery screen available instead of clearing the device session automatically during a passive startup check.

0.8.4 — 2026-06-23

Fixed

  • Desktop collaborative editing uses less CPU. Cursor presence now avoids redundant editor redraws, repeated cursor-label animation, and extra avatar image fetches while keeping local and remote cursor visibility intact.

0.8.3 — 2026-06-23

Improved

  • Large object lists open much faster. Default note, page, and custom-object lists now load a visible window first and continue loading as you scroll, instead of waiting for every object and property to be prepared up front.

  • Cross-device changes arrive sooner. Object, property, and content updates now wake other open Aurora clients through realtime notifications, while polling remains in place as the safety net.

  • Collaborative editing is lighter. Shared editor sessions save smaller Yjs updates, avoid re-applying unchanged remote document snapshots, and show your own cursor/avatar locally alongside collaborators.

Fixed

  • Sync Center recovers temporary network failures more reliably. Browser and desktop transport errors such as Network — Load failed, request timeouts, and rate limits now stay retryable instead of turning into permanent stuck rows after repeated attempts.

  • Sync Center actions match the visible queue state. The bulk retry and recover controls now include stuck/dead-letter rows when appropriate, and recent manual sync results include permanent queue errors that still need attention.

  • Manual sync is safer around permanent failures. Sync now retries ordinary failed work and protected temporary network failures, while explicit retry actions remain the way to intentionally re-run permanent dead-letter rows.

  • Long desktop and PWA sessions are less likely to ask for password and MFA again. Aurora now coordinates refreshes across tabs and closed-window background sync so a background refresh does not leave the foreground app with an older rotated session.

  • Admin operations stays available when host metrics are restricted. If the server cannot read host uptime, CPU, load, or memory values, the operations dashboard now marks those metrics unavailable instead of failing the page.

0.8.2 — 2026-06-21

New

  • Automations can now be created from Settings. Workspace managers can open Settings → Preferences → Connected services → Automations to list rules, inspect recent runs, and create rules for object-created or object-updated triggers. The first builder supports object type, parent, and status filters, plus actions such as updating a property, archiving the object, sending a connector notification, or starting an AI digest.

  • A new "For you" feed summarizes what needs attention. Aurora can post a daily workspace brief with recent changes, stale pages, and due tasks. Encrypted workspaces are skipped, and non-AI fallback summaries are used when hosted AI is unavailable or over budget.

  • Home now has a Live Dashboard. The home screen leads with configurable widgets for the daily brief, tasks, and recent changes, with per-workspace layout persistence.

  • Desktop sign-in is faster for returning users. The desktop app can show the previous identity and ask only for the password, while "Sign in as another user" performs a full switch and keeps each user's local folder isolated.

Improved

  • Collaborative editing updates arrive faster. Shared cloud documents now use server-sent events for near-instant document and cursor/presence updates, with polling retained as a safety net.

  • Collaborative document content is safer under concurrent edits. The server derives the API/search snapshot from the Y.Doc source of truth, so stale content pushes and public-link edits no longer overwrite merged collaborative edits.

  • Long editing sessions and automation triggers are steadier. Realtime collaboration reconnects after token refresh, rapid status-change automations no longer drop the transition that rules are waiting for, and repeated no-op object updates create less background sync churn.

  • Calendar and automation setup is clearer for operators. API environment examples now include the calendar OAuth variables, and the "For you" feed is available from the sidebar when enabled.

0.8.0 — 2026-06-14

Security

  • E2EE unlock is now independent of your login password. Content keys are protected by a recovery phrase (BIP39 mnemonic) and a per-device key stored in your browser. Your login password no longer unlocks content — so changing, resetting, or switching to an OAuth provider never puts your workspace at risk. Existing accounts migrate automatically on next sign-in; a one-time prompt confirms your recovery phrase is saved before the server-stored copy is removed.

  • Trust a new device without your recovery phrase. A device you already trust can approve a new one by scanning a QR code or entering a short code. The new device receives the account key via an end-to-end-encrypted handshake and unlocks silently going forward — no recovery phrase entry needed.

  • MCP access tokens are scoped service credentials. Workspace MCP tokens have explicit scopes, expiry, audit history, and access checks. Existing tokens may need to be recreated.

  • Manage how your account unlocks. You can now rotate your recovery phrase, add a passphrase or a key file as an extra unlock method, and remove methods you no longer use — with safeguards that never let you remove your last recovery option.

  • Unlock with a key file. Provision a downloadable key file and use it to unlock end-to-end encryption on a device, as an alternative to typing your recovery phrase.

  • See exactly what the server can and cannot do. A new transparency panel in settings explains, in plain language, what AuroraCloud can and cannot access while end-to-end encryption is on.

  • Removing a workspace member now rotates the workspace key. When someone is removed, the workspace key is rotated and existing content is re-encrypted in the background, so a former member's old key can no longer open new changes.

  • Forward-looking encryption (opt-in). AuroraDocs can wrap keys with a hybrid post-quantum scheme (X25519 + ML-KEM) for protection against future quantum attacks. It is off by default while mobile support lands.

  • Hardened server access checks. A round of trust-boundary fixes tightened which records each account can read, kept end-to-end-encrypted content out of the server search index, scoped invite codes to their creator, and moved login rate limiting to a shared store.

New

  • Print or save any page as PDF. The page menu now includes Print / Save as PDF, which opens a clean, readable snapshot and triggers the browser print dialog. Cmd/Ctrl+P from any open page routes directly to this view.

  • Inbox triage shows which AI model is making suggestions. A source badge identifies whether recommendations come from Auto, AuroraAI, your own API key, or local rules. You can switch modes from the inbox settings popover.

  • AI Assistant uses explicit workspace reads before answering. The hosted assistant now plans and executes read-only workspace tools (current object, semantic search, related objects, recent pages) and passes source citations into its answer, so responses are grounded in your content rather than hallucinated.

  • AI Assistant can rewrite the current page on request. With your own API key (BYOK mode), the assistant can replace an object's body through a governed tool. AuroraAI handles explicit rewrite/enhance requests from the panel.

  • Choose your AI provider on the Intelligence page. Pick the text-generation provider inline and attach several workspace objects as grounded context, with search and sort to find them quickly.

  • Drag objects into folders. In the object list, drag an item onto a folder to move it in, or drop it on the root to take it out — across the table, gallery, and hierarchy views.

Improved

  • Desktop Local folder watcher is more reliable. Partial writes (mid-save truncation) are retried automatically. Parse failures are logged in the Recent File Activity panel so you can see what happened. The watcher now activates for offline-only folder workspaces as well as cloud-connected ones.

  • Initial sync is faster for large workspaces. Page fetches during the first load are now parallelised with bounded concurrency, and the server-side query is backed by a composite index on (workspace_id, updated_at).

  • CI and deploy lanes are path-scoped. API-only pushes deploy only the API. Desktop and companion builds skip CI checks when no relevant paths changed. AuroraNotes and AuroraTasks have a separate manual publish workflow.

  • The sync conflict center is clearer. When a change differs between this device and the cloud, you now get a plain-language status, a focused per-item view with an optional side-by-side comparison, and two clearly labelled choices — "Keep this device" or "Use the cloud" — with the technical diagnostics moved into a collapsible "Sync details & troubleshooting" drawer.

  • Sync is more crash-safe. A batch of reliability fixes prevents edge-case data loss: an object's properties are replaced atomically, dirty-state flags clear correctly so nothing re-syncs forever, and an unreadable local folder is treated as temporarily unavailable rather than as a mass deletion.

0.7.21 — 2026-05-14

New

  • Live coauthoring baseline for AuroraCloud. Two signed-in browser sessions can open the same page, see the other session, type from both editors, and keep both edits after reload.
  • Built-in plugin improvements. Saved Searches now uses workspace-scoped plugin storage, Broken Links can preview and apply title-based fixes, and PDF Import & OCR can attach the source PDF and re-extract from it later.

Improved

  • Broader help coverage. The docs gained more complete guides for habits, templates, blocks, collaboration, mobile, desktop, and security.

0.7.20 — 2026-05-14

New

  • Provider sign-in for existing AuroraCloud accounts. When the server is configured for them, the login screen can now offer Apple, GitHub, Google, and Microsoft sign-in.

Security

  • Account rules still apply. Provider sign-in links verified emails to existing Aurora users and keeps invite, consent, MFA, and encrypted-workspace unlock rules in place.

0.7.19 — 2026-05-14

New

  • Encrypted AuroraBak restore guardrails. AuroraBak backups from encrypted workspaces now stay encrypted by design. Restoring into the original workspace preserves encrypted content, while unsafe encrypted clone restores are blocked.
  • More reliable offline sync recovery. Chromium Background Sync can now finish supported queued AuroraCloud writes even after the last AuroraDocs tab is closed.

Improved

  • Semantic workspace retrieval lifecycle. Settings -> AI now controls AuroraCloud semantic indexing. Turning semantic retrieval off clears stored workspace vectors and keeps them off until you enable the toggle again.

0.7.18 — 2026-05-13

Fixed

  • Turning off workspace encryption no longer leaves the workspace locked after refresh. Aurora now handles the transition more safely and keeps the workspace recoverable if the change cannot complete.
  • Split-pane navigation keeps the active pane. Sidebar links that can render in split view now open in the active pane, and closing split view preserves the split tabs in the main tab bar instead of discarding them.

0.7.17 — 2026-05-12

New

  • Active pane for split view. When split view is open, new pages, tasks, command-palette picks, quick capture, and sidebar opens land in the active pane. Click a pane to arm it, or use the keyboard shortcut to switch active panes.

Improved

  • Object Explorer and Tasks are easier to scan. Object Explorer gained inline title search and newest-first sorting. Tasks now use bucketed list sections, slimmer board cards, compact priority pills, and within-column reordering.

0.6.39 — 2026-04-28

New

  • More themes in Settings → Appearance — GitHub-style light/dark plus popular palettes (Gruvbox, Dracula, Tokyo Night, and others).
  • Side panel on your phone: use the header button or Quick actions → Side panel to open tasks, calendar, pomodoro, and other widgets in a bottom sheet. The AI assistant opens the same way on small screens.

Improved

  • AuroraNotes and AuroraTasks on the desktop have updated title-bar styling, clearer window dragging on macOS, and new app icons.

0.6.24 — 2026-04-27

New

  • Pin objects directly to the sidebar. Right-click any object and choose Pin to sidebar to keep it as a top-level shortcut. Pins can show their first-level children and can be reordered.
  • Recurring tasks. The task editor has a new Repeats row with Daily / Weekly (with weekday picker) / Monthly (with day-of-month picker) / Yearly / Custom RRULE options. Marking a recurring task as Done auto- creates the next instance with the same properties and the next due date computed from the rule; the calendar and the daily-notes "due today" panel show recurring tasks on every matching date.

Fixed

  • Workspaces no longer drop into "desktop read-only mode" just because you're an owner who hasn't set up a local folder copy yet. Read-only is now triggered only by an explicit opt-in, not by an inferred owner default.
  • Status bar storage-mode badge now reads "Cloud" until you actually configure a local folder copy via Settings → Data → Local folders or desktop onboarding, instead of incorrectly claiming "Cloud + Local" for every owner.

0.6.23 — 2026-04-27

Mobile PWA milestone shipped. The installable web app is much more usable on phones:

  • Phones now use a slide-out sidebar drawer instead of a compact desktop rail.
  • A phone-only Quick Actions button exposes Quick Capture, New Page, Search, Tasks, and theme switching.
  • A new editor formatting toolbar pins above the soft keyboard while you type on a phone: Bold, Italic, Heading, Bullet list, Task list, Code, Link, Undo, and keyboard dismissal.
  • The installed iOS PWA now shows a branded splash on launch instead of the white flash.
  • The app shell respects iOS notches, the Dynamic Island, and gesture-bar home indicators.

Settings reorg. Settings → Workspace → Sync now opens with Action and Activity at the top; the four diagnostics panels are tucked behind a single collapsed Diagnostics fold so the page no longer leads with a wall of debug logs. Settings → Desktop → Updates is now the fourth row instead of being buried below sync internals.

Fixed

  • The PWA install prompt now actually appears on phones rather than also showing on iPads in landscape.
  • Workspace context loading flag no longer stays stuck after the cloud snapshot has been applied for Cloud + Local workspaces.
  • Authentication requests have stronger abuse protection.
  • Diagnostics panel scroll lists now actually scroll again.
  • Removed duplicate page headings on Workspace settings pages.

0.6.22 — 2026-04-27

  • Markdown mirror is now configurable for every workspace at once. A new device-level default applies to every workspace in the Aurora folder, with optional per-workspace overrides. Bulk actions: "Apply default to all workspaces" and "Reset overrides".
  • Removed the "Recent Aurora folders" shortcut in Settings — quietly swapping local-folder roots without signing out was creating more problems than it solved.

0.6.21 — 2026-04-27

  • Cloud + Local sync no longer mistakes Aurora's own folder writes for external imports.
  • Sidebar no longer hides behind the loading skeleton after workspace data has hydrated.
  • Data conflicts panel rewritten for readability — plain-English summaries, group-level "Keep all local" / "Use all server" shortcuts, and trivial timestamp-only mismatches under 5 seconds of clock skew no longer surface as conflicts.

Older public release summaries will be added here when they are relevant for current users.

Built with AuroraDocs.