v1.13.16

SagerNet/sing-boxv1.13.16Aug 3, 2026by github-actions[bot]

AI Summary

A security and privacy update regarding AnyTLS metadata handling.

Key Highlights

  • Removed client metadata from AnyTLS requests by default to prevent profiling.
  • General bug fixes and improvements.

New Features

  • Customizable AnyTLS client metadata (now empty by default).

Full Release Notes

## :memo: Release Notes

* Remove client metadata from AnyTLS requests by default **1**
* Fixes and improvements

**1**:

We found that the AnyTLS client implementation uploads metadata that is **not used by the open-source server**, and there are reports of vendors using it to profile and discriminate against users. We now leave it empty by default and allow you to customize it, see [AnyTLS client metadata](https://sing-box.sagernet.org/manual/misc/anytls-client-metadata/).