2.10.1

maximhq/bifrost2.10.1Mar 27, 2026by asvishnyakov

AI Summary

This is a security-focused patch release that addresses a vulnerability in websocket session ownership validation. It also moves the npm publishing process to OIDC for improved security management.

Key Highlights

  • Security vulnerability fix for websocket session ownership
  • Move to OIDC for npm publishing

New Features

  • Security hardening

Full Release Notes

## What's Changed
* chore: move to oidc for npm publishing by @willydouhard in https://github.com/Chainlit/chainlit/pull/2854
* fix: validate session ownership on websocket restore by @willydouhard in https://github.com/Chainlit/chainlit/pull/2857
  * ⚠️ This is a **fix for a security vulnerability** in Chainlit


**Full Changelog**: https://github.com/Chainlit/chainlit/compare/2.10.0...2.10.1