v2.2.0
maximhq/bifrostv2.2.0May 7, 2026by mbecker20
AI Summary
This release focuses on stability fixes for Swarm deployments and resource sync ordering, while introducing new configuration options for OIDC, user registration, and security headers.
Key Highlights
- Fixed Deployment 'Tasks' and 'Inspect' tabs when attached to a Swarm.
- Added resource TOML schema for editor auto-complete and documentation.
- Customizable security headers (X-Frame-Options) to restore iframe functionality.
- OIDC auto-redirect behavior on the login page.
- Per-provider new user registration controls.
New Features
- Resource TOML schema hosted at /schema/resources.json
- Customizable security headers via environment variables
- OIDC auto redirect configuration
- Per-provider user registration settings (disable_user_registration, disable_local_user_registration, disable_oidc_user_registration)
Full Release Notes
# Changelog - **Swarm / Deployment**: Fix Deployment "Tasks" and "Inspect" tabs when attached to a Swarm - **Stack**: Allow excluding specific services from Global Auto Update by @mateuszziolkowski - **Resource Sync**: During RunSync, ensure Repo changes are applied before all other potentially dependent resource type changes: Builds, Stacks, and Resource Syncs. - **TOML**: Add resource TOML schema (for editor auto-complete / suggestions / documentation) hosted by every Komodo Core at `/schema/resources.json` (example: https://demo.komo.do/schema/resources.json) by @bytedream - **Core**: Add standard shell mode (direct passthrough) for system commands by @ericls - **Core**: Make the security headers customizable to restore iframe functionality ```toml ## `X-Frame-Options` header value. ## Set as empty string to omit the header. ## Use "SAMEORIGIN" to allow same-origin embedding only. ## Env: KOMODO_X_FRAME_OPTIONS ## Default: "DENY" x_frame_options = "DENY" ``` - **Core**: Enable OIDC auto redirect behavior on login page by @johnmaguire ```toml ## Automatically redirect unauthenticated users to the OIDC provider ## instead of showing the login page. ## Users can bypass the redirect by appending `?disableAutoLogin` to the login URL. ## Env: KOMODO_OIDC_AUTO_REDIRECT ## Default: false oidc_auto_redirect = false ``` - **Core**: Per provider new user registration by @johnmaguire ```toml ## Normally new users will be registered, but not enabled until an Admin enables them. ## With `disable_user_registration = true`, only the first user to log in will registered as a user. ## Env: KOMODO_DISABLE_USER_REGISTRATION ## Default: false disable_user_registration = false ## Disable local (username/password) user registration only. ## When set to true, the "Sign Up" button is hidden and local signups are blocked, ## but OIDC and other external provider signups may still be allowed. ## If not set, falls back to `disable_user_registration`. ## Env: KOMODO_DISABLE_LOCAL_USER_REGISTRATION disable_local_user_registration = true ## Disable OIDC user registration only. ## When set to true, new users cannot register via OIDC, ## but local and other provider signups may still be allowed. ## If not set, falls back to `disable_user_registration`. ## Env: KOMODO_DISABLE_OIDC_USER_REGISTRATION # disable_oidc_user_registration = true ``` - **UI**: Improve table text sizing and wide log pre wrapping by @elemated - **UI**: Move more common components to **mogh_ui** library: https://github.com/moghtech/lib/tree/main/ui Still running v1? Check out the [Komodo v2 upgrade guide](https://komo.do/docs/releases/v2.0.0#upgrading-to-komodo-v2).