jcoffey-dev is traveling from Thursday 1 October through Sunday 4 October. Issues and pull requests are welcome, and will get an answer after that. Thanks for your patience.
Everything on main since 2026.9.28.5, including what 2026.9.28.6 shipped from its release branch:
Security to-do list:inbuxa:SecurityAcceptance and sysSecurityAccept (id 684) (#114).
DLP and mail flow rules (#99, #102, #103, #111, #112 and follow-ups), including the DATA-stage fix: a rule's route no longer carries over to the next message in the same SMTP session.
Journaling: capture, the built-in journal, outside archives, Journal it, and search, read, export and the chain check over JMAP (#113, #115, #116, #118, #119, #120).
Webhook Send test (#100), explanations skipping date fields (#101), port reachability (#105). These were in .6.
The explanations file is relabeled: 706 settings, 0 new questions.
Release notes:
No migrations.
Permissions are granted to existing roles once, at startup: DLP 674–679, journals 680–683, security 684.
Create DLP rules and journals only after every node is upgraded; an older node doesn't check them.
Rolling back is safe: no new audit action kinds, and the new key prefixes (R, J, Q) and message flag bit 48 are ignored by older versions.
Everything on main since 2026.9.28.5, including what 2026.9.28.6 shipped from its release branch:
- **Security to-do list:** `inbuxa:SecurityAcceptance` and `sysSecurityAccept` (id 684) (#114).
- **DLP and mail flow rules** (#99, #102, #103, #111, #112 and follow-ups), including the DATA-stage fix: a rule's route no longer carries over to the next message in the same SMTP session.
- **Journaling:** capture, the built-in journal, outside archives, *Journal it*, and search, read, export and the chain check over JMAP (#113, #115, #116, #118, #119, #120).
- **Webhook Send test (#100), explanations skipping date fields (#101), port reachability (#105).** These were in .6.
- **Logs:** a total only when it's known (#117).
**Changes in this PR:**
- `brand_version!` is set to 2026.9.29.
- The explanations file is relabeled: 706 settings, 0 new questions.
**Release notes:**
- No migrations.
- Permissions are granted to existing roles once, at startup: DLP 674–679, journals 680–683, security 684.
- Create DLP rules and journals only after every node is upgraded; an older node doesn't check them.
- Rolling back is safe: no new audit action kinds, and the new key prefixes (R, J, Q) and message flag bit 48 are ignored by older versions.
Blocking a user prevents them from interacting with repositories, such as opening or commenting on pull requests or issues. Learn more about blocking a user.
Everything on main since 2026.9.28.5, including what 2026.9.28.6 shipped from its release branch:
inbuxa:SecurityAcceptanceandsysSecurityAccept(id 684) (#114).Changes in this PR:
brand_version!is set to 2026.9.29.Release notes: