Next Terminal logoNext Terminal
Customer Cases Free Enterprise License Pricing Changelog Docs Blog
中文 Sign in
☰
Customer Cases Free Enterprise License Pricing Changelog Docs Blog 中文 Sign in

Changelog

Release notes for Next Terminal: new features, improvements, and fixes.

v3.8.2

2026-08-31

Added

  • SSH session command audit with remote execution detail view, supporting full command list and remote execution details for each session.

Fixed

  • Improved error handling for session disconnect cleanup.

Changed

  • Removed manual operation log clearing; logs now expire automatically only.
  • Improved two-factor authentication binding and unbinding page interaction.

v3.8.1

2026-08-29

Added

  • S3 recording multipart size, threshold, and concurrency configuration with customizable upload settings.
  • S3 recording Region configuration for object storage.

Fixed

  • Query cache conflict and real-time connection lifecycle.
  • Unified frontend data queries and fixed cache keys.
  • Password policy validation and removed sensitive debug logs.
  • Background workspace height and responsive sizing.
  • Access session content area height.
  • S3 Signature V4 compatibility behind proxy forwarding.
  • Terminal playback dependency upgrade with critical security fix.

Changed

  • Removed frontend dead code and simplified request/state implementation.
  • Simplified frontend theme state and cleaned unused dependencies.
  • Migrated deprecated Ant Design APIs and simplified settings page styles.
  • Unified access protocol runtime and reworked page state and sizing.
  • Reworked access page responsive sizing and fixed sidebar toggle.
  • Removed bucket validation.
  • Optimized create backup modal and reused notification components.

v3.8.0

2026-08-27

Added

  • Dynamic website response header rewrite with URL host and regex rules, supporting website domain variables while preserving the Location path.
  • Automatic multipart upload for large S3 objects, improving reliability for backup and object storage.
  • Goroutine leak diagnostic endpoint for the main service to aid production troubleshooting.
  • Improved backup remarks and filename handling.

Fixed

  • Fixed composite form control field binding.
  • Fixed an issue where clearing the website IP whitelist could not be saved.
  • Fixed backup retention days setting.

Changed

  • Reworked the WebDAV client and fixed compatibility issues.
  • Improved the public access whitelist with a line-by-line input (StringListInput).
  • Reworked the frontend request error handling strategy with unified error classification.
  • Improved login failure lockout messaging and version update guidance.
  • Optimized the gateway install script update order and permission hints.
  • Modernized backend with Go 1.27 (error handling, concurrency, testing), standardized UUID usage and stronger security token randomness.
  • Upgraded backend dependencies to Go 1.27, upgraded frontend dependencies and build tooling, migrated deprecated Ant Design APIs and added lint scanning.

v3.7.3

2026-08-22

Added

  • Reusable IP whitelist management — create, reuse and sync IP whitelists across website assets (new ip-whitelist API/model/service, UI pages IPWhitelistPage/Modal, wired into asset drawers and menus; i18n en-US/ja-JP/zh-CN/zh-TW).
  • Asset group tree column resize UX improved.

Fixed

  • Restored website access log toggle (PublicView).

Changed

  • Gateway one-click install scripts optimized for Linux/macOS.
  • Tunnel logs unified to English without emoji.
  • Latest license URL updated.
  • README de-workshopped: default English, support@next-terminal.com, sponsors collapsed, SharonNetworks removed.

v3.7.2

2026-08-19

Fixed

  • Fixed feature not supported error when editing web assets

v3.7.1

2026-08-18

Fixed

  • Fixed upgrade failures in some environments

v3.7.0

2026-08-18

Added

  • HTTP and SOCKS5 proxy support for Agent
  • Asset connection methods and proxy server management
  • Website and database asset connection methods
  • SFTP directory auto-follow and asset tree parameters
  • File transfer via lrzsz in web terminal
  • Batch editing for web assets
  • Multi-factor authentication for asset access with one-time tickets for SSH/RDP
  • Mouse cursor recording for RDP recordings
  • Session exit policy on browser close
  • Path wildcards for public access rules

Fixed

  • Fixed cache issue during GEO data online updates
  • Fixed white screen in RDP recordings caused by legacy bitmap updates
  • Fixed incompatibility between Alibaba Cloud registry and OCI attestations
  • Fixed custom request headers for websites not persisting
  • Fixed Sidecar crash due to missing codec for compressed bitmap recording
  • Fixed unable to reconnect after asset authorization failure
  • Fixed browser language not auto-matching on the frontend

Changed

  • Reworked file upload tasks and progress management
  • Improved asset tree API with AI enablement field
  • Improved linkage among restricted shell checks
  • Overall UI improvements
  • Unified batch connection methods and completed terminal settings
  • Added notes to command filter rules
  • Improved public access rule configuration
  • Added RDP GDI fallback troubleshooting notes
  • Improved notification channel layout and enable/disable interaction
  • Improved session settings page layout
  • Simplified some code paths

v3.6.3

2026-08-03

Fixed

  • Fixed SSH proxy server itself failing to perform port forwarding

v3.6.2

2026-07-28

Added

  • PostgreSQL 18 Docker image with auto-follow upstream builds
  • Enhanced origin response logging in access logs
  • Recording of upload failures with manual retry

Fixed

  • Fixed access policy time config not correctly displayed after edit
  • Improved access policy permission checks to avoid restricting super admins

Changed

  • Upgraded Docker build environment to Alpine 3.23
  • Optimized Docker image build flow, integrated RDP Sidecar build chain
  • Improved access policy configuration hints and maintenance UX

v3.6.1

2026-07-26

Fixed

  • Fixed text remaining black in dark theme
  • Fixed asset search not matching remarks

v3.6.0

2026-07-24

Added

  • Reworked access control policy system
  • Multi-level grouped asset import/export
  • HTTPS origin certificate verification for websites
  • Termark mobile OAuth callback
  • Improved AI capability controls

Fixed

  • Fixed session protocol ordering and added protocol filtering
  • Fixed deny handling in access control and improved multi-protocol checks
  • Fixed nil pointer during access policy migration
  • Fixed blank items in dynamic route breadcrumbs
  • Fixed dark mode for regular user profile page
  • Fixed theme switch spread animation
  • Fixed performance during upgrade migration and added DB lock wait protection

Changed

  • Improved policy binding UX
  • Unified access control copy
  • Improved policy form interaction and hints
  • Hidden unstable tunnel connection tip to reduce noise
  • Improved dark mode for AI settings cards

v3.5.2

2026-07-14

Added

  • Batch editing for assets (bulk update of asset info and gateway settings)
  • Third-party account management for users
  • Reuse Passkey for identity verification when binding third-party accounts
  • Select parent group in asset and website grouping
  • Custom error pages for HTTP reverse proxy
  • Built-in high-risk command interceptor with low false-positive defaults

Fixed

  • Fixed graphical session recording playback window glitch
  • Fixed SSHD password login incorrectly affected by global Disable Password Login
  • Fixed SFTP file list scroll glitch
  • Fixed empty and array handling for asset properties
  • Fixed gateway asset status misjudgment and SSH probe timeout

Changed

  • Improved batch editing flow and integrated gateway settings
  • Reworked asset and website grouping trees for better hierarchy management
  • Reworked external identity data model, removed legacy user source field
  • Improved backend authentication and authorization
  • Skip repeated TOTP second factor after successful third-party login
  • Removed enhanced capability license check for offline sessions
  • Improved terminal tool drawer layout and UX
  • Capped login session max lifetime at 365 days
  • Removed custom playback speed for graphical session player

v3.5.0

2026-07-12

Added

  • Facade views for assets and websites with switchable display modes
  • Access request tickets with per-asset toggle and approval workflow
  • Notifications: rules, delivery history, channel testing and event monitoring
  • WeCom app notification channel
  • Event system for unified handling of system events
  • Upload system backups and session recordings to WebDAV
  • Chained multi-level SSH gateway access; gateways can reference assets with gateway chains
  • Gateway group scheduling reason logging for troubleshooting
  • AI assistant with environment config, context management and tool-call results
  • OIDC phone number scope and improved OIDC client configuration
  • GEO region candidate config for websites with authorization constraints
  • Domain-based licensing as an alternative to machine-code binding

Fixed

  • Fixed terminal screen being cleared after disconnection
  • Fixed font dropdown display in access settings
  • Fixed license settings save validation, binding display and cleanup
  • Fixed auth tokens readable via URL query parameters
  • Fixed path traversal in disk filesystem API
  • Fixed privilege escalation via website access entry
  • Fixed potential infinite loop on SSH request errors
  • Fixed RDP proxy high-risk process and image handling
  • Fixed RDP recording lifecycle and unified remote transcoding
  • Fixed RemoteApp connection and upgraded FreeRDP to 3.28
  • Fixed GEO matching for Chinese provinces/cities
  • Fixed missing role permission menus and i18n strings
  • Fixed gateway ordering conflicts on repeated data migrations
  • Fixed missing guacenc image build manifest directory
  • Fixed RDP session recording compatibility with older server versions

Changed

  • Licensing now supports machine-code or domain binding (choose one)
  • Improved license settings: update/binding entries, layout and machine-code section
  • Access request is now a paid feature
  • Improved access-denied page and save interaction in access settings
  • Revised system settings menu copy, structure and translations
  • Reworked GEO database backend config and online updates
  • Reworked AI assistant sidebar and chat interaction
  • Reworked RDP proxy recording format to Guacamole
  • Unified license user counting, excluding default admin
  • Removed in-system online upgrade; upgraded Go dependencies

v3.4.2

2026-06-29

Fixed

  • Fixed watermark configuration error that prevented asset access

v3.4.1

2026-06-28

Fixed

  • Fixed missing dependency data causing errors on asset export
  • Fixed missing Chinese fonts during terminal recording transcoding
  • Fixed SSH Keepalive causing 100% CPU in some cases

Changed

  • Offline sessions can be played back even while waiting for transcoding
  • Recording config now allows keeping original files on cleanup
  • Video player now uses local static assets to reduce external dependencies
  • Backup storage migrated to aws-sdk-go-v2 with new S3 PathStyle option
  • Improved terminal settings copy, backup key testing and file naming
  • Improved save button interaction for backup settings and SSH gateway timeout handling
  • Improved race-related code in SSH proxy
  • Removed LLM-related features

v3.4.0

2026-06-23

Added

  • Scheduled database backup and restore with auto upload to S3/SFTP
  • Offline session MP4 recording download, playback and manual transcoding
  • Transcode SSH/Telnet/RDP/VNC session recordings to MP4 with progress display
  • Remote command audit logging
  • Asset export
  • Reference preview when deleting credentials or gateways

Fixed

  • Fixed escaping of complex passwords in RDP proxy
  • Fixed missing permission check on asset probe and wake APIs (#573)
  • Fixed missing crash log when RDP proxy Sidecar exits unexpectedly
  • Fixed authorization group inheritance logic
  • Fixed RDP connectivity on some Windows 7 environments

Changed

  • Improved .rdp file generation and download naming
  • Improved add/edit flows for assets and website assets
  • Improved website asset icon, header editing and response rule UI
  • Improved authorization list filters, modals and system settings layout
  • Improved SSH proxy error messages and logging
  • Updated licensing system and related links

v3.3.6

2026-06-15

Changed

  • Improved SSH session environment variable handling
  • Adjusted SSH advanced settings semantics with historical data migration
  • Added origin timeout for websites

Added

  • Termark access to RDP assets
  • Session recording for RDP proxy

v3.3.5

2026-06-07

Fixed

  • Fixed gateway selector not rendering when creating an asset group
  • Unified list style for user-side resource pages

Added

  • RDP proxy Microsoft Remote Desktop direct connection (experimental, recording not yet supported)

v3.3.4

2026-06-05

Added

  • Real client IP for SSH tunnels via PROXY Protocol
  • Backspace mode for SSH assets
  • Migration command for historical session recordings

Changed

  • Improved operation log display and table polling refresh
  • Improved SSHD asset menu rendering and interaction
  • Improved storage stats in system monitoring
  • Removed access log URI hint for a cleaner UI

Fixed

  • Fixed inaccurate login/access log IPs after restart
  • Fixed auto-allow IP retrieval
  • Fixed nil pointer on backup import transaction
  • Fixed data migration compatibility
  • Fixed dropdown search field config not taking effect
  • Fixed duplicate session record on SSH Exec child sessions
  • Fixed session status anomalies and removed deprecated terminal entry
  • Fixed data inconsistency during rz upload
  • Fixed SSHD menu return input issue
  • Fixed web asset status field anomaly

v3.3.3

2026-06-01

Fixed

  • Fixed web asset authorization redirect flow

v3.3.2

2026-06-01

Added

  • OIDC client no-auth configuration
  • Custom request headers in network settings
  • Connection timeout for asset terminals
  • Default gateway for asset and site groups
  • System monitoring page and metrics

Changed

  • Upgraded backend framework to Echo v5
  • Reworked auth middleware and request identity context
  • Reworked operation log auditing
  • Improved OIDC client form and filter list navigation
  • Unified system IP retrieval; improved auth forms and search sync
  • Frontend quality and stability improvements; updated default copyright

Fixed

  • Fixed port forwarding failure
  • Fixed Passkey info loss
  • Fixed blank login policy detail page
  • Fixed frontend i18n fallback
  • Fixed license user limit miscalculation

Notes

  • SSH gateway and session sharing are now paid features
  • Removed concurrent connection limit from licenses

v3.3.1

2026-05-25

Changed

  • SSH proxy server now silently ignores environment variable setup failures

Fixed

  • SSH public keys can now be renamed

v3.3.0

2026-05-23

Added

  • VSCode Remote SSH for SSH proxy server
  • KeepAlive for SSH proxy server
  • WebSocket proxy to reach intranet SSH proxy servers
  • Image preview in SFTP
  • Credential reference count for assets
  • Standalone page mode for asset access
  • Multi-line IP rules for public websites

Fixed

  • Fixed SFTP Direct asset parsing
  • Fixed sz download failure in SSH proxy server
  • Fixed website tunnel port cache
  • Fixed scrollbar caused by sidebar features
  • Fixed OTP step cannot go back
  • Fixed access log user and long-text rendering

Changed

  • Improved password authentication for SSH proxy server
  • Reworked add/edit flows for assets/web/database assets
  • Improved mobile SSH terminal layout
  • Unified table search style and improved grouping tree and asset modal layout
  • Larger OTP input
  • Upgraded to Ant Design 6 with broad UI and compatibility cleanup

v3.2.1

2026-05-06

Fixed

  • Fixed panic when executing certain terminal commands
  • Fixed terminal stuck in mouse mode after reconnect
  • Online update adapted to new version

v3.2.0

2026-05-06

Added

  • mTLS client certificate authentication
  • Remote command execution for SSH proxy server
  • ID-based connection for SSH proxy direct mode
  • macOS Option as Meta in terminal
  • Connectivity test for LLM/database connections
  • Full file path in file editor

Changed

  • User public keys moved to a dedicated settings page
  • Asset tree: group search and horizontal scroll
  • Terminal tabs: fixed width and Copy Session in context menu
  • Disabled autofill when adding assets
  • Improved long-field display in access logs and added last heartbeat to gateway monitoring
  • Unified Passkey copy, improved web asset logo validation and SSH/Telnet command parsing

Security

  • Security gateway no longer uses embed, significantly reducing memory usage
  • Web asset public access policy: 4-dimension evaluation (IP/GEO/header/path); allow by default when none configured (caller validates Password), bypass password check on any match

Fixed

  • Fixed password change time not updating when admin changes a user password
  • Fixed SSH proxy not forwarding environment variables
  • Fixed HTTP reverse proxy connection leak
  • A failing module no longer blocks subsequent module initialization (now only logged)

v3.1.1

2026-04-01

Added

  • Asset status filtering
  • Auto OS detection with icon update for assets
  • Wake-on-LAN (WOL) for assets

Changed

  • Improved machine-code mismatch message
  • Adjusted HTTP reverse proxy log level
  • LLM client migrated to official OpenAI SDK with GPT-5.x support

Fixed

  • Fixed OIDC Server signature missing kid
  • Fixed asset tree not auto-refreshing on the terminal access page
  • Fixed permission error when regular users open the database page
  • Fixed offline SSH proxy sessions not uploading to S3

v3.1.0

2026-03-20

Security

  • Fixed a long-standing XSS vulnerability — upgrade as soon as possible

Added

  • Domain uniqueness validation when saving web assets
  • WebAuthn domain auto-detection
  • Database assets expose external access info for end users
  • License info now includes user identity and supports offline license export
  • Auto-retry on file upload failure for database assets

Fixed

  • Fixed command group selection not taking effect in scheduled tasks
  • Fixed RDP/VNC recordings not uploading to S3

Changed

  • Startup no longer exits on data validation failure
  • Security gateway: safer Home directory resolution with automatic migration of legacy config
  • Upgraded machine-code algorithm (machine code changes after upgrade)
  • SSH proxy now requires a private key before it can be enabled
  • Improved custom Host field UX

v3.0.2

2026-03-09

Security

  • Fixed an OIDC Server security issue — users of this feature must upgrade

Fixed

  • Fixed copy failure triggered by terminal page search
  • Fixed MySQL database proxy account not connecting when 2FA is enabled
  • Fixed first keystroke not responding in SSH proxy server
  • Fixed Enter sending the command twice during batch execution
  • Fixed auto-scroll to bottom glitch during batch execution
  • Fixed OTP authentication failure in SSH proxy server

Added

  • Custom mTLS certificate validity with mTLS flag in the list
  • Certificate issuance now supports certificate chains
  • AI auditing for reviewing historical SSH/Telnet sessions
  • Close a single terminal during batch execution
  • Web asset page auto-fetches and displays icons

Changed

  • Improved asset search with keyword lookup
  • Clicking the logo on the access page returns to home

v3.0.1

2026-02-11

Fixed

  • Fixed CLI not working
  • Fixed database password not being echoed
  • Fixed SSH terminal session replay style glitches

Added

  • CLI now supports downloading the GeoIP database
  • Added Database Assets page for regular users
  • Login page now supports dark mode
  • Batch unbind for user-authorized assets (requires secondary confirmation)
  • Web asset public access: request header and route address whitelists

Changed

  • Removed status field from database assets
  • Improved regular user page structure and interactions
  • Improved security gateway list and detail views
  • Security gateway config loading now falls back to defaults on validation failure
  • Improved AI Ops assistant logging and error display
  • Renamed Shell Assistant to Ops Assistant
  • Removed deprecated OpenAI configuration

v3.0.0

2026-02-04

Added

  • First v3 stable release. See v3.0.0 Release Notes for details.
Next Terminal
Unified remote access, access control, and operations auditing
Pricing Customer Cases Docs License Portal GitHub Terms of Service Privacy Policy Termark SSH Client
Copyright © 2026 Pointer Drift Technology Studio 蜀ICP备2026044859号-2 川公网安备51019002010272号