Kortix changelog: what's new each month
Every stable Kortix release summarised by month: the highlights, new features, improvements, fixes and anything you need to act on. 3 months covered; the current month updates daily.
October 2026 · so far
8 releases: 0.13.45 → 0.13.52
October brought major improvements to permissions and agent capabilities, along with expanded Microsoft Teams integration and significant UI redesigns across web and mobile platforms. The month focused on making Kortix more secure, more controllable, and more integrated with team collaboration tools.
- Broad project.customize permissions replaced by project.settings.write, project.sandbox.write, and project.model.read/.write.
- Per-project authority switch for agents is removed; all agents with kortixpermissions grant now act as themselves in every project.
- Active session limits removed; billing is now the only limit on concurrent sessions.
Highlights
- Microsoft Teams is now available by default on every project, with rich integration for channels, group chats, and personal messaging.
- Permissions system redesigned: agents now act under their own permissions across all projects, and can only grant permissions they hold themselves.
- Computer Use now runs inside the Kortix desktop app, showing your physical computer once even after re-pairing.
- New conversation forking lets you branch from any point in a session to explore different paths.
- Sessions now display which model provided each answer and its cost breakdown.
New
- Sessions carry writable labels and metadata across API, SDK, CLI, MCP and web, with list filtering by label.
- Agents can ask people questions or start group conversations behind the humanmessaging project flag.
- Review Center has its own dedicated page for approving requests in a modal interface.
- One-day personal API keys that expire after 24 hours.
- Developers page with safe copy-to-shell command output for any POSIX shell.
- Spend tracking by source showing which trigger, member or caller spent LLM credits.
- Trigger templates can use cron.scheduleddate and cron.scheduledhour variables.
- New skill form allows creating skills without a model.
Improved
- Approval, preview and install consent screens redesigned.
- Connect your computer dialog split with one-click CLI copy.
- Recent session views stay open across project navigation; command palette finds sessions by ID.
- Push notifications now route by browser presence so open tabs don't receive duplicate notifications.
- Chat remains available while a connector waits for approval.
- Advanced panel preference remembers which panels you open.
- Failing triggers now show failure status and reason on the Schedule page with push notification when streak starts.
- Security settings redesigned with authenticator-app enrollment and complete list of signed-in devices.
Fixed
- Agents with policies denying bash or edit can no longer open shells through terminal tools or write files through memory tool.
- Refresh tokens cannot be replayed, and logging out revokes the session.
- One bad permission entry no longer empties an agent; invalid entries are skipped while the rest of the grant remains.
- Unbuildable or quarantined config tips no longer drop a session's configuration.
- ChatGPT connections at plan limit are retried after 15 minutes with manual retry option.
September 2026
35 releases: 0.13.10 → 0.13.44
September brought major reliability improvements, performance optimizations, and significant new capabilities across billing, authentication, collaboration, and AI model support. The month focused on fixing foundational issues while expanding Kortix's integration ecosystem and user experience across web, mobile, and desktop platforms.
- Review Center is now on by default for every project (no longer behind a feature flag).
- Agents now act as their own principal by default, with audit events recording both the agent and the person who started the session.
- Apps are now a per-agent resource in both the editor and CLI (previously per-project).
- Session oversight controls take effect immediately across all servers rather than after a delay.
Highlights
- Added complete multi-language support across all nine supported languages in settings, onboarding, and administration interfaces.
- Introduced local mode to connect your computer from the desktop app as a connector account, with background tunnel support.
- Launched Microsoft Teams integration to full feature parity with Slack, including direct messages, approvals, and agent picker.
- Implemented project-level provider and model access controls so owners and admins can restrict which AI models a project may use.
- Deployed MCP server support at the account level with sandbox shell access, skills, and the ability to run long commands as jobs.
New
- Private provider key pools allowing multiple API keys per provider with per-session failover and sharing controls.
- Queued prompts visible and editable above the composer with Resume to continue reliably.
- Print full session conversations with Cmd+P instead of just the visible screen.
- Command palette (⌘K) for instant access to account, project, and session IDs.
- Reminders feature to schedule prompts into sessions with a dedicated Reminders view.
- Approvals system where agents describe gated calls and approvers can reply via Slack, Teams, or in-app.
- Sandbox templates that can run Docker inside the sandbox.
- Terminal support (experimental) with kortix tui for full terminal access.
Improved
- Session lists now paginate (50 per page with Load more) instead of loading all sessions, fixing slowdowns in large projects.
- Connector resolution now batches lookups and Composio discovery serves cached results.
- Git reads are cached and fewer browser preflight requests reduce latency.
- Session transcript loading now shows skeleton rows shaped like the session while booting.
- Turns start faster with configuration, model catalog, and ingress checks running in parallel.
- Sessions retry transient model errors and continue through short provider outages instead of stopping.
- Admin accounts list now uses an index and returns clear errors instead of timing out.
- Database connection management improved during deploys so session operations stay available.
Fixed
- False "temporarily unavailable" errors caused by treating a single failed maintenance flag read as a lockdown.
- Maintenance page redirects after momentary network problems during status checks.
- Billing issues where accounts could spend past zero with no floor and settlement refusals deleted spend records.
- Connector accounts now match between what the UI shows and what each caller can reach.
- Session Git pushes now honor explicit ref grants within effective IAM roles.
- Connectors no longer fail entirely when a single kortix.yaml read fails.
August 2026
17 releases: 0.12.0 → 0.13.9
August brought major stability improvements and significant feature additions across sessions, security, and administration. The month focused on performance, audit capabilities, and making Kortix easier to deploy and manage at scale.
- Plan pricing changed from per-seat to flat monthly credits; legacy plan labels removed.
- Duplicate project access gate UX rebuilt; some access patterns may require reconfiguration.
- Managed model lineup updated: AsterLab and GLM 5.2 routes removed; new models added.
Highlights
- Centralized audit logging for all API requests and agent actions, with session cost tracking and unified billing visibility.
- Terminal UI support: kortix connect now lets you manage agent sessions directly from your command line.
- Stable Apps feature with instant loading, serverless deployments, and desktop layout support.
- Secret delivery controls and connector unification across web, CLI, SDK, and API for consistent security.
- Admin capabilities including act-as support access, per-account entitlement overrides, and activity analytics.
New
- Audit log explorer showing every API request and agent action with reconstruction filters and client attribution.
- Session cost tracking with unified cost records per session and cost explorer in billing.
- Microsoft Teams as experimental per-project communication channel.
- One-shot approval links to approve or reject requests directly from notifications.
- Terminal UI for managing sessions via kortix connect command with session picker.
- Feature flags gating system across API, web, and CLI with per-project settings.
- Network-boundary secrets that deliver only inside sandbox network boundaries.
- Monitors (experimental): trigger type running on provisioned boxes with CLI and MCP support.
Improved
- Session startup now faster with leaner runtime assets, reusable Git bundles, and guarded image preparation.
- Sandboxes ship with pinned Python packages (Pillow, pypdfium2, pytesseract, and 13 more) for immediate document and image skills.
- Transactional email now routes through multiple providers for reliability when one is unavailable.
- API performance improved by writing audit events asynchronously in batches instead of synchronously.
- Session header warns when agent configuration changes after session starts with one-click reload.
- Transcript loading and recovery improved for missed events, dropped streams, and interrupted connections.
- Database connection pooling bounded to prevent exhaustion and audit writes isolated on dedicated pool.
- Model lineup refreshed with Muse Spark 1.2, MiniMax M3, GPT-5.6 Luna, and GLM 5.2 with DeepSeek V4 Flash as platform default.
Fixed
- Revoked API tokens now properly stop working across REST, LLM gateway, git proxy, and all other surfaces.
- Long turns no longer stop at random; fixed provider deadline read-back, request body cap, and progress-aware boot budget.
- Long sessions no longer run out of memory; attachments offloaded from transcript and memory guards added.
- Session loading screen no longer shows false "Couldn't start session" card; wake stalls now escalate with retry and restart.
- Transcript stays readable for stopped sessions and loads instead of rendering empty during sandbox boot.
- Runaway agent turns can no longer take API down; audit-event streams bounded to 900 events per minute.
Summaries are written automatically from the official release notes (full changelog ↗); check the original notes before relying on a detail. Kortix: pricing, features and alternatives · All changelogs
