Release Notes - v5.3.1 🚀
August 9, 2026
This patch release (v5.3.1) introduces integration and security enhancements to the Model Context Protocol (MCP) server, support for RFC 9728 (OAuth Protected Resource Metadata), compatibility with direct HTTP transport for Gemini MCP, and strengthened security rules in Firestore.
🤖 Model Context Protocol (MCP) & Artificial Intelligence
Agent Integration & RFC 9728 Standard (#1350)
- OAuth Protected Resource Metadata (RFC 9728): Implemented the
/.well-known/oauth-protected-resourceendpoint to allow seamless integration with AI agents such as Google Agent and Gemini Spark. - Direct HTTP JSON-RPC Transport: Added support for direct JSON-RPC protocol over HTTP, including support for
/messagesand/sseroutes and active session resolution. - Dynamic Customization: Parameterized server name (
${productName} MCP) and version via environment variables (PRODUCT_NAMEandPRODUCT_MCP_VERSION), alongside modular registration of MCP Tools.
⚙️ General & Infrastructure
Firestore Security (#1350)
- Updated Security Rules: Restricted read, create, update, and delete permissions on
mcp_keys_conexions,api_keys, andgh_personal_tokenscollections, ensuring users only access their own tokens and protecting immutable fields.