<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>ThinkWatch Changelog</title><description>Release notes and updates for ThinkWatch.</description><link>https://thinkwat.ch/</link><item><title>v0.4.0 — See every byte</title><link>https://thinkwat.ch/changelog#v0.4.0</link><guid isPermaLink="true">https://thinkwat.ch/changelog#v0.4.0</guid><description>Request + response bodies captured for every gateway and MCP call · PII redaction at capture; per-column TTL splits hot bodies from cold metadata · S3-compatible body offload — AWS S3, MinIO, Ceph, or the bundled RustFS · Bloom-filter substring search across captured bodies · audit:read_bodies permission gates the body viewer · MCP downstream SSE — clients can subscribe to tools/call event timelines · Per-model routing with Auto / Manual modes + drag-to-redistribute traffic bar · Model-level kill switch — pause one model without the whole provider · Pre-call budget check rejects requests when caps are already exhausted · allowed_models enforced uniformly on Anthropic Messages + OpenAI Responses</description><pubDate>Sat, 23 May 2026 00:00:00 GMT</pubDate></item><item><title>v0.3.0 — MCP, the per-user way</title><link>https://thinkwat.ch/changelog#v0.3.0</link><guid isPermaLink="true">https://thinkwat.ch/changelog#v0.3.0</guid><description>Per-user upstream credentials — every developer authenticates as themselves to GitHub, Linear, Slack · One-paste OAuth onboarding via Dynamic Client Registration · MCP Store with bilingual templates (Linear OAuth seeded out of the box) · Step-by-step registration wizard + auth-mode-aware edit form · Three-tier upstream subject resolution (JWT + userinfo + discovery) · Per-credential Test Connection on /connections · Per-user tool catalogs — different users see different tools based on upstream permissions · MCP response cache scoped per (user, account_label) — no cross-user leakage · Security hardening from review — SSRF, cache, rate limits, audit</description><pubDate>Fri, 08 May 2026 00:00:00 GMT</pubDate></item><item><title>v0.2.0 — Teams, spending controls, and a programmable API</title><link>https://thinkwat.ch/changelog#v0.2.0</link><guid isPermaLink="true">https://thinkwat.ch/changelog#v0.2.0</guid><description>Teams — isolate keys, budgets, and analytics per business unit · Rate limits &amp; budget caps with fail-closed enforcement and spend alerts · RBAC v2 — custom roles, permission history, one-click import/export · Tokens moved to HttpOnly cookies — XSS can no longer steal sessions · Full management API with OpenAPI docs and API-key auth · Real-time dashboard powered by WebSocket</description><pubDate>Fri, 10 Apr 2026 00:00:00 GMT</pubDate></item><item><title>v0.1.0 — Public preview</title><link>https://thinkwat.ch/changelog#v0.1.0</link><guid isPermaLink="true">https://thinkwat.ch/changelog#v0.1.0</guid><description>Multi-format AI API gateway (OpenAI, Anthropic, Gemini, Bedrock) · MCP gateway with namespace isolation and tool-level RBAC · ClickHouse-powered audit logs with multi-channel forwarding · First-run setup wizard and built-in configuration guide</description><pubDate>Mon, 06 Apr 2026 00:00:00 GMT</pubDate></item></channel></rss>