<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[A new version of Rig is available: v1.0.0-beta.54]]></title><description><![CDATA[<h2>v1.0.0-beta.54</h2>
<p dir="auto">Security hardening for MCP auth, process spawn, and the local Express dashboard.<br />
<strong>Shipped</strong> 12 Aug 2026 · <a href="https://userig.app/changelog" rel="nofollow ugc">Full changelog</a> · <a href="https://userig.app/download" rel="nofollow ugc">Download for Mac</a></p>
<h3>Added</h3>
<ul>
<li>Helmet security headers on the local desktop Express dashboard</li>
</ul>
<h3>Fixed</h3>
<ul>
<li>Process spawn no longer uses <code>shell: true</code> for package-manager scripts; Procfile/compose/artisan lines run via fixed <code>/bin/sh -c</code></li>
<li>MCP Bearer token compare uses <code>crypto.timingSafeEqual</code></li>
</ul>
<hr />
<p dir="auto"><em>Posted by Rig when this build hit <a href="https://userig.app/changelog" rel="nofollow ugc">userig.app/changelog</a>. Feedback welcome in Bugs / Feature ideas — private tickets still go to <a href="https://help.userig.app" rel="nofollow ugc">Support</a>.</em></p>
]]></description><link>https://community.userig.app/topic/133/a-new-version-of-rig-is-available-v1.0.0-beta.54</link><generator>RSS for Node</generator><lastBuildDate>Sat, 19 Sep 2026 02:26:45 GMT</lastBuildDate><atom:link href="https://community.userig.app/topic/133.rss" rel="self" type="application/rss+xml"/><pubDate>Wed, 12 Aug 2026 19:15:57 GMT</pubDate><ttl>60</ttl></channel></rss>