What's new in Aurus Ai

Every update, improvement, and fix—clearly tracked so you always know what changed.

What's new in Aurus Ai

Every update, improvement, and fix—clearly tracked so you always know what changed.

Updates & Improvemens

Updates & Improvemens

All

macOS

Windows

iOS

Jul 1, 2026

v

1.0.0

Aurus v1.0 — dashboard GA, CLI launch, and AI traffic analysis

macOS

iOS

Windows

Aurus v1.0.0 is here. The redesigned dashboard is now the default experience across macOS, iOS, and Windows. The CLI reaches general availability. AI traffic analysis ships for Enterprise. This is the most significant release in Aurus’s history — the foundation for everything that comes next.

Updates

Features

Dashboard GA

The completely redesigned Aurus dashboard is now the default experience for all users on macOS, iOS, and Windows. Sidebar navigation, dark mode, customizable home view, and redesigned API cards are all live. The legacy layout has been retired.

AI Traffic Analysis GA

AI-assisted traffic analysis is now generally available on Enterprise plans. The system surfaces anomalies, underused APIs, latency regressions, and unusual client patterns automatically. Alerts are delivered via dashboard, email, or webhook.

CLI General Availability

The Aurus CLI is now generally available on macOS, Windows, and Linux. Install via Homebrew (brew install aurus), Scoop, or direct download. Full parity with the dashboard for API gateway management, API key operations, and analytics queries.

Projects GA

Projects — the top-level workspace grouping introduced in beta — is now generally available on Growth and Enterprise plans. All beta users’ Project configurations have been migrated automatically. No action required.

Note:

AI traffic analysis requires Enterprise. CLI is available on all plans.

Fix

Stale Workspace List

Fixed an edge case where the Projects feature could show a stale workspace list after creating a new project, requiring a manual page refresh. The workspace list now updates immediately on project creation without any reload.

Windows Display Scaling Overflow

Fixed a rendering issue in the redesigned dashboard where API cards with very long names would overflow their container on Windows at 125% display scaling. Card text now truncates correctly at all scale factors.

iOS App Memory Leak

Fixed a memory leak in the iOS app where repeated workspace switches without a full app restart would gradually increase memory usage until the OS terminated the app. Memory is now correctly released on workspace unload.

iOS Blank Screen on Resume

Fixed an issue on iOS 18.3 where the dashboard would briefly show a blank screen when returning from background. The app now restores its last active view correctly without requiring a full reload.

Note:

All fixes apply across macOS, iOS, and Windows automatically.

Improvement

Dashboard Performance

The redesigned dashboard now renders in under 150ms across all plans and all API counts. The data fetching layer has been rewritten with parallel queries and incremental loading — the API list, analytics charts, and activity feed all load independently.

Gateway Variables GA

API gateway variables — the dynamic rule reference system introduced in beta — is now generally available on all paid plans. Manage your variables from Settings → Variables. All existing beta configurations are migrated automatically.

Offline Documentation

All Aurus documentation is now available offline via the desktop app. Docs are cached locally on first load and updated automatically with each release. Works without internet access for on-call engineers in restricted network environments.

Unified Documentation Search

The documentation search now returns results across API reference, guides, changelog, and blog entries in a unified result set. Results are ranked by relevance and filtered by the version of Aurus your workspace is running.

Note:

All improvements are live on v1.0.0. No action required.

Shipped by

James O'Brien

Jun 1, 2026

Beta

1.0.0

v1.0 beta — dashboard redesign, AI traffic analysis, and CLI preview

macOS

iOS

Windows

v1.0.0-beta is the preview release of Aurus v1.0. This release introduces AI-assisted traffic analysis, dynamic API gateway rule variables, and a fully redesigned dashboard experience. Beta participants on all platforms get early access to every v1.0 feature two weeks before general availability.

Updates

Features

Dashboard Redesign

The Aurus dashboard has been completely redesigned for v1.0. A new sidebar navigation, redesigned API cards, dark mode support, and a customizable home view are all available in beta. The legacy layout remains accessible via Settings during the transition period.

Gateway Rule Variables

API gateway rules can now reference environment variables instead of hardcoded values. Rotate secrets, update IP ranges, and change rate limits across all rules simultaneously by updating a single variable — no individual rule edits required.

AI Traffic Analysis

Early access to AI-powered traffic analysis for Enterprise plans. Aurus monitors your API patterns and surfaces anomalies, underused APIs, and latency regressions automatically — no manual threshold configuration required. Enable from API gateway Settings → Intelligence.

Project Workspaces

Workspaces can now be organized into Projects — a top-level grouping for teams managing multiple products or environments. Projects share billing, team members, and SSO configuration while keeping API gateway configurations fully isolated.

Note:

Requires opt-in from Workspace Settings → Beta Features.

Fix

Simultaneous Rule Save Conflict

Fixed a race condition where simultaneous API gateway rule saves from two team members could result in one change being silently dropped. Rule saves are now serialized with optimistic locking and a clear conflict error message when a collision occurs.

Multi-Region Failover Spike

Fixed a race condition in the multi-region failover logic that could cause a 500–1500ms latency spike during region switchover events. Failover now completes within one health check interval without any latency impact on in-flight requests.

WebSocket Session Timeout

Fixed WebSocket connections being dropped after 60 seconds on gateways configured with custom timeout rules. WebSocket sessions now correctly bypass timeout rules that are scoped to HTTP-only traffic.

API Key Expiry on Weekends

Fixed an edge case where API key expiry notifications were not sent when the expiry date fell on a weekend. Notifications are now queued on Friday for keys expiring Saturday or Sunday, with the same 7-day and 1-day advance notice as weekday expirations.

Note:

All fixes ship to beta participants automatically. No action required.

Improvement

CLI Public Beta

The Aurus CLI is now available in public beta for macOS, Windows, and Linux. Deploy rule changes, rotate API keys, manage workspaces, and stream live API gateway logs — all from your terminal. Install via Homebrew, Scoop, or direct download.

Live Request Tracing

Live request tracing is now available in beta. Trace individual requests through your API gateway stack — see every rule evaluated, every transformation applied, and the exact latency at each processing stage. Available from the API detail view.

Dashboard Speed

The workspace dashboard now renders in under 150ms on all plans regardless of API count. The data fetching layer has been rewritten with parallel queries and incremental loading — API list, analytics charts, and activity feed all load independently.

Documentation Redesign

The public documentation site has been redesigned with faster search, better code examples, and a new interactive API reference powered by the Aurus OpenAPI spec. All examples now include real request and response payloads.

Note:

Active by default for all beta participants.

Shipped by

Marcus Johnson

May 1, 2026

v

0.9.2

Multi-region routing, anomaly detection beta, and SOC II log exports

Windows

iOS

v0.9.2 ships multi-region routing for Enterprise, API key rotation notifications, idempotency key enforcement, and a fix for rate limit counter drift under high concurrency. The SOC II audit log export format has been upgraded to structured JSON, and API gateway rule deployment speed is now nearly instant across all edge nodes.

Updates

Features

Multi-Region Routing

Enterprise plans can now route API traffic to the nearest available region automatically. Configure preferred regions from API gateway Settings — requests failover seamlessly if a region goes down. Supported regions: US East, EU West, AP Southeast.

API Key Rotation Notifications

Workspace admins now receive an email notification whenever an API key is rotated — whether triggered manually or by an automated rotation policy. Notifications include the key name, the triggering team member, and a precise timestamp.

Anomaly Detection Beta

Early access to API gateway-level anomaly detection for Fintech customers on Enterprise plans. The system flags unusual rate patterns, IP geo-jumps, and sudden volume spikes from a single API key in real time, before they reach your application.

Idempotency Key Enforcement

Builder and Growth plans can now enforce idempotency keys on mutation APIs directly from the API gateway configuration panel. Duplicate requests are detected and rejected at the infrastructure level — no application code changes required.

Note:

Multi-region routing requires Enterprise plan. Anomaly detection is in beta — enable it from Gateway Settings → Security.

Fix

Rate Limit Counter Drift

Fixed a bug where rate limit counters could drift under high concurrency, causing requests to be incorrectly throttled or allowed above the configured limit. The fix uses atomic counter updates across the distributed cache layer.

SSL Certificate Auto-Renewal

Fixed an edge case where custom domain SSL certificates were not renewed automatically when a domain had recently been transferred between workspaces. Certificates now renew correctly regardless of prior ownership history.

Audit Log Timestamp Offset

Fixed incorrect timestamp display in audit logs for users in UTC+12 and UTC+13 timezones. All log entries now display in the viewer's local timezone with the correct offset applied.

Dashboard 404 on Workspace Switch

Fixed a redirect that occasionally produced a 404 when switching between workspaces while on a deep-linked dashboard page (e.g. a specific API detail view). The redirect now correctly lands on the equivalent page in the new workspace.

Note:

All fixes apply to all plans. SSL certificate fix is retroactive for all affected domains.

Improvement

SOC II Audit Log Export

Audit log exports now produce structured JSON with full attribution metadata — user ID, role, action type, and resource affected. The new format is accepted directly by major SOC II audit tools including Vanta, Drata, and Secureframe.

Dashboard Performance

Significantly improved dashboard load time for workspaces with more than 50 APIs. The API list now uses virtualized rendering and loads in under 400ms on most connections, down from up to 4 seconds previously.

Gateway Rule Deployment Speed

API gateway rule changes now propagate to all edge nodes within 800ms on average, down from 3–4 seconds in v0.9.1. Changes are applied atomically — no in-flight requests are dropped during the propagation window.

Workspace Activity Feed

The workspace activity feed now loads incrementally as you scroll, rather than fetching all events at once. Workspaces with years of history now render the feed in under 200ms on initial load.

Note:

All improvements apply to Builder, Growth, and Enterprise plans unless noted otherwise.

Shipped by

Marcus Johnson

Apr 1, 2026

v

0.9.1

VPC deployment, custom SSL certificates, and data residency controls

macOS

v0.9.1 launches VPC deployment for Enterprise customers on AWS, GCP, and Azure. Custom SSL certificate support arrives for custom domains, and per-version traffic analytics are now available in API detail views. Dashboard performance is significantly improved for large workspaces, and four bugs have been resolved including a mobile scroll lock issue on iOS.

Updates

Features

VPC Deployment

Enterprise customers can now deploy Aurus API gateway infrastructure inside their own Virtual Private Cloud on AWS, GCP, or Azure. VPC deployment provides network-level isolation, dedicated compute, and meets the data residency requirements of most financial services regulators.

Custom SSL Certificates

Custom domains now support bring-your-own SSL certificates. Upload your certificate and private key from Domains settings. Aurus serves your certificate and alerts you 30 days before expiry to prevent any lapse in HTTPS coverage.

Per-Version Traffic Analytics

The API detail view now shows request volume broken down by API version. Use this to identify which clients are still on deprecated versions before setting a sunset date — with real traffic data, not guesswork.

Data Residency Controls

Enterprise workspaces can now pin specific API collections to specific geographic regions. Requests to those collections are only processed within the selected region, supporting EU data residency and similar regulatory requirements.

Note:

VPC deployment and Data Residency Controls require Enterprise plan. Custom SSL certificates available on Builder and above.

Fix

Workspace Redirect Loop

Fixed a redirect loop that could occur when switching between workspaces while on the workspace settings page. The redirect now correctly lands on the new workspace dashboard without cycling through intermediate pages.

Date Formatting in Audit Logs

Fixed audit log date display for users whose browser locale uses DD/MM/YYYY format — dates were previously showing as 'Invalid Date'. All dates now display correctly regardless of locale settings.

Custom Domain DNS Validation

Fixed an intermittent DNS validation failure for custom domains using CNAME records with trailing dots. Validation now strips trailing dots before checking propagation, resolving false negatives for affected domains.

Mobile Nav Scroll Lock

Fixed an issue on iOS where the mobile navigation menu did not release the body scroll lock after being closed, leaving the page unscrollable until the user reloaded. Scroll lock is now correctly released on menu close and on route change.

Note:

Mobile scroll lock fix applies to iOS Safari and Chrome on iOS. DNS validation fix is retroactive for all affected custom domains.

Improvement

Documentation: Japanese and French

All core Aurus documentation is now available in Japanese and French. API reference, quickstart guides, and the API gateway configuration manual have been fully translated by native-speaking technical writers with API domain expertise.

Dashboard Performance (50+ Endpoints)

Workspaces with more than 50 APIs now load significantly faster. API list rendering is now virtualized and the underlying API response is paginated, reducing initial load time by up to 90% for large workspaces.

Email Notification Batching

Quota alert emails are now batched — if your workspace crosses multiple thresholds in rapid succession (80% and 90% in the same minute), you receive a single email with all alerts rather than a flood of separate messages.

Rate Limit Rule Ordering

API gateway rate limit rules are now evaluated in priority order as shown in the rules panel. Drag-and-drop reordering lets you control evaluation sequence without deleting and re-creating rules.

Note:

Dashboard performance improvements apply to Builder, Growth, and Enterprise plans.

Shipped by

David Kim

Mar 1, 2026

v

0.9.0

Public config API beta, Builder plan expansion, and redesigned onboarding

macOS

iOS

v0.9.0 is a major release. Builder plan now includes full API management. The Aurus public configuration API launches in beta. The Compare Plans pricing page goes live and the onboarding flow is redesigned from scratch.

Updates

Features

Public Configuration API

The Aurus API gateway configuration API is now in public beta. Programmatically create and update API gateway rules, manage API keys, configure rate limits, and retrieve analytics via authenticated REST. Full OpenAPI spec available in docs.

Compare Plans Pricing Page

The new pricing page includes a full feature comparison table across all four plans, organized by API infrastructure, Deployment, Security, and Workspace sections. Built for technical buyers who need the full picture before committing.

Builder Plan: Full Endpoint Management

The Builder plan now includes full API management — create unlimited APIs, configure per-API rate limits, set custom response headers, and manage deprecation lifecycle with sunset date tooling. Previously Growth-only.

Workspace Audit Log UI

The workspace audit log is now accessible from the dashboard. View a full timeline of configuration changes, API key events, and API gateway rule updates — filterable by date range, user, and action type.

Note:

Public Configuration API is in beta. Join from your workspace settings.

Fix

Endpoint List Pagination

Fixed a bug where the API list would silently drop APIs beyond position 100. All APIs are now returned correctly across paginated responses.

Rate Limit Rule Import

Fixed a failure in the bulk rule import tool where rules containing special characters in the description field caused the import to abort. The importer now sanitizes and imports all valid rules, reporting only the invalid ones.

SSO Token Refresh

Fixed an intermittent SSO session expiry issue on the Okta integration where refresh tokens were not rotating correctly, causing unexpected logouts after 24 hours.

Gateway Health Status

Fixed the API gateway health indicator showing stale status for up to 5 minutes after a resolved incident. Health status now refreshes every 30 seconds and reflects actual node state within one polling cycle.

Note:

Endpoint list pagination fix is retroactive. SSO token fix applies to Okta integrations only.

Improvement

Builder Plan Access Expansion

All features previously gated to Growth plan — custom domains, advanced rate limiting, per-API analytics — are now included in the Builder plan at no additional cost, effective immediately for all existing customers.

Gateway Rule Conflict Detection

The API gateway now detects conflicting rules at save time rather than silently applying the wrong rule at runtime. Conflicts are highlighted with a plain-language explanation and a suggested resolution.

Onboarding Flow Redesign

The new workspace onboarding flow guides you through your first API gateway configuration in under 10 minutes — from connecting your first API to setting your first rate limit rule and inviting a teammate.

Analytics Dashboard Refresh

The analytics dashboard has been redesigned with a cleaner layout, faster data loading, and new charts for request latency distribution and error rate over time. Latency percentile views (p50, p95, p99) are now available on all paid plans.

Note:

Builder plan expansion is retroactive — all existing Builder customers have immediate access to newly included features.

Shipped by

Elena Rodriguez

Feb 1, 2026

v

0.8.5

SSO launch, granular RBAC, and adaptive traffic routing

macOS

Windows

v0.8.5 launches SSO support for Growth and Enterprise plans with Okta, Google Workspace, and Azure AD. Role-based access control gets workspace-level granularity, adaptive traffic routing ships for multi-service backends, and API key scoping gives fine-grained key permissions per API.

Updates

Features

SSO Integration

Single sign-on is now available for Growth and Enterprise plans. Supported identity providers: Okta, Google Workspace, and Azure AD. Configure SSO from Workspace Settings → Security. All team members will be required to authenticate via the configured provider.

Granular Role-Based Access Control

Workspace permissions now support three roles — Admin, Developer, and Viewer — with configurable access per section. Admins can create custom roles with any combination of permissions for fine-grained team access control.

Adaptive Traffic Routing

The API gateway can now distribute traffic across multiple backend services using weighted round-robin, with automatic weight adjustment based on real-time error rates. If a backend starts failing, Aurus shifts traffic to healthy backends without manual intervention.

API Key Scoping

API keys can now be scoped to specific APIs, methods, and IP ranges at creation time. Scoped keys are rejected at the API gateway level if used outside their configured scope, before the request reaches your application.

Note:

SSO requires Growth or Enterprise. API key scoping on all paid plans.

Fix

RBAC Permission Inheritance

Fixed a bug where custom roles did not correctly inherit base permissions when a new workspace section was added, leaving some team members unable to access new features. Custom roles now inherit new section permissions from their base role by default.

Okta SSO Token Validation

Fixed a token validation edge case with Okta SSO where tokens signed with RS384 were rejected as invalid. All RSA signature variants (RS256, RS384, RS512) are now accepted by the Aurus token validation layer.

Adaptive Routing Fallback

Fixed a scenario where adaptive routing sent all traffic to a single backend when all backends reported identical error rates above the threshold. The fallback now distributes traffic equally across all available backends.

Billing Invoice Date

Fixed billing invoices showing the wrong billing period end date for annual plans that started mid-month. Invoice dates now correctly reflect the actual billing period in all cases. Affected customers will receive corrected invoice PDFs by email.

Note:

Okta RS384 fix is automatic. Billing invoice corrections sent by email.

Improvement

SSO Login Performance

SSO authentication round-trip time has been reduced from an average of 800ms to under 200ms by caching identity provider metadata locally at the API gateway layer. The improvement applies to all supported SSO providers.

API Key Management UI

The API keys panel has been redesigned with a searchable list, last-used timestamps, per-key request volume sparklines, and one-click rotation. Keys are grouped by scope for workspaces with large numbers of active keys.

Rate Limit Rule Templates

Five pre-built rate limit rule templates are now available in the rules panel: Standard API, Public API, Partner Integration, Internal Service, and Fintech Payment. Templates can be applied and customized in under a minute.

Team Invitation Flow

The team invitation flow now supports bulk invite by CSV upload. Invite up to 50 team members at once with role pre-assignment per row. Invitations are sent immediately and expire after 7 days.

Note:

SSO requires Growth or Enterprise. Adaptive routing on Builder and above.

Shipped by

Tom Nakamura

All

macOS

Windows

iOS

Jul 1, 2026

v

1.0.0

Aurus v1.0 — dashboard GA, CLI launch, and AI traffic analysis

macOS

iOS

Windows

Aurus v1.0.0 is here. The redesigned dashboard is now the default experience across macOS, iOS, and Windows. The CLI reaches general availability. AI traffic analysis ships for Enterprise. This is the most significant release in Aurus’s history — the foundation for everything that comes next.

Updates

Features

Dashboard GA

The completely redesigned Aurus dashboard is now the default experience for all users on macOS, iOS, and Windows. Sidebar navigation, dark mode, customizable home view, and redesigned API cards are all live. The legacy layout has been retired.

AI Traffic Analysis GA

AI-assisted traffic analysis is now generally available on Enterprise plans. The system surfaces anomalies, underused APIs, latency regressions, and unusual client patterns automatically. Alerts are delivered via dashboard, email, or webhook.

CLI General Availability

The Aurus CLI is now generally available on macOS, Windows, and Linux. Install via Homebrew (brew install aurus), Scoop, or direct download. Full parity with the dashboard for API gateway management, API key operations, and analytics queries.

Projects GA

Projects — the top-level workspace grouping introduced in beta — is now generally available on Growth and Enterprise plans. All beta users’ Project configurations have been migrated automatically. No action required.

Note:

AI traffic analysis requires Enterprise. CLI is available on all plans.

Fix

Stale Workspace List

Fixed an edge case where the Projects feature could show a stale workspace list after creating a new project, requiring a manual page refresh. The workspace list now updates immediately on project creation without any reload.

Windows Display Scaling Overflow

Fixed a rendering issue in the redesigned dashboard where API cards with very long names would overflow their container on Windows at 125% display scaling. Card text now truncates correctly at all scale factors.

iOS App Memory Leak

Fixed a memory leak in the iOS app where repeated workspace switches without a full app restart would gradually increase memory usage until the OS terminated the app. Memory is now correctly released on workspace unload.

iOS Blank Screen on Resume

Fixed an issue on iOS 18.3 where the dashboard would briefly show a blank screen when returning from background. The app now restores its last active view correctly without requiring a full reload.

Note:

All fixes apply across macOS, iOS, and Windows automatically.

Improvement

Dashboard Performance

The redesigned dashboard now renders in under 150ms across all plans and all API counts. The data fetching layer has been rewritten with parallel queries and incremental loading — the API list, analytics charts, and activity feed all load independently.

Gateway Variables GA

API gateway variables — the dynamic rule reference system introduced in beta — is now generally available on all paid plans. Manage your variables from Settings → Variables. All existing beta configurations are migrated automatically.

Offline Documentation

All Aurus documentation is now available offline via the desktop app. Docs are cached locally on first load and updated automatically with each release. Works without internet access for on-call engineers in restricted network environments.

Unified Documentation Search

The documentation search now returns results across API reference, guides, changelog, and blog entries in a unified result set. Results are ranked by relevance and filtered by the version of Aurus your workspace is running.

Note:

All improvements are live on v1.0.0. No action required.

Shipped by

James O'Brien

Jun 1, 2026

Beta

1.0.0

v1.0 beta — dashboard redesign, AI traffic analysis, and CLI preview

macOS

iOS

Windows

v1.0.0-beta is the preview release of Aurus v1.0. This release introduces AI-assisted traffic analysis, dynamic API gateway rule variables, and a fully redesigned dashboard experience. Beta participants on all platforms get early access to every v1.0 feature two weeks before general availability.

Updates

Features

Dashboard Redesign

The Aurus dashboard has been completely redesigned for v1.0. A new sidebar navigation, redesigned API cards, dark mode support, and a customizable home view are all available in beta. The legacy layout remains accessible via Settings during the transition period.

Gateway Rule Variables

API gateway rules can now reference environment variables instead of hardcoded values. Rotate secrets, update IP ranges, and change rate limits across all rules simultaneously by updating a single variable — no individual rule edits required.

AI Traffic Analysis

Early access to AI-powered traffic analysis for Enterprise plans. Aurus monitors your API patterns and surfaces anomalies, underused APIs, and latency regressions automatically — no manual threshold configuration required. Enable from API gateway Settings → Intelligence.

Project Workspaces

Workspaces can now be organized into Projects — a top-level grouping for teams managing multiple products or environments. Projects share billing, team members, and SSO configuration while keeping API gateway configurations fully isolated.

Note:

Requires opt-in from Workspace Settings → Beta Features.

Fix

Simultaneous Rule Save Conflict

Fixed a race condition where simultaneous API gateway rule saves from two team members could result in one change being silently dropped. Rule saves are now serialized with optimistic locking and a clear conflict error message when a collision occurs.

Multi-Region Failover Spike

Fixed a race condition in the multi-region failover logic that could cause a 500–1500ms latency spike during region switchover events. Failover now completes within one health check interval without any latency impact on in-flight requests.

WebSocket Session Timeout

Fixed WebSocket connections being dropped after 60 seconds on gateways configured with custom timeout rules. WebSocket sessions now correctly bypass timeout rules that are scoped to HTTP-only traffic.

API Key Expiry on Weekends

Fixed an edge case where API key expiry notifications were not sent when the expiry date fell on a weekend. Notifications are now queued on Friday for keys expiring Saturday or Sunday, with the same 7-day and 1-day advance notice as weekday expirations.

Note:

All fixes ship to beta participants automatically. No action required.

Improvement

CLI Public Beta

The Aurus CLI is now available in public beta for macOS, Windows, and Linux. Deploy rule changes, rotate API keys, manage workspaces, and stream live API gateway logs — all from your terminal. Install via Homebrew, Scoop, or direct download.

Live Request Tracing

Live request tracing is now available in beta. Trace individual requests through your API gateway stack — see every rule evaluated, every transformation applied, and the exact latency at each processing stage. Available from the API detail view.

Dashboard Speed

The workspace dashboard now renders in under 150ms on all plans regardless of API count. The data fetching layer has been rewritten with parallel queries and incremental loading — API list, analytics charts, and activity feed all load independently.

Documentation Redesign

The public documentation site has been redesigned with faster search, better code examples, and a new interactive API reference powered by the Aurus OpenAPI spec. All examples now include real request and response payloads.

Note:

Active by default for all beta participants.

Shipped by

Marcus Johnson

May 1, 2026

v

0.9.2

Multi-region routing, anomaly detection beta, and SOC II log exports

Windows

iOS

v0.9.2 ships multi-region routing for Enterprise, API key rotation notifications, idempotency key enforcement, and a fix for rate limit counter drift under high concurrency. The SOC II audit log export format has been upgraded to structured JSON, and API gateway rule deployment speed is now nearly instant across all edge nodes.

Updates

Features

Multi-Region Routing

Enterprise plans can now route API traffic to the nearest available region automatically. Configure preferred regions from API gateway Settings — requests failover seamlessly if a region goes down. Supported regions: US East, EU West, AP Southeast.

API Key Rotation Notifications

Workspace admins now receive an email notification whenever an API key is rotated — whether triggered manually or by an automated rotation policy. Notifications include the key name, the triggering team member, and a precise timestamp.

Anomaly Detection Beta

Early access to API gateway-level anomaly detection for Fintech customers on Enterprise plans. The system flags unusual rate patterns, IP geo-jumps, and sudden volume spikes from a single API key in real time, before they reach your application.

Idempotency Key Enforcement

Builder and Growth plans can now enforce idempotency keys on mutation APIs directly from the API gateway configuration panel. Duplicate requests are detected and rejected at the infrastructure level — no application code changes required.

Note:

Multi-region routing requires Enterprise plan. Anomaly detection is in beta — enable it from Gateway Settings → Security.

Fix

Rate Limit Counter Drift

Fixed a bug where rate limit counters could drift under high concurrency, causing requests to be incorrectly throttled or allowed above the configured limit. The fix uses atomic counter updates across the distributed cache layer.

SSL Certificate Auto-Renewal

Fixed an edge case where custom domain SSL certificates were not renewed automatically when a domain had recently been transferred between workspaces. Certificates now renew correctly regardless of prior ownership history.

Audit Log Timestamp Offset

Fixed incorrect timestamp display in audit logs for users in UTC+12 and UTC+13 timezones. All log entries now display in the viewer's local timezone with the correct offset applied.

Dashboard 404 on Workspace Switch

Fixed a redirect that occasionally produced a 404 when switching between workspaces while on a deep-linked dashboard page (e.g. a specific API detail view). The redirect now correctly lands on the equivalent page in the new workspace.

Note:

All fixes apply to all plans. SSL certificate fix is retroactive for all affected domains.

Improvement

SOC II Audit Log Export

Audit log exports now produce structured JSON with full attribution metadata — user ID, role, action type, and resource affected. The new format is accepted directly by major SOC II audit tools including Vanta, Drata, and Secureframe.

Dashboard Performance

Significantly improved dashboard load time for workspaces with more than 50 APIs. The API list now uses virtualized rendering and loads in under 400ms on most connections, down from up to 4 seconds previously.

Gateway Rule Deployment Speed

API gateway rule changes now propagate to all edge nodes within 800ms on average, down from 3–4 seconds in v0.9.1. Changes are applied atomically — no in-flight requests are dropped during the propagation window.

Workspace Activity Feed

The workspace activity feed now loads incrementally as you scroll, rather than fetching all events at once. Workspaces with years of history now render the feed in under 200ms on initial load.

Note:

All improvements apply to Builder, Growth, and Enterprise plans unless noted otherwise.

Shipped by

Marcus Johnson

Apr 1, 2026

v

0.9.1

VPC deployment, custom SSL certificates, and data residency controls

macOS

v0.9.1 launches VPC deployment for Enterprise customers on AWS, GCP, and Azure. Custom SSL certificate support arrives for custom domains, and per-version traffic analytics are now available in API detail views. Dashboard performance is significantly improved for large workspaces, and four bugs have been resolved including a mobile scroll lock issue on iOS.

Updates

Features

VPC Deployment

Enterprise customers can now deploy Aurus API gateway infrastructure inside their own Virtual Private Cloud on AWS, GCP, or Azure. VPC deployment provides network-level isolation, dedicated compute, and meets the data residency requirements of most financial services regulators.

Custom SSL Certificates

Custom domains now support bring-your-own SSL certificates. Upload your certificate and private key from Domains settings. Aurus serves your certificate and alerts you 30 days before expiry to prevent any lapse in HTTPS coverage.

Per-Version Traffic Analytics

The API detail view now shows request volume broken down by API version. Use this to identify which clients are still on deprecated versions before setting a sunset date — with real traffic data, not guesswork.

Data Residency Controls

Enterprise workspaces can now pin specific API collections to specific geographic regions. Requests to those collections are only processed within the selected region, supporting EU data residency and similar regulatory requirements.

Note:

VPC deployment and Data Residency Controls require Enterprise plan. Custom SSL certificates available on Builder and above.

Fix

Workspace Redirect Loop

Fixed a redirect loop that could occur when switching between workspaces while on the workspace settings page. The redirect now correctly lands on the new workspace dashboard without cycling through intermediate pages.

Date Formatting in Audit Logs

Fixed audit log date display for users whose browser locale uses DD/MM/YYYY format — dates were previously showing as 'Invalid Date'. All dates now display correctly regardless of locale settings.

Custom Domain DNS Validation

Fixed an intermittent DNS validation failure for custom domains using CNAME records with trailing dots. Validation now strips trailing dots before checking propagation, resolving false negatives for affected domains.

Mobile Nav Scroll Lock

Fixed an issue on iOS where the mobile navigation menu did not release the body scroll lock after being closed, leaving the page unscrollable until the user reloaded. Scroll lock is now correctly released on menu close and on route change.

Note:

Mobile scroll lock fix applies to iOS Safari and Chrome on iOS. DNS validation fix is retroactive for all affected custom domains.

Improvement

Documentation: Japanese and French

All core Aurus documentation is now available in Japanese and French. API reference, quickstart guides, and the API gateway configuration manual have been fully translated by native-speaking technical writers with API domain expertise.

Dashboard Performance (50+ Endpoints)

Workspaces with more than 50 APIs now load significantly faster. API list rendering is now virtualized and the underlying API response is paginated, reducing initial load time by up to 90% for large workspaces.

Email Notification Batching

Quota alert emails are now batched — if your workspace crosses multiple thresholds in rapid succession (80% and 90% in the same minute), you receive a single email with all alerts rather than a flood of separate messages.

Rate Limit Rule Ordering

API gateway rate limit rules are now evaluated in priority order as shown in the rules panel. Drag-and-drop reordering lets you control evaluation sequence without deleting and re-creating rules.

Note:

Dashboard performance improvements apply to Builder, Growth, and Enterprise plans.

Shipped by

David Kim

Mar 1, 2026

v

0.9.0

Public config API beta, Builder plan expansion, and redesigned onboarding

macOS

iOS

v0.9.0 is a major release. Builder plan now includes full API management. The Aurus public configuration API launches in beta. The Compare Plans pricing page goes live and the onboarding flow is redesigned from scratch.

Updates

Features

Public Configuration API

The Aurus API gateway configuration API is now in public beta. Programmatically create and update API gateway rules, manage API keys, configure rate limits, and retrieve analytics via authenticated REST. Full OpenAPI spec available in docs.

Compare Plans Pricing Page

The new pricing page includes a full feature comparison table across all four plans, organized by API infrastructure, Deployment, Security, and Workspace sections. Built for technical buyers who need the full picture before committing.

Builder Plan: Full Endpoint Management

The Builder plan now includes full API management — create unlimited APIs, configure per-API rate limits, set custom response headers, and manage deprecation lifecycle with sunset date tooling. Previously Growth-only.

Workspace Audit Log UI

The workspace audit log is now accessible from the dashboard. View a full timeline of configuration changes, API key events, and API gateway rule updates — filterable by date range, user, and action type.

Note:

Public Configuration API is in beta. Join from your workspace settings.

Fix

Endpoint List Pagination

Fixed a bug where the API list would silently drop APIs beyond position 100. All APIs are now returned correctly across paginated responses.

Rate Limit Rule Import

Fixed a failure in the bulk rule import tool where rules containing special characters in the description field caused the import to abort. The importer now sanitizes and imports all valid rules, reporting only the invalid ones.

SSO Token Refresh

Fixed an intermittent SSO session expiry issue on the Okta integration where refresh tokens were not rotating correctly, causing unexpected logouts after 24 hours.

Gateway Health Status

Fixed the API gateway health indicator showing stale status for up to 5 minutes after a resolved incident. Health status now refreshes every 30 seconds and reflects actual node state within one polling cycle.

Note:

Endpoint list pagination fix is retroactive. SSO token fix applies to Okta integrations only.

Improvement

Builder Plan Access Expansion

All features previously gated to Growth plan — custom domains, advanced rate limiting, per-API analytics — are now included in the Builder plan at no additional cost, effective immediately for all existing customers.

Gateway Rule Conflict Detection

The API gateway now detects conflicting rules at save time rather than silently applying the wrong rule at runtime. Conflicts are highlighted with a plain-language explanation and a suggested resolution.

Onboarding Flow Redesign

The new workspace onboarding flow guides you through your first API gateway configuration in under 10 minutes — from connecting your first API to setting your first rate limit rule and inviting a teammate.

Analytics Dashboard Refresh

The analytics dashboard has been redesigned with a cleaner layout, faster data loading, and new charts for request latency distribution and error rate over time. Latency percentile views (p50, p95, p99) are now available on all paid plans.

Note:

Builder plan expansion is retroactive — all existing Builder customers have immediate access to newly included features.

Shipped by

Elena Rodriguez

Feb 1, 2026

v

0.8.5

SSO launch, granular RBAC, and adaptive traffic routing

macOS

Windows

v0.8.5 launches SSO support for Growth and Enterprise plans with Okta, Google Workspace, and Azure AD. Role-based access control gets workspace-level granularity, adaptive traffic routing ships for multi-service backends, and API key scoping gives fine-grained key permissions per API.

Updates

Features

SSO Integration

Single sign-on is now available for Growth and Enterprise plans. Supported identity providers: Okta, Google Workspace, and Azure AD. Configure SSO from Workspace Settings → Security. All team members will be required to authenticate via the configured provider.

Granular Role-Based Access Control

Workspace permissions now support three roles — Admin, Developer, and Viewer — with configurable access per section. Admins can create custom roles with any combination of permissions for fine-grained team access control.

Adaptive Traffic Routing

The API gateway can now distribute traffic across multiple backend services using weighted round-robin, with automatic weight adjustment based on real-time error rates. If a backend starts failing, Aurus shifts traffic to healthy backends without manual intervention.

API Key Scoping

API keys can now be scoped to specific APIs, methods, and IP ranges at creation time. Scoped keys are rejected at the API gateway level if used outside their configured scope, before the request reaches your application.

Note:

SSO requires Growth or Enterprise. API key scoping on all paid plans.

Fix

RBAC Permission Inheritance

Fixed a bug where custom roles did not correctly inherit base permissions when a new workspace section was added, leaving some team members unable to access new features. Custom roles now inherit new section permissions from their base role by default.

Okta SSO Token Validation

Fixed a token validation edge case with Okta SSO where tokens signed with RS384 were rejected as invalid. All RSA signature variants (RS256, RS384, RS512) are now accepted by the Aurus token validation layer.

Adaptive Routing Fallback

Fixed a scenario where adaptive routing sent all traffic to a single backend when all backends reported identical error rates above the threshold. The fallback now distributes traffic equally across all available backends.

Billing Invoice Date

Fixed billing invoices showing the wrong billing period end date for annual plans that started mid-month. Invoice dates now correctly reflect the actual billing period in all cases. Affected customers will receive corrected invoice PDFs by email.

Note:

Okta RS384 fix is automatic. Billing invoice corrections sent by email.

Improvement

SSO Login Performance

SSO authentication round-trip time has been reduced from an average of 800ms to under 200ms by caching identity provider metadata locally at the API gateway layer. The improvement applies to all supported SSO providers.

API Key Management UI

The API keys panel has been redesigned with a searchable list, last-used timestamps, per-key request volume sparklines, and one-click rotation. Keys are grouped by scope for workspaces with large numbers of active keys.

Rate Limit Rule Templates

Five pre-built rate limit rule templates are now available in the rules panel: Standard API, Public API, Partner Integration, Internal Service, and Fintech Payment. Templates can be applied and customized in under a minute.

Team Invitation Flow

The team invitation flow now supports bulk invite by CSV upload. Invite up to 50 team members at once with role pre-assignment per row. Invitations are sent immediately and expire after 7 days.

Note:

SSO requires Growth or Enterprise. Adaptive routing on Builder and above.

Shipped by

Tom Nakamura

All

macOS

Windows

iOS

April 07, 2026

v

1.0.0

Aurus v1.0 — dashboard GA, CLI launch, and AI traffic analysis

macOS

iOS

Windows

Aurus v1.0.0 is here. The redesigned dashboard is now the default experience across macOS, iOS, and Windows. The CLI reaches general availability. AI traffic analysis ships for Enterprise. This is the most significant release in Aurus’s history — the foundation for everything that comes next.

Updates

Features

Dashboard GA

The completely redesigned Aurus dashboard is now the default experience for all users on macOS, iOS, and Windows. Sidebar navigation, dark mode, customizable home view, and redesigned API cards are all live. The legacy layout has been retired.

AI Traffic Analysis GA

AI-assisted traffic analysis is now generally available on Enterprise plans. The system surfaces anomalies, underused APIs, latency regressions, and unusual client patterns automatically. Alerts are delivered via dashboard, email, or webhook.

CLI General Availability

The Aurus CLI is now generally available on macOS, Windows, and Linux. Install via Homebrew (brew install aurus), Scoop, or direct download. Full parity with the dashboard for API gateway management, API key operations, and analytics queries.

Projects GA

Projects — the top-level workspace grouping introduced in beta — is now generally available on Growth and Enterprise plans. All beta users’ Project configurations have been migrated automatically. No action required.

Note:

AI traffic analysis requires Enterprise. CLI is available on all plans.

Fix

Stale Workspace List

Fixed an edge case where the Projects feature could show a stale workspace list after creating a new project, requiring a manual page refresh. The workspace list now updates immediately on project creation without any reload.

Windows Display Scaling Overflow

Fixed a rendering issue in the redesigned dashboard where API cards with very long names would overflow their container on Windows at 125% display scaling. Card text now truncates correctly at all scale factors.

iOS App Memory Leak

Fixed a memory leak in the iOS app where repeated workspace switches without a full app restart would gradually increase memory usage until the OS terminated the app. Memory is now correctly released on workspace unload.

iOS Blank Screen on Resume

Fixed an issue on iOS 18.3 where the dashboard would briefly show a blank screen when returning from background. The app now restores its last active view correctly without requiring a full reload.

Note:

All fixes apply across macOS, iOS, and Windows automatically.

Improvement

Dashboard Performance

The redesigned dashboard now renders in under 150ms across all plans and all API counts. The data fetching layer has been rewritten with parallel queries and incremental loading — the API list, analytics charts, and activity feed all load independently.

Gateway Variables GA

API gateway variables — the dynamic rule reference system introduced in beta — is now generally available on all paid plans. Manage your variables from Settings → Variables. All existing beta configurations are migrated automatically.

Offline Documentation

All Aurus documentation is now available offline via the desktop app. Docs are cached locally on first load and updated automatically with each release. Works without internet access for on-call engineers in restricted network environments.

Unified Documentation Search

The documentation search now returns results across API reference, guides, changelog, and blog entries in a unified result set. Results are ranked by relevance and filtered by the version of Aurus your workspace is running.

Note:

All improvements are live on v1.0.0. No action required.

Shipped by

James O'Brien

April 07, 2026

Beta

1.0.0

v1.0 beta — dashboard redesign, AI traffic analysis, and CLI preview

macOS

iOS

Windows

v1.0.0-beta is the preview release of Aurus v1.0. This release introduces AI-assisted traffic analysis, dynamic API gateway rule variables, and a fully redesigned dashboard experience. Beta participants on all platforms get early access to every v1.0 feature two weeks before general availability.

Updates

Features

Dashboard Redesign

The Aurus dashboard has been completely redesigned for v1.0. A new sidebar navigation, redesigned API cards, dark mode support, and a customizable home view are all available in beta. The legacy layout remains accessible via Settings during the transition period.

Gateway Rule Variables

API gateway rules can now reference environment variables instead of hardcoded values. Rotate secrets, update IP ranges, and change rate limits across all rules simultaneously by updating a single variable — no individual rule edits required.

AI Traffic Analysis

Early access to AI-powered traffic analysis for Enterprise plans. Aurus monitors your API patterns and surfaces anomalies, underused APIs, and latency regressions automatically — no manual threshold configuration required. Enable from API gateway Settings → Intelligence.

Project Workspaces

Workspaces can now be organized into Projects — a top-level grouping for teams managing multiple products or environments. Projects share billing, team members, and SSO configuration while keeping API gateway configurations fully isolated.

Note:

Requires opt-in from Workspace Settings → Beta Features.

Fix

Simultaneous Rule Save Conflict

Fixed a race condition where simultaneous API gateway rule saves from two team members could result in one change being silently dropped. Rule saves are now serialized with optimistic locking and a clear conflict error message when a collision occurs.

Multi-Region Failover Spike

Fixed a race condition in the multi-region failover logic that could cause a 500–1500ms latency spike during region switchover events. Failover now completes within one health check interval without any latency impact on in-flight requests.

WebSocket Session Timeout

Fixed WebSocket connections being dropped after 60 seconds on gateways configured with custom timeout rules. WebSocket sessions now correctly bypass timeout rules that are scoped to HTTP-only traffic.

API Key Expiry on Weekends

Fixed an edge case where API key expiry notifications were not sent when the expiry date fell on a weekend. Notifications are now queued on Friday for keys expiring Saturday or Sunday, with the same 7-day and 1-day advance notice as weekday expirations.

Note:

All fixes ship to beta participants automatically. No action required.

Improvement

CLI Public Beta

The Aurus CLI is now available in public beta for macOS, Windows, and Linux. Deploy rule changes, rotate API keys, manage workspaces, and stream live API gateway logs — all from your terminal. Install via Homebrew, Scoop, or direct download.

Live Request Tracing

Live request tracing is now available in beta. Trace individual requests through your API gateway stack — see every rule evaluated, every transformation applied, and the exact latency at each processing stage. Available from the API detail view.

Dashboard Speed

The workspace dashboard now renders in under 150ms on all plans regardless of API count. The data fetching layer has been rewritten with parallel queries and incremental loading — API list, analytics charts, and activity feed all load independently.

Documentation Redesign

The public documentation site has been redesigned with faster search, better code examples, and a new interactive API reference powered by the Aurus OpenAPI spec. All examples now include real request and response payloads.

Note:

Active by default for all beta participants.

Shipped by

Marcus Johnson

April 07, 2026

v

0.9.2

Multi-region routing, anomaly detection beta, and SOC II log exports

Windows

iOS

v0.9.2 ships multi-region routing for Enterprise, API key rotation notifications, idempotency key enforcement, and a fix for rate limit counter drift under high concurrency. The SOC II audit log export format has been upgraded to structured JSON, and API gateway rule deployment speed is now nearly instant across all edge nodes.

Updates

Features

Multi-Region Routing

Enterprise plans can now route API traffic to the nearest available region automatically. Configure preferred regions from API gateway Settings — requests failover seamlessly if a region goes down. Supported regions: US East, EU West, AP Southeast.

API Key Rotation Notifications

Workspace admins now receive an email notification whenever an API key is rotated — whether triggered manually or by an automated rotation policy. Notifications include the key name, the triggering team member, and a precise timestamp.

Anomaly Detection Beta

Early access to API gateway-level anomaly detection for Fintech customers on Enterprise plans. The system flags unusual rate patterns, IP geo-jumps, and sudden volume spikes from a single API key in real time, before they reach your application.

Idempotency Key Enforcement

Builder and Growth plans can now enforce idempotency keys on mutation APIs directly from the API gateway configuration panel. Duplicate requests are detected and rejected at the infrastructure level — no application code changes required.

Note:

Multi-region routing requires Enterprise plan. Anomaly detection is in beta — enable it from Gateway Settings → Security.

Fix

Rate Limit Counter Drift

Fixed a bug where rate limit counters could drift under high concurrency, causing requests to be incorrectly throttled or allowed above the configured limit. The fix uses atomic counter updates across the distributed cache layer.

SSL Certificate Auto-Renewal

Fixed an edge case where custom domain SSL certificates were not renewed automatically when a domain had recently been transferred between workspaces. Certificates now renew correctly regardless of prior ownership history.

Audit Log Timestamp Offset

Fixed incorrect timestamp display in audit logs for users in UTC+12 and UTC+13 timezones. All log entries now display in the viewer's local timezone with the correct offset applied.

Dashboard 404 on Workspace Switch

Fixed a redirect that occasionally produced a 404 when switching between workspaces while on a deep-linked dashboard page (e.g. a specific API detail view). The redirect now correctly lands on the equivalent page in the new workspace.

Note:

All fixes apply to all plans. SSL certificate fix is retroactive for all affected domains.

Improvement

SOC II Audit Log Export

Audit log exports now produce structured JSON with full attribution metadata — user ID, role, action type, and resource affected. The new format is accepted directly by major SOC II audit tools including Vanta, Drata, and Secureframe.

Dashboard Performance

Significantly improved dashboard load time for workspaces with more than 50 APIs. The API list now uses virtualized rendering and loads in under 400ms on most connections, down from up to 4 seconds previously.

Gateway Rule Deployment Speed

API gateway rule changes now propagate to all edge nodes within 800ms on average, down from 3–4 seconds in v0.9.1. Changes are applied atomically — no in-flight requests are dropped during the propagation window.

Workspace Activity Feed

The workspace activity feed now loads incrementally as you scroll, rather than fetching all events at once. Workspaces with years of history now render the feed in under 200ms on initial load.

Note:

All improvements apply to Builder, Growth, and Enterprise plans unless noted otherwise.

Shipped by

Marcus Johnson

April 07, 2026

v

0.9.1

VPC deployment, custom SSL certificates, and data residency controls

macOS

v0.9.1 launches VPC deployment for Enterprise customers on AWS, GCP, and Azure. Custom SSL certificate support arrives for custom domains, and per-version traffic analytics are now available in API detail views. Dashboard performance is significantly improved for large workspaces, and four bugs have been resolved including a mobile scroll lock issue on iOS.

Updates

Features

VPC Deployment

Enterprise customers can now deploy Aurus API gateway infrastructure inside their own Virtual Private Cloud on AWS, GCP, or Azure. VPC deployment provides network-level isolation, dedicated compute, and meets the data residency requirements of most financial services regulators.

Custom SSL Certificates

Custom domains now support bring-your-own SSL certificates. Upload your certificate and private key from Domains settings. Aurus serves your certificate and alerts you 30 days before expiry to prevent any lapse in HTTPS coverage.

Per-Version Traffic Analytics

The API detail view now shows request volume broken down by API version. Use this to identify which clients are still on deprecated versions before setting a sunset date — with real traffic data, not guesswork.

Data Residency Controls

Enterprise workspaces can now pin specific API collections to specific geographic regions. Requests to those collections are only processed within the selected region, supporting EU data residency and similar regulatory requirements.

Note:

VPC deployment and Data Residency Controls require Enterprise plan. Custom SSL certificates available on Builder and above.

Fix

Workspace Redirect Loop

Fixed a redirect loop that could occur when switching between workspaces while on the workspace settings page. The redirect now correctly lands on the new workspace dashboard without cycling through intermediate pages.

Date Formatting in Audit Logs

Fixed audit log date display for users whose browser locale uses DD/MM/YYYY format — dates were previously showing as 'Invalid Date'. All dates now display correctly regardless of locale settings.

Custom Domain DNS Validation

Fixed an intermittent DNS validation failure for custom domains using CNAME records with trailing dots. Validation now strips trailing dots before checking propagation, resolving false negatives for affected domains.

Mobile Nav Scroll Lock

Fixed an issue on iOS where the mobile navigation menu did not release the body scroll lock after being closed, leaving the page unscrollable until the user reloaded. Scroll lock is now correctly released on menu close and on route change.

Note:

Mobile scroll lock fix applies to iOS Safari and Chrome on iOS. DNS validation fix is retroactive for all affected custom domains.

Improvement

Documentation: Japanese and French

All core Aurus documentation is now available in Japanese and French. API reference, quickstart guides, and the API gateway configuration manual have been fully translated by native-speaking technical writers with API domain expertise.

Dashboard Performance (50+ Endpoints)

Workspaces with more than 50 APIs now load significantly faster. API list rendering is now virtualized and the underlying API response is paginated, reducing initial load time by up to 90% for large workspaces.

Email Notification Batching

Quota alert emails are now batched — if your workspace crosses multiple thresholds in rapid succession (80% and 90% in the same minute), you receive a single email with all alerts rather than a flood of separate messages.

Rate Limit Rule Ordering

API gateway rate limit rules are now evaluated in priority order as shown in the rules panel. Drag-and-drop reordering lets you control evaluation sequence without deleting and re-creating rules.

Note:

Dashboard performance improvements apply to Builder, Growth, and Enterprise plans.

Shipped by

David Kim

April 07, 2026

v

0.9.0

Public config API beta, Builder plan expansion, and redesigned onboarding

macOS

iOS

v0.9.0 is a major release. Builder plan now includes full API management. The Aurus public configuration API launches in beta. The Compare Plans pricing page goes live and the onboarding flow is redesigned from scratch.

Updates

Features

Public Configuration API

The Aurus API gateway configuration API is now in public beta. Programmatically create and update API gateway rules, manage API keys, configure rate limits, and retrieve analytics via authenticated REST. Full OpenAPI spec available in docs.

Compare Plans Pricing Page

The new pricing page includes a full feature comparison table across all four plans, organized by API infrastructure, Deployment, Security, and Workspace sections. Built for technical buyers who need the full picture before committing.

Builder Plan: Full Endpoint Management

The Builder plan now includes full API management — create unlimited APIs, configure per-API rate limits, set custom response headers, and manage deprecation lifecycle with sunset date tooling. Previously Growth-only.

Workspace Audit Log UI

The workspace audit log is now accessible from the dashboard. View a full timeline of configuration changes, API key events, and API gateway rule updates — filterable by date range, user, and action type.

Note:

Public Configuration API is in beta. Join from your workspace settings.

Fix

Endpoint List Pagination

Fixed a bug where the API list would silently drop APIs beyond position 100. All APIs are now returned correctly across paginated responses.

Rate Limit Rule Import

Fixed a failure in the bulk rule import tool where rules containing special characters in the description field caused the import to abort. The importer now sanitizes and imports all valid rules, reporting only the invalid ones.

SSO Token Refresh

Fixed an intermittent SSO session expiry issue on the Okta integration where refresh tokens were not rotating correctly, causing unexpected logouts after 24 hours.

Gateway Health Status

Fixed the API gateway health indicator showing stale status for up to 5 minutes after a resolved incident. Health status now refreshes every 30 seconds and reflects actual node state within one polling cycle.

Note:

Endpoint list pagination fix is retroactive. SSO token fix applies to Okta integrations only.

Improvement

Builder Plan Access Expansion

All features previously gated to Growth plan — custom domains, advanced rate limiting, per-API analytics — are now included in the Builder plan at no additional cost, effective immediately for all existing customers.

Gateway Rule Conflict Detection

The API gateway now detects conflicting rules at save time rather than silently applying the wrong rule at runtime. Conflicts are highlighted with a plain-language explanation and a suggested resolution.

Onboarding Flow Redesign

The new workspace onboarding flow guides you through your first API gateway configuration in under 10 minutes — from connecting your first API to setting your first rate limit rule and inviting a teammate.

Analytics Dashboard Refresh

The analytics dashboard has been redesigned with a cleaner layout, faster data loading, and new charts for request latency distribution and error rate over time. Latency percentile views (p50, p95, p99) are now available on all paid plans.

Note:

Builder plan expansion is retroactive — all existing Builder customers have immediate access to newly included features.

Shipped by

Elena Rodriguez

April 07, 2026

v

0.8.5

SSO launch, granular RBAC, and adaptive traffic routing

macOS

Windows

v0.8.5 launches SSO support for Growth and Enterprise plans with Okta, Google Workspace, and Azure AD. Role-based access control gets workspace-level granularity, adaptive traffic routing ships for multi-service backends, and API key scoping gives fine-grained key permissions per API.

Updates

Features

SSO Integration

Single sign-on is now available for Growth and Enterprise plans. Supported identity providers: Okta, Google Workspace, and Azure AD. Configure SSO from Workspace Settings → Security. All team members will be required to authenticate via the configured provider.

Granular Role-Based Access Control

Workspace permissions now support three roles — Admin, Developer, and Viewer — with configurable access per section. Admins can create custom roles with any combination of permissions for fine-grained team access control.

Adaptive Traffic Routing

The API gateway can now distribute traffic across multiple backend services using weighted round-robin, with automatic weight adjustment based on real-time error rates. If a backend starts failing, Aurus shifts traffic to healthy backends without manual intervention.

API Key Scoping

API keys can now be scoped to specific APIs, methods, and IP ranges at creation time. Scoped keys are rejected at the API gateway level if used outside their configured scope, before the request reaches your application.

Note:

SSO requires Growth or Enterprise. API key scoping on all paid plans.

Fix

RBAC Permission Inheritance

Fixed a bug where custom roles did not correctly inherit base permissions when a new workspace section was added, leaving some team members unable to access new features. Custom roles now inherit new section permissions from their base role by default.

Okta SSO Token Validation

Fixed a token validation edge case with Okta SSO where tokens signed with RS384 were rejected as invalid. All RSA signature variants (RS256, RS384, RS512) are now accepted by the Aurus token validation layer.

Adaptive Routing Fallback

Fixed a scenario where adaptive routing sent all traffic to a single backend when all backends reported identical error rates above the threshold. The fallback now distributes traffic equally across all available backends.

Billing Invoice Date

Fixed billing invoices showing the wrong billing period end date for annual plans that started mid-month. Invoice dates now correctly reflect the actual billing period in all cases. Affected customers will receive corrected invoice PDFs by email.

Note:

Okta RS384 fix is automatic. Billing invoice corrections sent by email.

Improvement

SSO Login Performance

SSO authentication round-trip time has been reduced from an average of 800ms to under 200ms by caching identity provider metadata locally at the API gateway layer. The improvement applies to all supported SSO providers.

API Key Management UI

The API keys panel has been redesigned with a searchable list, last-used timestamps, per-key request volume sparklines, and one-click rotation. Keys are grouped by scope for workspaces with large numbers of active keys.

Rate Limit Rule Templates

Five pre-built rate limit rule templates are now available in the rules panel: Standard API, Public API, Partner Integration, Internal Service, and Fintech Payment. Templates can be applied and customized in under a minute.

Team Invitation Flow

The team invitation flow now supports bulk invite by CSV upload. Invite up to 50 team members at once with role pre-assignment per row. Invitations are sent immediately and expire after 7 days.

Note:

SSO requires Growth or Enterprise. Adaptive routing on Builder and above.

Shipped by

Tom Nakamura

Get Started

Start building with Aurus Ai

Control all your APIs in one place and scale faster and structured.

Get Started

Start building with Aurus Ai

Control all your APIs in one place and scale faster and structured.

Get Started

Start building with Aurus Ai

Control all your APIs in one place and scale faster and structured.

Create a free website with Framer, the website builder loved by startups, designers and agencies.