Security
- Relayer: global per-IP rate limiting.
- Relayer: stricter BTC withdrawal validation, with safe retries on transient RPC failures.
- Relayer: configurable auth modes, with backwards compatibility for existing clients.
- Signer: mTLS now required for operational endpoints.
- Signer: validator hardening, including RPC error handling and user authenticity checks.
- Signer: audit logging across all operations.
Improved
- Relayer: removed unused API surface.
Infrastructure
- Signer: upstream rebase and dependency updates (Go, OpenSSL, Next.js).