Open Relay's Eternal Session Tokens Finally Get a 24-Hour Kill Switch
Imagine your auth token leaking from a browser cookie and staying valid for days. That's how Open Relay rolled until a recent audit forced a hard reset: 24-hour expiry.
theAIcatchupApr 10, 20264 min read
⚡ Key Takeaways
Session tokens in Open Relay now expire in 24 hours, fixing a major leak risk.𝕏
Security audit uncovered no backdoors but shipped hardening like per-IP lockouts and bounded reads.𝕏
Ideal for AI agent workflows needing durable, inspectable CLI sessions without auth nightmares.𝕏
The 60-Second TL;DR
Session tokens in Open Relay now expire in 24 hours, fixing a major leak risk.
Security audit uncovered no backdoors but shipped hardening like per-IP lockouts and bounded reads.
Ideal for AI agent workflows needing durable, inspectable CLI sessions without auth nightmares.