Skip to content

Release notes ​

Published Windows builds of the xg3 Agent are listed here with operator-visible changes. Patch releases that only republish the same behavior are called out explicitly.

Each published version ships xg3agent-{version}-x86_64-pc-windows-msvc.exe, install.ps1, and uninstall.ps1. From v1.2.0 onward, releases also include version-manifest.json (used by the platform for console upgrades — you do not need to download it manually).

All releases ​

VersionPublished (UTC)Status
v1.5.22026-09-26Latest stable
v1.5.12026-09-22Stable
v1.5.02026-08-29Stable
v1.4.02026-08-25Stable
v1.3.12026-08-19Stable
v1.3.02026-08-15Stable
v1.2.02026-07-31Stable
v1.1.02026-07-11Stable
v1.0.02026-07-03Stable
v0.3.62026-07-01Stable
v0.3.52026-06-28Stable
v0.3.42026-06-25Stable
v0.3.32026-06-25Stable
v0.3.22026-06-24Stable
v0.3.12026-06-24Stable
v0.3.02026-06-21Stable
v0.2.02026-06-21Stable
v0.1.02026-06-11Prerelease

Dates are public release dates (UTC).

Get a release ​

MethodWhen to use
One-line install (https://get.xgress3.com)New hosts — installs the latest stable release
Console upgradeExisting enrolled agents while the tunnel is connected
Manual replace of xg3agent.exeRecovery or rollback — see Operations

Latest stable release: v1.5.2 (26 September 2026 UTC).


v1.5.2 ​

26 September 2026

Fixes

  • Enrollment status polling — While waiting for approval, the agent still checks status every 5 seconds. If the platform returns 429, the agent honors Retry-After instead of retrying on that interval.

Improvements

  • Host details — The agent no longer reports a separate FQDN; that value duplicated the hostname and was not a DNS name. On the agent System tab, FQDN is replaced by Domain / workgroup when the host reports one.

v1.5.1 ​

22 September 2026

Packaging

  • Windows binaries are built with a static MSVC runtime, so the agent does not depend on the Microsoft Visual C++ Redistributable. Behavior matches v1.5.0; this release is primarily a deployment convenience.

v1.5.0 ​

29 August 2026

Fixes

  • Certificate renewal — Fixes a race where renewal could fail under load. New certificates are staged on disk and promoted only after a replacement tunnel is established; if promotion fails, the previous certificate and tunnel keep serving traffic.
  • Console upgrades — Fixes incorrect Agent upgrade failed outcomes when the Windows service restarts during an upgrade (version is now reported reliably after reconnect).

v1.4.0 ​

25 August 2026

Features

  • Backend TLS policy — For services whose backend URL uses HTTPS, the agent enforces the TLS policy you set in the console (strict validation, certificate pinning, or insecure/debug modes where permitted). Failures return a structured error to the gateway instead of an opaque backend failure. HTTP backends are unchanged. See Agents and services — TLS Policy.

v1.3.1 ​

19 August 2026

Fixes

  • Enrollment and renewal HTTP client — Corrects TLS handling when the agent talks to the regional gateway for certificate signing and related REST calls, avoiding compatibility issues with the default HTTP stack configuration.

v1.3.0 ​

15 August 2026

Improvements

  • Tunnel resilience — Adjusts reconnect and tunnel lifecycle behavior so agents stay stable when the regional gateway is updated or scaled behind the scenes. No console or CLI changes required.

v1.2.0 ​

31 July 2026

Features

  • Seamless upgrade from the console — Operators can upgrade an online agent from the agent detail page. The agent downloads the new build through the regional gateway, verifies integrity, runs a short canary check, drains in-flight requests, swaps binaries, and restarts the Windows service. The prior binary is kept as xg3agent.previous.exe for manual rollback. See Operations — Upgrading from the console.
  • version-manifest.json — Published with each release from this version onward for platform upgrade discovery.

v1.1.0 ​

11 July 2026

Improvements

  • Response flow control — Large or slow backend responses are paced per request so one heavy download does not block other concurrent requests on the same tunnel.
  • Request cancellation — If a client disconnects before the backend finishes, the agent releases concurrency promptly instead of holding a slot until the backend completes.

See also Transport and limits.


v1.0.0 ​

3 July 2026

Features

  • Enrollment and region — The gateway assigns your account region during enrollment; the agent persists it and uses https://{region}.xg3.io for production (override only with XG3_GATEWAY when your deployment requires it).
  • Release CLI — Production builds no longer accept a custom --gateway flag; gateway URL comes from region assignment and environment configuration as documented in Install and run.

Improvements

  • Clearer handling of pending enrollment state across restarts until the console approves the code.

v0.3.6 ​

1 July 2026

No material change to agent runtime behavior in this build; release packaging aligned with platform billing rollout.


v0.3.5 ​

28 June 2026

Security

  • Enrollment status polling uses the X-Xg3-Enrollment-Secret issued at enroll time (handled automatically by the agent; operators still approve codes in the console as today).
  • Hardening around certificate signing request handling.

v0.3.4 ​

25 June 2026

Fixes

  • Reconnection — After a successful tunnel connection, the next reconnect wait starts again at one second instead of continuing a long backoff from earlier failures.

Installation

  • The get.xgress3.com install script prints the enrollment code in PowerShell after the service starts on new enrollments.

v0.3.3 ​

25 June 2026

Installation

  • Installer and enrollment UX improvements, including validation that install scripts use ASCII-only content where required by Windows scripting.

v0.3.2 ​

24 June 2026

Fixes

  • Windows service — Correct parsing of service-mode arguments when the SCM starts xg3agent service ..., fixing startup failures on some hosts.

v0.3.1 ​

24 June 2026

No material operator-visible agent changes in this build.


v0.3.0 ​

21 June 2026

Improvements

  • Configuration and logging defaults aligned with production enrollment; prepare for regional gateway URLs in subsequent releases.

v0.2.0 ​

21 June 2026

Features

  • Rolling log files under {data-dir}/logs/ with retention (see Install and run — Log files).
  • Windows install pipeline — Versioned xg3agent.exe, install.ps1, and uninstall.ps1 published alongside each release.

v0.1.0 ​

11 June 2026 — prerelease

Features

  • First published Windows agent: outbound tunnel, REST enrollment with console approval, client certificate on disk, HTTP forwarding to configured backends.
  • One-line install from https://get.xgress3.com and optional Xg3Agent Windows service registration.