DryDock Kit
Changelog
DryDock Kit is new: version 1.0.0 shipped on 26 September 2026. Every 1.x release is included with your license, and each one is listed here. The full CHANGELOG.md, with every change and its upgrade notes, ships in the download.
1.1.0 1 October 2026
Two more payment providers, every billing model, the sign-in methods buyers expect, and a second security review.
- Paddle and Polar join Stripe and Razorpay behind the same billing interface. Paddle and Polar are merchants of record, so they handle sales tax and VAT.
- Per-seat, metered and one-time billing, with seat sync, credits, lifetime plans and a scheduled job that reports metered usage.
- Magic links, passkeys, TOTP two-factor with backup codes, and Google, GitHub, X and Discord sign-in. Admin tools to impersonate, ban and delete users.
- A personal workspace for every user, next to their organizations.
- A post-1.0 adversarial security review: 15 findings fixed (4 high, 3 medium, 8 low), each with a test. Scripts are now restricted by a nonce-based Content Security Policy.
- The app shell, dashboard and UI components with Storybook; a marketing site with blog, help center, changelog and a roadmap with voting.
- English and German throughout, including emails. Live in-app notifications. A read-only MCP server and AGENTS.md files next to the code. Playwright browser smoke tests.
- Docs: a page on where it runs (VPS, other hosts, and why not Vercel), and a purchase-to-production path at the top of the docs index. The license (2.1) now names drydockkit.com and Dodo Payments receipts instead of Gumroad; its terms are unchanged.
Upgrading: Run the new database migrations, then follow the upgrade notes at the top of the 1.1.0 entry in CHANGELOG.md.
1.0.0 26 September 2026
The first release.
- Authentication; organizations with roles and a permission catalogue; plans, entitlements and usage limits.
- Stripe and Razorpay billing through one verified, idempotent webhook pipeline.
- A platform admin console, organization API keys, in-app and email notifications, and feature flags.
- The saas:check readiness checker, a production Docker image, CI and a VPS deploy script.
- Unit, integration and security suites on a real database, and the 1.0 security audit: 20 findings, each fixed with a test except one accepted and documented.
- Rules for AI coding agents: AGENTS.md, CLAUDE.md, Cursor rules and a prompt library.
Release notes by email: subscribe in the footer. How to merge a release into code you've changed: the docs.