Notes · 2026-08-22
mrmpanel 0.1.35 — CSRF, disable HTTP, infra controls
CSRF on panel forms, hide install password, disable public :8080 when SSL is trusted, Traefik/DB/DNS start-stop on the ops dashboard.
Current install line is 0.1.35.
Since 0.1.34
- CSRF tokens on forms and same-origin API POSTs
- Install summary no longer prints the admin password (path only)
- Disable public HTTP (
:8080firewall) once hostname SSL is trusted - Ops dashboard Infrastructure cards: Traefik, MariaDB, PostgreSQL, PowerDNS
Earlier: 0.1.34 · Docs · Plans and dashboard.
sudo bash -c "$(curl -fsSL https://mrmpanel.hostingandstuff.online/install.sh)" -- --all