---
summary: "mcp-ts-core ^0.9.13: HTTP 413 body cap, session-init gate, quieter error logs, GET /mcp keywords; public landing page; hosted endpoint"
breaking: false
security: false
---

# 0.1.5 — 2026-05-28

## Added

- **`MCP_HTTP_MAX_BODY_BYTES`** — configurable inbound body cap on the HTTP endpoint (default 1 MiB); oversized requests rejected with `413` before SDK parsing. Documented in `.env.example`. (via mcp-ts-core 0.9.13)
- **`landing.requireAuth: false`** — full tool/resource/prompt inventory served to unauthenticated callers on `GET /mcp`.
- **`server.json` `remotes`** — hosted endpoint `https://gdelt.caseyjhand.com/mcp` registered for MCP Registry discovery.
- **README hosted-instance section** — public instance documented with Streamable HTTP config snippet.
- **`package.json` keywords** — `typescript`, `bun`, `stdio`, `streamable-http` added for npm discoverability.
- **GET /mcp `keywords`** — consumer `package.json` keywords now surfaced on the HTTP status response. (via mcp-ts-core 0.9.12)
- **`.claude-plugin/` and `.codex-plugin/`** — plugin metadata files scaffolded.

## Fixed

- **HTTP session-init gate** — stateful HTTP mode now rejects requests arriving without `Mcp-Session-Id` with `400`, preventing uninitialized session minting. (via mcp-ts-core 0.9.10)
- **`httpErrorHandler` log-level split** — expected client errors (401, 403, 400, 404) now emit at `warning` instead of full error pipeline with stack traces, reducing noise. (via mcp-ts-core 0.9.10)
- **`gdelt-tv-service.ts`** — station filter string concatenation converted to template literal.

## Changed

- **Dependency bumps:**
  - `@cyanheads/mcp-ts-core` ^0.9.9 → ^0.9.13
  - `@biomejs/biome` ^2.4.15 → ^2.4.16
