---
summary: "mcp-ts-core ^0.9.9 → ^0.9.13: 413 body cap, HTTP session-init gate, quieter expected-error logging, GET /mcp keywords"
breaking: false
security: false
---

# 0.1.8 — 2026-05-28

## Changed

- **`@cyanheads/mcp-ts-core`** `^0.9.9` → `^0.9.13` — picks up four framework releases:
  - **`MCP_HTTP_MAX_BODY_BYTES`** — configurable inbound body cap (default 1 MiB); oversized requests rejected with HTTP 413 before any SDK parsing.
  - **HTTP session-init gate** — stateful HTTP mode rejects non-`initialize` requests arriving without an `Mcp-Session-Id` header with HTTP 400.
  - **Expected client error log levels** — 401, 403, 400, and 404 responses now log at `warning` instead of running the full error pipeline with stack traces.
  - **`GET /mcp` `keywords`** — server status endpoint now surfaces `package.json` `keywords` alongside `name`, `version`, and `description`.

- **`@biomejs/biome`** `^2.4.15` → `^2.4.16`
