Version 1.0.1 (Current Update) – 16-09-2026
[FEATURE] Full mobile responsive design overhaul across all customer-facing pages (Home, Shop, Cart, Checkout, Auth).
[FEATURE] 4-column responsive countdown timer scaling perfectly on all phone viewports down to 320px without line wraps.
[FEATURE] Modern slide-over Mobile Filter Drawer on the Shop page with counter badge and reset buttons.
[FEATURE] Sleek, touch-optimized horizontal Quick Filter Bar with hidden scrollbars and smooth gestures.
[FEATURE] Balanced 1-row mobile catalog toolbar aligning layout switcher, items-per-page, and sort selectors.
[FEATURE] Enhanced responsive 2-column product grid with adaptive aspect ratio and compact padding for smartphones.
[FEATURE] Touch-optimized Product Details layout with responsive image scaling and full-width checkout buttons.
[FEATURE] Mobile-friendly Cart and Checkout views with vertical form stacking and responsive cards.
[FEATURE] Demo Mode (DEMO_MODE=true) protection for live preview demos blocking administrative mutations with alert banner.
[FEATURE] Dynamic storefront Custom Pages route (/[lang]/pages/[slug]) for Privacy Policy, Terms, and custom content.
[FEATURE] Full Admin customization for Storefront Footer content (About description, email, phone, address, and copyright notice).
[SECURITY] High-security License Activation system via DevSnaplix API preventing script theft and piracy.
[SECURITY] Blocked admin account takeover vulnerability in social auth route.
[SECURITY] Protected /api/seed endpoint with admin authentication and disabled in production.
[SECURITY] Restricted sensitive category endpoints (/api/settings/[category]) from public access.
[SECURITY] Enforced server-side paymentStatus initialization on order placement preventing direct client manipulation.
[SECURITY] ReDoS protection on coupon validation with instant O(1) indexed uppercase lookup.
[SECURITY] Added login rate limiting (brute-force protection) on authentication endpoints.
[SECURITY] Enforced 5MB file upload size limit on settings and avatar file uploads.
[SECURITY] Hardened HTTP Security Headers (X-Frame-Options, X-Content-Type-Options, Referrer-Policy).
[SECURITY] Sanitized product search regex against ReDoS (Regular Expression Denial of Service).
[SECURITY] Added minimum password length validation to password reset endpoint.
[SECURITY] Restricted payment_success URL bypass from arbitrarily marking unpaid orders as paid.
[SECURITY] Implemented max 8MB upload limit to prevent memory exhaustion (DoS).
[SECURITY] Upgraded core dependencies with zero npm vulnerabilities.
[FIX] Fixed atomic stock deduction race conditions when placing multi-item orders.
[FIX] Restocked inventory quantities automatically when orders are refunded individually or in batch.
[FIX] Standardized ISO 3-letter currency resolution for PayPal and Razorpay gateways.
[FIX] Resolved React hoisting bug in AppContext (fetchSettings before declaration).
[FIX] Fixed case-sensitive customer email matching in customer order history.
[FIX] Fixed locale persistence on storefront Footer links across all languages.
[FIX] Fixed currency symbol lookup in order confirmation email templates.
[FIX] Fixed missing default language prefix in password reset email links.
[FIX] Added review length validation and spam caps to protect MongoDB document size limits.
[FIX] Resolved shop sidebar overlapping products on screens smaller than 768px.
[FIX] Prevented database connection timeout during static build prerendering.