
Kervak Community Control
Kervak Release Notes
Version 6.5.7 • 2026-09-26
Embed Studio Announcement Roles
Choose which server role to notify when posting an announcement from Embed Studio.
- Save, change or clear a default announcement role in Embed Studio settings
- Override the saved role for each post, including an explicit No role option
- Live preview displays the selected role above the embed
- Posting verifies that the role still exists in the active server and that the bot can mention it in the destination channel
- Only the selected role can be notified; arbitrary user, other role, everyone and here mentions remain disabled
- Existing Embed Studio posting permissions and administrator-only default settings remain in force
Version 6.5.6 • 2026-09-24
Staff Activity Centre Accuracy
Improves live staff message recovery in large servers and preserves legitimate voice time through short Discord reconnect and deployment gaps.
- Message recovery now checks up to 12 channels per cycle with one page each, keeping the same maximum 12 history requests while doubling channel coverage breadth
- Channels whose Discord last-message marker changed since Kervak's previous successful scan receive immediate priority, reducing the delay before a missed gateway message is recovered
- Changed-channel priority bypasses the normal five-minute hot-channel cooldown while incomplete pagination still resumes first
- Shard resume triggers two recovery passes so replayed events and later channel/thread cache rehydration are both covered
- Voice presence is sampled every 15 seconds instead of every 30 seconds
- Short reconnect or deployment gaps up to 12 minutes remain part of the same voice session when Discord confirms the member is still in the same voice channel
- Long or ambiguous voice observation gaps are still split at the last confirmed heartbeat instead of inventing large amounts of unobserved time
- Voice caches are rechecked immediately, after five seconds and after thirty seconds following a shard resume
- The Staff Activity dashboard and five-minute liveboard no longer fan out individual Discord member REST lookups for every tracked staff member, removing a production rate-limit source
- Existing tracked message deduplication, privacy opt-outs, AFK exclusion, persistent storage and channel-permission safeguards remain unchanged
Version 6.5.5 • 2026-09-24
Staff Activity Tracking Follow-up
Improves message recovery in large servers and protects voice tracking during transient cache gaps and Discord reconnects.
- Frequently used tracked-staff channels get priority during message recovery while other channels remain in the scan rotation
- Active threads are discovered periodically even when missing from the guild channel cache
- The recovery worker processes up to six channels per cycle with durable pagination and per-channel watermarks
- Voice presence is sampled every 30 seconds; one incomplete voice-cache snapshot no longer closes a session
- Confirmed AFK transitions close VC sessions immediately; long gateway observation gaps are split so unobserved downtime is not counted
- Diagnostic recovery coverage now includes priority-channel and unresolved-channel counts
- Existing message deduplication, staff opt-outs, persistent voice sessions and user privacy rules are preserved
Version 6.5.4 • 2026-09-24
Staff Activity Reliability
Fixes missing message recovery and voice-chat underreporting by tracking real Discord VC presence instead of manual staff shifts and using safe per-channel message scan checkpoints.
- Voice minutes now count observed tracked staff presence in actual Discord voice and stage channels, excluding server AFK channels
- Gateway join/leave/move updates and minute-level heartbeats keep voice sessions accurate while Kervak is online
- Crash/reconnect recovery closes interrupted voice sessions at their last observed heartbeat rather than inventing downtime minutes
- Manual /staff clock-in records remain separate from measured Discord VC time
- Live message capture is complemented by independent per-channel recovery every ~90 seconds, even if the optional public liveboard is off
- Persistent per-channel pagination and watermarks prevent incomplete or failed history requests from skipping message gaps
- 30-day on-demand backfills are throttled and try accessible recent archived public/private threads
- Private Staff Activity Centre displays the latest message recovery coverage and inaccessible-channel warnings
- The optional public staff activity embed edits its existing Discord message every five minutes
- Tracking still stores message IDs/timestamps and VC presence timestamps only, never message text or voice audio; existing opt-outs remain enforced
- No new Discord privileged intent is required; Guild Voice States is already enabled
Version 6.5.3 • 2026-09-23
Streamer Alerts
Adds dashboard-managed Twitch, Kick and YouTube live alerts with duplicate protection, per-streamer overrides and LIVE-role automation.
- New Community → Streamer Alerts dashboard section
- Track Twitch, Kick and YouTube channel links and detect when creators go live
- Post one configurable Discord announcement with a Watch Stream button
- Global and per-streamer announcement channel and mention-role overrides
- Optional Discord member linking and automatic LIVE role assignment/removal
- Persistent live session state prevents duplicate alerts across bot restarts
- Configurable check interval and re-alert cooldown protect against platform status flicker
- While a stream stays live, Kervak can update the existing announcement instead of posting new messages
- Offline handling can leave the alert unchanged, edit it to Stream Ended or delete it
- Dashboard Check now and Post test alert controls
- Live, offline, test and provider-error history is retained for staff review
- Twitch supports optional official Helix API credentials while retaining a no-secret fallback
- Kick and YouTube use provider/public live-state detection without requiring new mandatory secrets
- Streamer Alerts settings and tracked streamers are included in Kervak configuration snapshots
- No new Discord privileged intent is required
Version 6.5.2 • 2026-09-21
Long Application Questions
Expands staff application questions from 45 to 240 characters and gives long questions a Discord-safe two-step presentation.
- Application Panel Builder question fields are now larger multi-line text areas
- Application questions can contain up to 240 characters instead of 45
- Global staff application questions support the same 240-character limit
- Long questions are shown in full to applicants before Discord opens the answer modal
- Discord modal labels remain within Discord’s 45-character component limit by using a short numbered label when required
- Page 2 previews questions 5–8 before the applicant opens the second answer form
- Submitted application review embeds retain the full question text
- Existing short questions continue opening normally without an extra preview step
- No database migration, privileged intent or environment variable is required
Version 6.5.1 • 2026-09-20
Moderation Command Activity + 15-Minute Liveboard
Tracks staff moderation activity from a configured Discord command channel and refreshes the Staff Activity liveboard every 15 minutes.
- Staff Management now lets Administrators choose the Discord channel where staff moderation commands are posted
- Each staff-authored message in that configured channel counts as one moderation action for that tracked staff member
- Existing tracked message history from the previous 30 days is used immediately for the configured moderation-command channel
- If no moderation-command source channel is configured, Kervak falls back to its existing recorded moderation-case metric
- The Staff Activity Discord embed now refreshes every 15 minutes instead of every 60 minutes
- Incremental reconciliation now starts from the last run with a five-minute overlap and a 20-minute initial window
- No command text is stored; Kervak uses message ID, author, channel and timestamp only
- No new Discord privileged intent or environment variable is required
Version 6.5.0 • 2026-09-20
Staff Activity Liveboard
Publishes a privacy-controlled, self-updating Discord staff activity board backed by the v6.4 activity centre and incremental hourly reconciliation.
- Staff Management can publish one persistent Staff Activity embed to a chosen Discord text or announcement channel
- The liveboard edits the same Discord message every 60 minutes instead of posting new messages
- Tracking and public display are separate controls; existing tracked staff stay private until an Administrator explicitly chooses Show on liveboard
- The embed shows 7-day and 30-day message counts, 30-day voice minutes, ticket actions, moderation actions, completed staff tasks and relative last activity
- Hourly incremental reconciliation scans only the gap since the previous run with a small overlap, helping recover activity missed during restarts without rescanning the full 30 days
- If the configured liveboard message is deleted, Kervak automatically recreates it and stores the replacement message ID
- Administrators can refresh the liveboard immediately, move it to another channel or pause automatic updates without deleting the existing Discord message
- The liveboard never includes message content and continues honoring member activity opt-outs
- Discord permission checks require View Channel, Send Messages and Embed Links before publishing
- No new Discord privileged intent or environment variable is required
Version 6.4.0 • 2026-09-20
Member & Staff Activity Centre
Adds explicit Discord-ID staff tracking with live operational metrics and a queued, permission-aware 30-day message-history backfill.
- Staff Management now includes a dedicated Activity Centre where Administrators can add individual Discord member IDs
- Adding an ID starts live message counting immediately and automatically queues a scan of the previous 30 days
- Historical scans paginate accessible channel history without reading or storing message text
- Discord message IDs, channel IDs and timestamps provide idempotent counts when live tracking overlaps a history scan
- Per-staff summaries show 7-day and 30-day message counts, 30-day voice minutes, ticket actions, moderation actions and completed staff tasks
- Transparent scan states show queued, running, complete, partial or failed status with channel progress and skipped-channel coverage
- Activity labels classify staff as active, quiet, inactive or without recorded activity based on the latest available operational signal
- Administrators can retry a history scan or stop tracking; stopping deletes stored message-activity records for that member
- Existing member activity opt-out removes staff activity data too and prevents Administrators from re-adding the member until they opt in
- Staff tracking and message-activity records are included in member privacy downloads and tenant data exports
- Interrupted history scans safely return to the queue after a restart and old message identifiers are automatically removed after 95 days
- No new Discord gateway intent is required; complete coverage requires View Channel and Read Message History in each included channel
Version 6.3.1 • 2026-09-20
Audit Log Noise Control
Keeps Discord application-command permission synchronization readable by grouping rapid per-command audit events into one server-log summary without losing the original compliance records.
- Application-command permission audit events are grouped per server and actor after a four-second quiet window
- One summary reports unique commands, roles, users and channels affected instead of posting one raw embed per command
- Every original Discord audit entry remains stored in Kervak audit_records for dashboard history and compliance review
- All non-command-permission audit events continue to post immediately with their existing detail
- The grouping batch is capped and flushed safely so unusually large permission updates cannot grow without bound
- Regression coverage verifies unique-target counting, removed permissions and malformed Discord change payloads
- No database migration, new Discord intent, slash-command redeployment or environment-variable change is required
Version 6.3.0 • 2026-09-17
Hardening & Reliability
Hardens Kervak for production operation with stronger tenant isolation checks, automation recovery, safer restores, credential redaction, Discord/API resilience, scale indexes, destructive-action confirmation and a formal staging gate.
- Tenant isolation regression tests verify API credentials and server snapshots cannot be mutated or restored from another guild
- Dashboard permission verification now retries transient Discord lookups while still failing closed when access cannot be verified
- Browser POST requests require both Kervak CSRF validation and a same-origin check before state-changing dashboard actions are accepted
- Request IDs are attached to dashboard responses and error pages so operators can match friendly errors to redacted structured logs
- Logger metadata recursively redacts token, authorization, session, API-key, webhook-secret and common credential patterns before output
- Outbound integration webhooks no longer follow HTTP redirects, closing redirect-based SSRF paths after public-host validation
- Automation occurrences recover from interrupted workers, retry clearly transient external failures with bounded backoff, and move exhausted failures to a dead-letter queue instead of retrying forever
- Role-assignment automation is idempotent and transient Discord fetch/role operations use bounded timeout/retry handling
- Configuration restores validate the snapshot format, tenant ownership and allowed tables before applying, create a safety snapshot, verify restored row counts inside the transaction and roll back on verification failure
- High-volume ticket, application, notification, staff-task, moderation, integration, compliance and automation queries gain runtime indexes for large-community performance
- Expensive dashboard search/analytics/activity/compliance endpoints receive dedicated request rate limits
- Automation deletion and integration endpoint/hook/API-key destruction now require typed confirmation instead of a single accidental click
- Dashboard failure pages distinguish transient service outages and Discord permission problems, provide diagnostics/status links, and display a request reference ID without leaking internals
- A staging branch workflow runs the full release gate and can smoke-test /health/strict, /status and /privacy on a separate Railway staging service
- STAGING.md documents the required separation of Discord bot credentials, databases, Stripe test credentials and dashboard URL between staging and production
- No mobile/accessibility redesign is included in this hardening release, by design
Version 6.2.1 • 2026-09-17
Release Validation & Deployment Gate
Adds a fail-closed pre-deployment validation system so Kervak can catch compiler, regression, database, dashboard and packaging problems before a build reaches Railway.
- New npm run release-check command performs the complete Kervak pre-deployment gate and automatically installs development dependencies with npm ci when they are missing
- Strict TypeScript validation runs before packaging, including Kervak's noUncheckedIndexedAccess rules that previously surfaced only during Railway builds
- Full Vitest regression tests and the production TypeScript build are required to pass before the release is accepted
- Release metadata validation requires package.json, package-lock.json, currentVersion and the newest release note to match exactly
- Source hygiene rejects accidental .env files, SQLite runtime databases, restore requests, unresolved merge markers and duplicate dashboard route registrations
- An isolated temporary SQLite database is created for every release smoke test, checked with PRAGMA integrity_check and discarded afterward so production data is never touched
- Critical modules for Automations, Integrations, Marketplace, backups, Performance Center, Help Center, Compliance, Analytics and activity tracking must import successfully
- The validator verifies critical operational tables exist after startup and validates every slash-command definition for missing or duplicate names
- Dashboard boot validation starts Kervak on a temporary local port and confirms the health endpoint, dashboard CSS, PWA manifest and privacy route actually respond
- Critical dist files and legal/dashboard assets must exist after the production build
- Production npm prune behavior is simulated with --dry-run so Railway's build sequence is represented without destroying local developer dependencies
- Optional RELEASE_CHECK_POSTGRES_URL support validates SaaS migrations against an expendable staging PostgreSQL database without ever requiring production credentials
- GitHub Actions now runs the same release gate on pull requests, pushes to main and manual workflow runs
- RELEASE-VALIDATION.md documents the gate, staging PostgreSQL option and recommended Feature → Release Check → Staging → Production flow
- No Discord privileged intent, database migration, slash-command redeployment or production environment change is required
Version 6.2.0 • 2026-09-17
Product Experience & Scale
Adds focused interactive Product Tours, a live Performance Center and a searchable Help Center so operators can learn Kervak faster, diagnose slowness and get contextual guidance without leaving the dashboard.
- Product Tours expands the original first-login walkthrough into five focused learning paths: Kervak Essentials, Member Support, Staff & Moderation, Automation & Integrations, and Platform Operations
- Tour completion/skipped state is stored locally per browser so each operator can learn independently, restart any tour and see progress without adding personal training data to the server database
- The top-bar Tour button now starts the most relevant walkthrough for the current dashboard area instead of always replaying one generic tour
- Every dashboard page now includes a Page Help shortcut that opens Help Center content related to the current workspace
- Help Center ships with searchable task-based guides for setup, tickets, applications, staff management, moderation requests, AutoMod, Automations, Integrations, Analytics, Marketplace, backups, diagnostics, status, compliance and more
- Help articles include step-by-step instructions, practical notes, related guides and direct links back into the relevant Kervak workspace
- Admin Assistant can surface Help Center guides and now answers Performance Center questions using live Kervak infrastructure metrics
- Performance Center records two-minute operational samples for database latency, Discord gateway latency, Node event-loop p95, memory, CPU, dashboard request volume/error rate and dashboard p95 response time
- Performance Center also surfaces failed Automation runs and Integration deliveries so workflow failures can be separated from wider infrastructure problems
- Authenticated dashboard requests are measured server-by-server; monitoring does not collect message content, ticket text or member content
- Performance history supports 1h, 6h, 24h, 3d and 7d views plus JSON export for deeper troubleshooting
- Performance findings use transparent thresholds and explain the recommended next diagnostic action instead of automatically restarting services or changing infrastructure
- Analyst delegated access can view Performance Center while Support, Moderator, Staff and Junior delegated profiles receive Help Center and Product Tours
- Navigation 2.0, Quick Actions, command search and contextual page actions now include Help Center, Product Tours and Performance Center
- No new Discord privileged intent, environment variable, slash-command deployment or manual database migration is required; the performance sample table is created automatically
Version 6.1.0 • 2026-09-17
Connected Operations Platform
Adds external integrations and scoped APIs, server-level configuration restore points, role-aware Command Center layouts, and an enterprise audit/compliance workspace on top of the v6 automation and network platform.
- Integrations Hub adds signed outbound HTTPS webhooks with HMAC signatures, delivery history, enable/disable/test controls and private-network destination blocking
- Inbound Integration Hooks can securely create integration events that Kervak Automations consume through bearer-token authentication
- Developer API adds scoped keys for summary, analytics, notifications read access and controlled notification creation; tokens are shown once and stored as one-way hashes
- Outbound signing secrets are encrypted at rest and displayed only once when the endpoint is created
- Backup & Restore Center creates server-specific Kervak configuration snapshots, supports daily/weekly scheduled restore points, verified JSON export, configurable retention and guarded restore with an automatic pre-restore safety snapshot
- Integration/API secrets are deliberately excluded from configuration backup payloads so restoring an old snapshot cannot silently reactivate old credentials
- Dashboard Builder makes Command Center widgets reorderable, hideable and resizable with personal overrides plus Administrator-controlled defaults for Admin, Management, Staff, Support, Moderator, Analyst and Junior operator views
- Command Center now renders through the saved widget layout while preserving the health hero and all existing operational data
- Audit & Compliance Center records dashboard changes, integration/API activity, backups and security-sensitive administrative actions with actor, target, severity, searchable history and 30–730 day retention controls
- Compliance exports are available as JSON or CSV and intentionally exclude token, secret, password, session, message-content and transcript fields from event details
- Server configuration snapshots now include dashboard layouts, compliance settings and backup scheduling configuration in addition to existing Kervak server settings
- Admin Assistant, Navigation 2.0, command search, Quick Actions and page contextual shortcuts understand Integrations, Backup & Restore, Dashboard Builder and Audit & Compliance
- No new Discord privileged intent, slash-command deployment or environment variable is required; all new SQLite tables are created automatically
Version 6.0.0 • 2026-09-17
Automation & Network Platform
Expands Kervak from a single-server operations dashboard into an automation, multi-server, analytics and reusable-template platform while preserving the existing v5.9.x workflows.
- Kervak Automations adds trigger/action workflows for unclaimed tickets, overdue staff tasks, aging applications, member-level thresholds and daily/weekly/monthly schedules
- Automation actions can create Kervak alerts, post channel messages, create staff tasks, assign roles or ping roles, with occurrence deduplication, run history, manual runs and dry-run previews
- Multi-Server Control Center compares every Kervak server the signed-in owner independently manages and provides a centralized operational view of plan state, support demand, moderation, applications and community activity
- Portable cross-server configuration copying preserves target-specific Discord channel/role IDs and imports copied automations disabled until destinations are reviewed
- Advanced Reports & Analytics adds 7/30/90-day comparisons, ticket demand/closures, applications, moderation pressure, security alerts, staff workload, message/join trends, first-response and resolution timing, close/approval rates, top channels and saved report snapshots
- Analytics snapshots can be exported as CSV or JSON for offline reporting and historical comparison
- Template Marketplace ships with official support, gaming, staff, security and operations packs plus Free/Premium plan-aware presentation
- Template Builder can create private reusable packs or submit community templates for platform review while stripping server-specific channel IDs, role IDs, AutoMod exemptions and automation destinations
- Template installs provide conflict previews, Keep Mine vs Use Template handling, a pre-install configuration snapshot and component-level rollback from install history
- Marketplace ratings, install counts, review workflow and reusable automation blueprints provide the foundation for a future creator marketplace without requiring standalone checkout in this release
- Admin Assistant, Navigation 2.0, Quick Actions and Unified Activity Timeline understand the new Automations, Multi-Server, Analytics and Marketplace areas
- No new Discord privileged intent or environment variable is required; new SQLite tables are created automatically
Version 5.9.5 • 2026-09-17
Operations Intelligence Suite
Adds a per-operator Notification Center, proactive Smart Configuration Recommendations and a permission-aware Unified Activity Timeline so Kervak surfaces what needs attention, what should improve and what changed.
- Notification Center adds a permanent dashboard bell, personal unread state, severity/category filters, assignment, snoozing, acknowledgement, resolution notes and Mark all visible as read
- Operational monitoring now creates alerts for overdue staff tasks, unclaimed tickets, aging staff applications and moderation requests in addition to existing configuration-health notifications
- Notification visibility follows delegated dashboard permissions and mutation routes verify that the operator is authorized to see the alert before changing it
- Smart Configuration Recommendations combines live Discord role/channel health with Kervak support, AutoMod, role-menu, service-status and ticket-workflow signals
- Recommendations are prioritized Critical/High/Medium/Low and provide explicit Fix, Review and Ignore controls; ignored recommendations can be restored later
- Safe one-click fixes currently cover ticket reminder recovery and fresh configuration-health scans; all other recommendations route the owner to the relevant settings instead of changing Discord silently
- Unified Activity Timeline merges accessible ticket, application, moderation, security, Discord audit, moderation-case, staff-task, configuration, notification and incident events into one chronological feed
- Timeline supports 24-hour, 7-day, 30-day and retained-history views plus area and free-text filtering
- Admin Assistant now understands Notification Center, recent-activity/what-changed questions and Smart Configuration Recommendations
- Delegated Support, Moderator, Analyst and Staff profiles receive appropriate activity/notification access while Junior remains intentionally restricted
- Database migrations for per-user notification reads and ignored recommendations run automatically; no new Discord privileged intent is required
Version 5.9.4 • 2026-09-17
Universal Member Search & Admin Assistant
Connects Kervak’s existing systems through a permission-aware unified member profile and a plain-language operational assistant built directly into the dashboard.
- Universal Member Search accepts Discord IDs, mentions, cached usernames and display names, with optional Discord member search when the endpoint is available
- Unified member profiles combine identity, current roles, verification, leveling, reputation, tickets, applications, appeals, moderation history and staff records according to the operator’s dashboard permissions
- Support, Moderator and Staff delegated profiles receive member search while Junior and Analyst profiles retain stricter privacy boundaries
- Member profiles include direct actions for filtered ticket history, pre-filled moderation warnings, staff management and copying the Discord user ID
- Ticket Inbox can now be filtered directly to one member from the unified profile
- Kervak Admin Assistant answers plain-language operational questions using live server data and a permission-aware intent engine without requiring an external AI API
- Assistant supports open/unclaimed ticket counts, aged ticket queues, pending applications, overdue staff work, unresolved attention items, security activity, active incidents, service health, application routing, moderation-request routing and member-ID handoff
- Navigation matching sends natural-language configuration questions to the most relevant authorized dashboard area
- Assistant questions are not stored in a Kervak conversation database and no new Discord privileged intent is required for core functionality
- Existing Navigation 2.0, Guided Setup and Operator Command Center remain intact
Version 5.9.3 • 2026-09-17
Operator Command Center
Turns Dashboard Home into a role-aware operational command centre that surfaces what needs attention, what is assigned to the current operator, and how server workload is changing.
- Personalized command-centre greeting and operator role/focus based on configured Discord roles or delegated dashboard profile
- New My Work strip showing assigned staff tasks, claimed tickets, assigned alerts, moderation requests, application reviews and handovers
- Priority Engine ranks visible queues using severity and operational context, including management alerts, active incidents, unclaimed tickets, moderation requests, overdue staff work, applications, appeals, security activity and configuration health
- Role-aware visibility means delegated Support, Moderator, Analyst, Junior and Staff operators only see command-centre actions for dashboard areas they are authorized to access
- New 7-day Operations Pulse compares support demand, resolved tickets, moderation actions and staff applications with the previous seven-day period
- Operational Watchlist shows current staff leave, security activity, giveaways, scheduled events, suggestions and the nearest active community goal
- Health Index now weighs unclaimed support demand, critical notifications, moderation requests, overdue work, incident severity, staffing coverage, service health and setup readiness
- Existing Guided First-Time Setup, Navigation 2.0 routes, server configuration and customer data remain intact
- No Discord privileged intent, slash-command redeployment, environment-variable change or database migration is required
Version 5.9.2 • 2026-09-17
Guided First-Time Setup
Turns the Overview setup indicator into a five-stage onboarding path so server owners always know what to configure next without losing access to advanced controls.
- New five-stage setup checklist on Overview: Connect roles, Configure tickets, Moderation & logs, Welcome & member access, and Run diagnostics
- Each stage reads the server's real Kervak configuration and marks itself complete automatically when its required settings are ready
- Continue Setup always jumps to the next unfinished task and each stage links directly to the correct dashboard area
- Checklist can be dismissed per browser/device and reopened at any time from the compact Setup Progress panel
- Existing configured servers keep their current settings and routes; no feature is removed or reset
- Manual Diagnostics scan now records onboarding completion without adding a database migration
- No Discord privileged intent, slash-command redeployment, environment-variable change or database migration is required
Version 5.9.1 • 2026-09-17
Navigation 2.0
Reorganizes the dashboard around common admin tasks so Kervak is easier to learn without removing any advanced feature.
- Task-based sidebar groups for Member Support, Staff & Moderation, Community, Server Setup, Business and Platform
- Simple Mode exposes the most common destinations while Advanced Mode keeps the full control surface
- New Quick Actions launcher for ticket panels, applications, moderation requests, welcome, role menus, embeds and diagnostics
- Command search understands everyday intent phrases such as application ping role, ticket transcript, welcome message and bot can't write
- Page headings now expose context-sensitive shortcuts to related settings and workflows
- Existing dashboard routes remain compatible so saved links and customer workflows continue working
- No Discord intent, database migration or slash-command redeployment is required
Version 5.9.0 • 2026-09-15
Moderation Case Workspace
Turns Junior Moderation Requests into structured SFW case workspaces with evidence, internal notes, adult review controls, history context, assignments, escalation and linked appeals.
- New Dashboard → Case Workspace with one investigation workspace per submitted moderation request
- Member overview includes account age, server join date, current roles and a context-only 30-day moderation history signal
- Evidence bundle combines the preserved source message with additional evidence links and staff-added context
- Internal case notes, chronological timeline, case assignment, Low/Normal/High/Urgent priority and an explicit Close Workspace step after a final outcome
- Adult reviewers can approve, modify and approve, deny, request more evidence or escalate from the full workspace
- Evidence requests notify the original requester and cases automatically return to review when new evidence is added
- Repeat-history indicator highlights multiple recent moderation cases without automatically deciding an outcome
- Appeals can automatically link to a moderation request or executed moderation case and write back to the case timeline
- Junior Staff carrying the configured Minor role only see SFW workspaces they submitted or were assigned; detailed prior moderation records and the full Moderation dashboard remain adult-only
- New Junior delegated dashboard profile plus deny-by-default page enforcement for delegated dashboard roles
- Discord approval cards now include an Open Full Case button
- Case workspace data is included in privacy exports and tenant exports
- Existing v5.8.4 immediate /modrequest and message-command sync remains included
Version 5.8.4 • 2026-09-15
Immediate Guild Command Sync
Registers Junior Moderation Request commands directly in every connected Discord server so they appear immediately instead of depending on global propagation.
- /modrequest is synced as a guild command for every connected server on ClientReady
- Apps → Request Moderation Action is synced as a guild message command for every connected server on ClientReady
- Newly joined servers receive both moderation-request commands automatically on GuildCreate
- Existing global command deployment remains available through npm run deploy-commands for the rest of Kervak
- Startup logs now explicitly say Verified or Registered and include the guild ID so command availability can be diagnosed from Railway logs
- All v5.8.3 requester-role and notification-role configuration remains included
Version 5.8.3 • 2026-09-15
Moderation Request Command Sync & Role Notifications
Makes Junior Moderation Requests self-register on startup and adds configurable request-role notifications.
- /modrequest now self-registers on bot startup instead of depending on a separate deploy-commands run
- Right-click Request Moderation Action remains startup-synced
- Dashboard → Moderation Requests clearly configures which staff roles may submit Warn, Timeout, Kick and Ban requests
- New configurable Roles to tag selector mentions selected staff roles whenever a new request reaches the private approval channel
- Tag roles and reviewer roles are separate: being tagged never grants approval permission
- Up to 10 request-notification roles may be selected
- No database migration is required because notification-role configuration uses the existing guild configuration store
Version 5.8.2 • 2026-09-15
Discord Channel Type Build Hotfix
Fixes the remaining Railway TypeScript errors caused by Discord.js PartialDMChannel typing in junior moderation request entry points.
- Age-restricted channel detection now accepts an unknown channel value and safely inspects only the NSFW/thread fields it needs
- Removes Discord.js class-union assignability issues entirely, including PartialDMChannel
- No moderation-request behavior or database schema changes
- All v5.8.0 Junior Moderation Requests and v5.8.1 reviewer-flow fixes remain included
Version 5.8.0 • 2026-09-14
Junior Moderation Requests
Junior/community staff can prepare SFW moderation cases without receiving kick, ban, timeout or message-management permissions; authorized adult reviewers approve the final action.
- New /modrequest command for Warn, Timeout, Kick and Ban requests
- New right-click message action: Apps → Request Moderation Action, preserving the selected SFW message as evidence without requiring Message Content Intent
- Dashboard → Moderation Requests configures the private approval channel, junior requester roles and allowed request actions
- Separate adult reviewer-role allowlist with a hard block for members carrying the configured Minor role
- Adult reviewers can Approve, Modify or Deny; Kervak executes approved actions using the bot permissions and creates the normal moderation case/log
- Target role hierarchy and bot actionability are checked before execution
- Age-restricted/NSFW channels are blocked as junior request/evidence sources
- Pending requests expire after 48 hours and message-menu drafts after 30 minutes
- Moderation-request configuration is included in configuration snapshots and tenant data export
Version 5.7.1 • 2026-09-14
Flexible Application Approval Roles
Approved staff applications can now assign one, two, or three Discord roles.
- Discord application approval role picker now accepts 1–3 roles
- Dashboard application approval now accepts 1, 2, or 3 different valid roles
- Role hierarchy and managed-role safety checks remain enforced
- Approval embeds, DMs and staff logs continue to show the roles actually assigned
- No database migration, new Discord intent or slash-command redeployment is required
Version 5.7.0 • 2026-09-14
Custom Panels & Independent Application Forms
Adds fully editable custom ticket and staff application panels with independent question sets and in-place Discord synchronization.
- Custom Panel Builder now creates both normal ticket panels and staff application panels
- Every custom staff application panel can use its own 1–8 questions instead of the global application form
- Application questions support short/long answers, required or optional responses, placeholders and per-question character limits
- Each ticket button on a custom ticket panel can override the server-wide question set independently
- Custom application panels can route reviews to their own review channel or fall back to the server-wide Application Reviews channel
- Community Control → Customization can edit panel text, application button text/emoji, review routing and panel-specific questions
- Editing panel information updates the original Discord message in place instead of posting duplicates
- Existing built-in /panel ticket and application messages remain compatible
- Custom panel and question configuration is included in tenant data export
Version 5.6.3 • 2026-09-13
No-Intent Message Preservation
Staff can preserve a message to the private Server Activity Logs through a right-click Message Command without requiring Discord Message Content Intent.
- New right-click message command: Apps → Preserve to Logs
- Available to configured Staff, Management and Administrators only
- Discord supplies the selected target message through the interaction, so the preservation workflow does not require Message Content Intent
- Preserved logs include message text, author, channel, message ID, original jump link and up to four attachment links
- Kervak also keeps a bounded temporary in-memory copy so a subsequent delete event can repeat the preserved content when the bot has not restarted
- Ordinary deleted messages still log metadata but clearly direct staff to Preserve to Logs when Discord does not expose content
- Existing v5.6.2 Message Content support remains available for installations that have Discord approval, but it is not required for this workflow
- The Preserve to Logs Message Command self-registers on startup and is also included in npm run deploy-commands
- Founder Tickets, AutoMod Rulesets, reliable external-role logging and flexible application roles remain unchanged
Version 5.6.2 • 2026-09-13
Message Content Activity Logs
Server Activity Logs can now include the actual text and attachments of deleted messages plus before/after text for edited messages.
- New MESSAGE_LOG_CONTENT_ENABLED switch independently enables content logging without forcing ticket transcripts on
- Deleted-message logs include cached message text and up to eight attachment links when available
- Edited-message logs show Before and After content instead of metadata-only placeholders
- Kervak keeps a bounded in-memory cache of the most recent 5,000 human messages to improve deletion-log reliability without creating a separate message-content database
- Message Content Intent is requested only when ticket transcripts or message-content logging are enabled
- If Discord did not provide/cache an older deleted message, the log clearly says content was unavailable rather than claiming it was deliberately not stored
- Founder Tickets, AutoMod Rulesets, reliable external-role logging and flexible application roles remain unchanged
Version 5.6.1 • 2026-09-13
AutoMod Rulesets Build Hotfix
Fixes the Railway TypeScript build error in the AutoMod custom-keyword update path without changing enforcement behavior.
- Fixes TS2367 in src/automod-rulesets.ts when an existing keyword rule is disabled after its final pattern is removed
- The keyword-only branch now explicitly allows native timeout actions instead of comparing an already-narrowed keyword trigger against spam
- All v5.6.0 AutoMod Rulesets functionality is preserved
- Founder Tickets, reliable external-role logging and flexible staff-application roles remain unchanged
- No database migration, environment variable, privileged intent or slash-command redeployment is required
Version 5.6.0 • 2026-09-13
AutoMod Rulesets
Adds a full dashboard AutoMod ruleset editor with per-rule punishments and safe role/channel whitelists.
- New Dashboard → AutoMod Rulesets workspace modeled after the requested ruleset cards and edit panels
- Banned Words, Anti Spam, Anti Invites, Anti Links, Capitals Spam, Mentions Spam and Anti Scam rules
- Per-rule Block, Timeout, Kick or Ban escalation with timeout duration controls
- Per-rule channel and role whitelists with Discord-safe 50-channel / 20-role limits; Administrator and Manage Server members remain exempt
- Configurable banned-word patterns, mention-spam limit, and message-rate Anti Spam threshold
- Anti Spam counts message rate without reading content; Anti Scam uses Discord's native Spam Content detector
- Native rules block before posting; rate-spam deletes its triggering message and can escalate to timeout/kick/ban
- Uses non-privileged AutoModeration gateway intents and does not require Message Content intent
Version 5.5.3 • 2026-09-12
Founder Ticket Modal Hotfix
Fixes the runtime Invalid string length error when opening a Founder Ticket.
- Founder Ticket default modal labels now stay within Discord text-input limits
- Ticket modal rendering defensively clamps all question labels to Discord’s 45-character maximum
- Founder Ticket privacy and auto-close behavior are unchanged
- Preserves reliable external role logging and flexible application role assignment
- No database migration, new intent, environment variable or slash-command redeployment is required
Version 5.5.2 • 2026-09-12
Founder Ticket Auto-Close Build Hotfix
Fixes the remaining v5.5.1 Railway TypeScript build error in the ticket auto-close path.
- Removes the impossible private_verification comparison after private Founder-only ticket types have already returned
- Standard verification tickets still post the normal inactivity audit log
- Founder and private-verification tickets continue deleting privately without general ticket logs
- Preserves Founder Ticket, reliable external role logging and flexible application role assignment
- No database migration, new intent, environment variable or slash-command redeployment is required
Version 5.5.1 • 2026-09-12
Founder Ticket Build Hotfix
Fixes the v5.5.0 Railway TypeScript build failure in the dashboard ticket list without changing Founder Ticket behavior.
- Dashboard ticket rows can safely pass raw database ticket-type strings to the Founder-only predicate
- Fixes TS2345 at src/dashboard/index.ts around the Founder Ticket visibility filter
- Founder Ticket privacy, v5.4.9 reliable role logging and v5.4.8 flexible application roles are unchanged
- No database migration, new intent, environment variable or slash-command redeployment is required
Version 5.5.0 • 2026-09-12
Founder Ticket
Adds a private Founder Ticket option to standard and custom ticket panels.
- Founder Ticket appears in the standard Tickets and Verification panel and custom panel builder
- Only the opener, configured Founder role, bot and Discord Administrators receive access
- Normal Staff and Management are not granted access by the ticket workflow
- Founder Tickets do not create transcripts, staff discussion threads, normal ticket logs or staff archives
- Founder Ticket questions are configurable from Ticket Questions
Version 5.4.9 • 2026-09-12
Reliable Member Role Logging
Role-change logs no longer invent added roles when Discord supplies an incomplete previous member snapshot.
- Partial or incomplete GuildMember snapshots are never used as a role-diff baseline
- Complete cached members still use the normal fast in-memory role comparison
- Partial updates wait briefly for Discord's exact Member Role Update audit event and use only its $add/$remove role data
- If no reliable audit change is available, Kervak skips the role log instead of producing false positives
- Fixes false role floods triggered by external bots such as Sapphire reaction roles
- No database migration, new intent, REST audit polling or slash-command redeployment is required
Version 5.4.8 • 2026-09-12
Flexible Staff Application Role Assignment
Staff application approvals can now assign either two or three Discord roles instead of requiring exactly three.
- Discord application approval role picker now allows 2–3 roles
- Dashboard application approval now accepts 2 or 3 different valid roles
- Role hierarchy and managed-role safety checks remain enforced
- Approval embeds, DMs and staff logs show the roles actually assigned
- No database migration, new Discord intent or slash-command redeployment is required
Version 5.4.7 • 2026-09-10
Sapphire-Style Reaction Roles
Kervak now includes a full self-service role-menu builder with dropdown, button and classic emoji-reaction modes.
- New Dashboard → Reaction roles workspace
- Create reusable role panels in any text or announcement channel
- Dropdown menus support single-choice or multi-role selection
- Button panels toggle roles with optional labels and emoji
- Classic reaction panels add a role on react and remove it on unreact
- Single-choice mode can replace another role from the same panel
- Role safety blocks @everyone, managed roles, staff/admin roles, dangerous permissions and roles above Kervak
- Existing /selfrole button menus remain supported
- Adds only the non-privileged Guild Message Reactions gateway intent; no privileged-intent review is required
Version 5.4.6 • 2026-09-10
Dedicated Moderation Commands Channel
Completed moderation commands can now be routed to their own Discord channel instead of sharing the general Moderation Logs destination.
- New Dashboard → Settings → Channels → Moderation commands selector
- Warn, timeout, kick, ban and warning removal Modlog Entry embeds use the new dedicated channel
- General moderation/security/configuration logs continue using Moderation Logs
- If Moderation commands is left unset, Kervak automatically falls back to the existing Moderation Logs channel
- No database migration, new Discord intent or slash-command redeployment is required
Version 5.4.5 • 2026-09-10
Visible Moderation Log Entries
Completed moderation actions now create a dedicated Modlog Entry in the configured Moderation Logs channel using a clear case, user, moderator and reason layout.
- Warn, timeout, kick, ban and warning removal post a visible Modlog Entry
- Log layout shows case number, action, user, moderator and reason in one Information block
- Timeout duration, warning points and ban message-deletion details are included when relevant
- Moderator receives a private confirmation that explicitly reports whether the modlog post succeeded
- Existing DM notifications and moderation case records remain unchanged
- No new Discord intent or slash-command redeployment is required
Version 5.4.3 • 2026-08-24
Resilient Discord Connectivity
Community Control keeps its dashboard and health surface online during temporary Discord API or Gateway failures and now exposes clearer dependency diagnostics.
- Dashboard starts before Discord Gateway login, so Railway health remains available during Discord outages
- /health is a process liveness endpoint while /health/strict reports dependency degradation
- Discord Gateway disconnect, reconnect, shard error and REST rate-limit events are logged explicitly
- Initial Discord login retries with bounded backoff instead of leaving startup silently stuck
- PostgreSQL startup failures retry while the dashboard remains reachable
- Dashboard Settings uses cached roles/channels when Discord REST refresh is temporarily unavailable
- Dashboard permission checks use cached guild members before requesting Discord REST data
Version 5.4.2 • 2026-08-23
Browser Tab Branding
The Kervak Community Control icon now appears consistently in browser tabs and bookmarks across the dashboard and public pages.
- Official Kervak Community Control favicon in dashboard tabs
- 16px and 32px PNG favicon support for modern browsers
- ICO fallback for compatibility and direct /favicon.ico requests
- Offline dashboard page uses the same Kervak tab icon
- No Discord command, permission or intent changes required
Version 5.4.1 • 2026-08-23
Moderation DM + Log Reliability
Existing moderation slash commands now consistently notify affected users and post to the configured moderation-log channel without changing command names or access rules.
- Warn, timeout, kick, ban and warning removal keep member DM notifications
- Every completed action posts case details and DM-delivery status to Moderation Logs
- Kick and ban preserve a DM channel before removal so the notification can still be delivered
- Legacy moderation-log channel configuration remains compatible
- DM or log delivery failures never roll back a completed moderation action
Version 5.4.0 • 2026-08-23
Operations Productivity Suite
Management receives a personalizable command centre, actionable notification inbox, reusable ticket replies and complete member histories.
- Notification read state, ownership, snoozing, acknowledgement and resolution
- Per-device Overview widget visibility and ordering
- Server-specific ticket reply templates with safe placeholders
- Unified member timeline across tickets, moderation, applications, appeals, verification and staff notes
- No new Discord privileged intent or intent review required
Version 5.3.0 • 2026-08-23
Personal Dashboard Header
The overview uses a compact branded header with device-personal shortcuts to frequently visited workspaces.
- Smaller responsive Kervak banner
- Most Visited panel beside the banner
- Automatic private visit ranking stored only on the current device
- Suggested daily areas until enough personal history is available
- Compatible with browser and Windows desktop dashboards
Version 5.2.2 • 2026-08-23
Dashboard Theme Repair
Dashboard colour themes now visibly recolour the complete web and desktop experience and persist between sessions.
- Fixed palette variables being overwritten by the default Nexus theme
- Distinct backgrounds, navigation, cards, buttons and glow treatments for every palette
- Saved palette restored automatically on the next visit
- Same theme behaviour in browser and Windows desktop dashboards
Version 5.2.1 • 2026-08-23
Sidebar Branding Polish
Long customer names now remain balanced and Kervak support and developer information are always easy to find.
- Single-line product name with safe ellipsis and full-name tooltip
- Permanent Support Discord button
- Developed by Spliffy at Kervak Technologies credit
- Responsive sidebar presentation for browser and desktop dashboards
Version 5.2.0 • 2026-08-23
Staff Productivity Suite
Kervak reduces repetitive dashboard work with unified search, a personal work queue, reusable views and automatic draft recovery.
- Server-wide search across operational records for authorized managers
- My Work queue for assigned tasks, claimed tickets, reviews and handovers
- Staff-specific saved filter views
- Seven-day device-local autosave with automatic recovery and clearing after successful submission
Version 5.1.1 • 2026-08-23
Dashboard Personalisation & Desktop Zoom
The Community Hub is clearer, the Windows companion supports familiar zoom controls and operators can choose a distinctive colour palette.
- Clearer Community Hub wording and improved long-text wrapping
- Ctrl + mouse wheel, Ctrl +/− and Ctrl + 0 desktop zoom
- Nexus, Cyber, Emerald, Crimson, Solar and Ocean colour palettes
- Theme and zoom choices persist on the device
Version 5.1.0 • 2026-08-23
Operations Suite
Kervak adds faster cached dashboard resources, delegated operational views, weekly owner briefings and structured incident response.
- Five-minute Discord role and channel cache with stale-data fallback
- Deny-by-default Support, Moderator, Analyst and Staff dashboard profiles
- Weekly owner reports with PDF export
- Incident playbooks, containment checklists and a permanent timeline
Version 5.0.0 • 2026-08-23
Community Safety & Trust Centre
Kervak now explains community safety pressure with a transparent Trust Score and adds persistent dashboard appearance controls.
- 0–100 Trust Score with four visible weighted factors
- Safety, moderation, account-risk and staff-response trends
- Server-size normalization, score movement and guided recommendations
- Optional low-score alerts and weekly Management reports
- Persistent dark and light dashboard themes
- Small, default and large dashboard text sizes
Version 4.9.1 • 2026-08-23
Retention Centre SQLite Hotfix
The Retention Centre now loads correctly on SQLite deployments.
- Replaced a reserved SQLite query alias
- No database reset or configuration changes required
- Retention tracking and privacy settings remain intact
Version 4.9.0 • 2026-08-23
Member Retention & Re-Engagement Centre
Community owners can understand activity health and welcome members back while preserving clear privacy choices.
- Active, declining and inactive member health classifications
- Join, leave, return and channel-activity trends
- Configurable public welcome-back messages
- Public re-engagement campaign composer with no unsolicited DMs
- Member opt-out, profile deletion and voluntary private feedback
- Activity-drop alerts, retention limits, rollback and tenant export coverage
Version 4.8.0 • 2026-08-23
Customisable XP and Leveling Centre
Community owners can now control how XP is earned and use role or channel boosts without editing code.
- Editable XP range and cooldown
- XP boost roles and channels with 1×–10× multipliers
- Highest-role or stacked role-boost modes with a configurable safety cap
- Excluded channels, reward roles and level-up announcements managed from one dashboard page
- Full /leveling command support, configuration rollback and tenant export coverage
Version 4.7.0 • 2026-08-22
Desktop Notifications and System Tray
The Windows companion now stays available from the system tray and delivers configurable operational alerts while the browser dashboard continues to work normally.
- System tray controls for dashboard, status, alerts and exit
- Optional launch with Windows
- Minimize to tray instead of closing accidentally
- Alert categories for tickets, applications, security, attention and service health
- Device-local quiet hours and test notifications
Version 4.6.2 • 2026-08-19
Windows GUI Process Fix
The Windows production build now runs as a standard GUI application without opening an attached console window.
- Only the Kervak dashboard window is displayed
- Closing an unrelated console window can no longer terminate the app
- Browser dashboard remains unchanged
Version 4.6.1 • 2026-08-19
Windows Desktop Companion
Kervak now includes a separate, lightweight Windows dashboard app and a secure GitHub workflow that produces MSI and setup EXE installers without changing the browser dashboard.
- Branded Windows 10/11 application powered by WebView2
- Normal HTTPS browser dashboard remains fully available
- No bot token, Stripe secret or database password bundled
- GitHub Actions builder for MSI and NSIS setup EXE
- No additional Discord Gateway intent required
Version 4.6.0 • 2026-08-19
Mobile Command Centre
The Kervak dashboard is now installable and optimized for secure day-to-day management from phones, tablets and desktop app windows.
- Installable PWA with branded app icons and shortcuts
- Mobile bottom navigation and quick-action sheet
- Responsive forms, management cards and touch-friendly controls
- Offline last-known health view and connection awareness
- Optional browser alerts and app badges for critical attention items
Version 4.5.0 • 2026-08-19
Contextual help and guided fixes
Server owners can now understand configuration problems, apply safe repairs, test key features and see an exact readiness score.
- Simple and Advanced explanations for every detected issue
- Guarded one-click role and channel repairs with rollback snapshots
- Safe tests for tickets, welcome messages, logging and AutoMod
- Configuration readiness score and direct links to related settings
Version 4.4.0 • 2026-08-15
Faster setup and easier product discovery
Community presets, an interactive dashboard tour, a public demo and a versioned What's New centre make Kervak easier to evaluate and configure.
- Six non-destructive community presets with rollback snapshots
- First-login product tour with restart control
- Public read-only demonstration dashboard
- Versioned release notes and owner action guidance
Version 4.3.0 • 2026-08-15
A simpler dashboard and continuous health checks
Simple and Advanced dashboard modes reduce clutter while the automatic configuration monitor detects broken permissions and deleted configuration targets.
- Simple and Advanced navigation modes
- 15-minute configuration health monitoring
- Outcome-led Starter, Professional and Enterprise plan cards
Version 4.2.0 • 2026-08-15
Complete welcome-message control
Server owners can configure the public welcome embed and private welcome DM from a dedicated page.
- Editable placeholders, colours, images and footer
- Member ping and DM controls
- Safe test-post workflow
Version 4.1.0 • 2026-08-14
Configurable boost announcements
Custom server-boost messages and complimentary-access wording can be managed from the dashboard.
- Boost event duplicate protection
- Editable message and embed colour
- Test post and maintained defaults