Zum Hauptinhalt springen

Neuigkeiten

Was ist neu

Versionshinweise stammen aus dem App-Store-Listing — die Quelle der Wahrheit ist die iOS-Einreichung. Ältere Versionen leben dort.

Versionshinweise erscheinen hier, sobald die erste Version im App Store ausgeliefert wird.

Web-Ship-Log

Aktuelle Auslieferungen auf der Web-Seite von ConKarma — getrennt von den App-Store-Release-Notes oben. Neueste zuerst.

August 2026

  • 2026-08-02

    /features/fun — user-authored Riddles, refreshed mini-games, and real front doors for play

    The Fun-OS release cycle gave mini-games and polls proper entry points in the app — hub tiles plus a daily "What's Brewing" slot — so play is discoverable instead of buried, and /features/fun now reflects the shipped shape. New: user-authored Cell Riddles — write your own brain-teaser, send it to the cell, and everyone guesses; cell-private like the rest of Fun OS and moderated with a pre-publish screen. The Mini-games section is updated to its shipped formats (trivia, emoji, word, riddle) with a per-cell completion streak, and the free-tier copy no longer pins a specific game count. All 14 locales updated.

  • 2026-08-01

    Self-identifying DNA/EGO ledger headers + searchable settings

    The DNA/EGO transaction ledger now carries self-identifying headers, so every currency movement — earned, spent, transferred — is legible at a glance without cross-referencing. Alongside it, Settings was redesigned to be searchable: type what you want instead of hunting through screens. The DNA/EGO economy stays transfer-and-earn only, never real-money.

  • 2026-08-01

    /legal/affiliate-disclosure — reality pass: no active affiliate partners

    Synced to the counsel-revised canonical: the affiliate disclosure no longer names any adult/intimacy vendors (none were ever signed) or a commission range, and is reframed as forward-looking — no affiliate partners are active at this time. The older changelog note that implied gift-card brands pay an affiliate fee was corrected too; vouchers and store sub-purchases earn no commission.

July 2026

  • 2026-07-18

    /help/multi-cell + /help/co-parenting + /help/after-divorce-reforming-cell — updated to the shipped multi-cell / dissolution / co-parenting model

    Content accuracy pass after the multi-cell, dissolution, co-parent-bridge, and second-hearth capabilities shipped in the apps. /help/multi-cell now states the capability honestly: your first cell is free, holding more than one of your own is Premium, and a co-parented child rides EITHER parent's Premium at no charge to the child — cost is never the reason a child loses a home. /help/after-divorce-reforming-cell moves to the shipped model: the shared cell is dissolved, each adult forms their own home, and the kids' childhood memories are preserved as a separate copy in each new household, while adult-only private content is handled separately and never shown to the kids. /help/co-parenting reframes custody coordination as opt-in, independently consented, and never forced — pick-up reminders go only to the dropping-off parent, and coordination is suppressed under a safety hold. Second-hearth guidance is folded into the multi-cell and after-divorce pages: the suggestion appears only from an explicit record or a setting a parent turns on themselves, never inferred from behaviour. invited-by-other-parent and share-with-other-parent pick up the no-charge-to-the-child rule.

June 2026

  • 2026-06-16

    /legal/subprocessors + /privacy §6 + /help/ai-privacy — AI sub-processor disclosure (Anthropic + OpenAI)

    Anthropic, PBC and OpenAI, L.L.C. added to /legal/subprocessors as AI sub-processors — AI text generation (weekly recaps, coaching prompts, voice-memo summaries) and automatic child-safety moderation of user-submitted free text, both via our vendor-neutral AI Gateway (Google already serves that gateway too). For moderation only the text being checked plus a fixed safety instruction is sent — no account, profile, or relationship data — and only a SHA-256 hash of the text plus the safe/unsafe verdict is retained, never the raw text. Privacy Policy §6 picks up the matching AI-processing entry and reconciles the "never read by an automated content model" line with the limited child-safety moderation carve-out; /help/ai-privacy gains a Safety-moderation section. Published per the §Notification-of-changes commitment and the privacy policy's in-app material-change notice. Privacy policy mirrored from the Hestia source of truth (HESTIA-720). Conflict-resolution features remain deliberately never AI-mediated.

May 2026

  • 2026-05-16

    /pricing refresh — annual SKUs, subscription pause, win-back banner, mid-tier DNA, earn-the-trial

    Tier A monetization wave. Annual SKUs surface alongside monthly via the Monthly/Annual toggle (per locale + currency). New "Pause, don't cancel" section explains the 1/2/3-month subscription pause — anti-dark-pattern stance, no throttling. New "Earn the trial" section explains the engagement-criteria-triggered 14-day Premium trial (no card required, no auto-charge). Win-back banner copy + 7-day countdown wired behind `?wb=1` query (BE-side lapsed-sub detection arrives via the matching outbound ask). New mid-tier DNA bundle ($14.99 / 10,000 DNA) added to in-app extras. Family tier copy adds the one-purchase = cell-wide entitlement line for annual math clarity.

  • 2026-05-16

    /features — 10 new sub-pages for the May 16 product wave

    Ten new /features sub-pages each with hero + body sections + how-to-use + Schema.org Service JSON-LD: Important Dates (anniversary cadence + life-event registry), Daily Question (curated couple + family prompt loop), Family grocery list (real-time multi-user), Meal planner (recipe box + week view), Days-together widget (home-screen relationship counter + watch complications), Streak shields (earn-not-buy streak protection), Cell-quest (Habitica-style shared quest with bereavement-safe defaults), Companion pet (persistent companion + colour-blind + reduced-motion respected), Card decks (Gottman-style relationship cards — editorial, never AI-generated), Give-jar (charitable third allocation for kid cells with parent-authorised disbursement).

  • 2026-05-16

    /security + /accessibility refresh — May 16 wave additions

    Four new /security sections cover the load-bearing wave additions: Ember consent infrastructure (limits doc + safeword + aftercare), Double-blind consent matching (never-reveal-no + zero-egress AI invariants), Take It Down Act compliance disclosure (public notice channel + 48h SLA), and the per-state regulatory dial (honest regional-adjustability disclosure). /accessibility picks up a new section covering the May 16 wave additions: companion pet (colour-blind palettes, reduced-motion respect, Spoken UI), cell-quest (4.5:1 contrast on progress bars, bereavement-safe away-pause without breaking streaks), and the elder-cell variant (large-type, voice-note primary input, single-tap shortcuts).

  • 2026-05-16

    /help — 3 new wishbook articles + 3 view + reminder articles

    Six new /help articles. Three from the wishbook reservation wave: reserving-a-wish, sharing-your-wishlist, anonymous-gifting. Three new view + reminder articles: kanban-view, task-calendar-view, deadline-reminders. All wired into the new helpRelated category map (a wishbook category groups all three reservation articles + trusted-cells + grandparents). Per-article canonical + hreflang via lib/helpMetadata.ts; sitemap picks them up automatically.

  • 2026-05-16

    Stripe Payment Request API live on /pricing/checkout/[token]

    @stripe/stripe-js wired into CheckoutClient now that the BE returns stripe_client_secret + per-session publishable key and the Apple Pay domain-verification file is served via /.well-known. paymentRequestButton element mounts when canMakePayment returns Apple Pay (Safari/Wallet) or Google Pay (Chrome/Google Pay) capability; falls back to "wallet needed" copy elsewhere. 3DS / SCA second-confirm handled. CSP updated for js.stripe.com / api.stripe.com / hooks.stripe.com / *.stripe.com.

  • 2026-05-16

    Wishbook public reservation flow — anonymous + named

    BE contract update unblocked this rewrite — the existing /shared/wishbook/[token] page was written against the previous contract and would have 500'd against the current BE. ReserveControls per-item client island handles reserve/release via wb_share_session cookie; named mode shows reserver_first_name in the badge, anonymous shows just "Reserved". Owner sees nothing about reservations (the surprise stays intact). 409 handling for race conditions; 400 handling for unreserve-not-yours.

  • 2026-05-16

    /legal/takedown-notice + ToS amendment for Take It Down Act compliance

    Federal TAKE IT DOWN Act (2025) Phase 1: public-facing /legal/takedown-notice page describes the channel, 48-hour SLA, valid-notice format (with NCII + DMCA + CSAM coverage), submission via legal@conkarma.app, counter-notice path, bad-faith warning. Footer link from every page. ToS amendment filed cross-repo (Hestia owns terms_of_service.md; Minerva re-copies once landed).

  • 2026-05-16

    Real-user Core Web Vitals per route, per device, per locale

    The existing WebVitals component now passes pathname + nav_type + delta through track — dimensionsFor auto-tags content_type / content_slug, so GA4 Explorations can compute per-route p75 LCP / INP / CLS by device and locale without path parsing. The path goes through scrubUrl so token-bearing paths never leak in the page_path dimension. The 30-day rolling-window review process unblocks once enough field data lands post-launch.

  • 2026-05-16

    /help SEO hardening + internal-link audit

    Fixed a real layout-inheritance bug where every /help article inherited /[locale] as its canonical — now each article gets per-article canonical + hreflang via lib/helpMetadata.ts (migrated 41 page.tsx files). New lib/helpRelated.ts buckets articles into 7 topical categories so HelpArticle renders up to 4 related siblings with descriptive anchor text. Replaced the only bad anchor in the repo (/roadmap "Read more" → "Read about {title}" across 14 locales). /for-sandwich-gen was orphaned from the Footer persona list — fixed across 14 locales.

  • 2026-05-16

    i18n EN-fallback mechanism + Upstash + Stripe subprocessors + privacy refresh

    i18n/request.ts now deep-merges en.json into each non-EN locale's bundle as a key-level fallback — new namespaces ship in EN immediately without 500-ing non-EN locales. /legal/subprocessors picks up Upstash, Inc. (managed Redis for rate-limit + magic-link codes + JWT denylist) and Stripe Payments Europe (card-not-present payment processing) — published per the §Notification-of-changes commitment. privacy_policy.md re-copied from Hestia to match (both shipped).

  • 2026-05-15

    Conflict resolution — sibling, couple, cross-generational repair flows

    Three structured repair flows shipped together. Sibling repair: each kid picks from a curated set of "what happened" cards, the BE matches the pair into a shared prompt, both confirm before it lands. Couple repair: longer, calmer cadence with optional 24-hour cool-down before the second adult sees the framed message; both must sign off before a "moment closed" badge ticks. Cross-generational repair (parent ↔ teen, adult-child ↔ elder cell): same structured-form discipline as the couple flow but with role-aware prompts. All three are curated content + structured forms — no AI mediation in any of them, for reasons explained at /blog/why-conflict-tools-are-not-ai-mediated. Family Shield routing surfaces a soft hand-off to local crisis resources when keywords match the trained triage set.

  • 2026-05-15

    Truth or Dare — Serene + Ember modes

    A long-overdue family-game primitive ships in two flavours. Serene mode: family-safe prompt sets (road-trip, dinner-table, cousin-sleepover variants) with parent-side category controls. Ember mode: adult-only prompt set, biometric-gated, never visible to non-Ember accounts in the cell. Both share the same Tunable-categories surface so an adult can ratchet the prompt set up or down within the mode they're using. Stable content rule applied — every prompt is a curated string, never AI-generated. /features now carries a "Truth or Dare — both ends of the dial" section between Smart Tools and Platform-Native.

  • 2026-05-15

    Ember consent infrastructure — limits, safewords, aftercare

    The three Ember pillars ship as one. The limits doc is a couple-private structured form with hard / soft tiers, edit history visible to both adults; never reaches our AI pipeline. The safeword is a per-cell binding the BE just stores and the client surfaces — activation immediately collapses any open Ember surface back to Serene + writes a couple-private log entry that doesn't leave the device pair. Aftercare check-ins are a short opt-in prompt set the couple chooses ahead of time, surfaced once the Ember session closes. Full posture write-up at /blog/ember-consent-infrastructure; new /security/zone-isolation guarantees enumerate the no-egress, separate-keypair, biometric-gate primitives that back it.

  • 2026-05-15

    Personal Journal + Wishbook + Vents

    Three personal-space primitives. Personal Journal is the private notebook surface — never visible to anyone in the cell unless the author explicitly cell-shares a single entry. Wishbook is the curated wishlist per cell member (already public-shareable via /shared/wishbook/<token> for the grandparent-doesn't-install case). Vents is the permission-framed shadow journal sub-surface — an "I need to say this out loud" channel with curated Vent Cards and an anti-shame voice; never indexed in the family timeline, never surfaced to other cell members.

  • 2026-05-15

    Personal feature-hide + cell-level controls

    You choose what surfaces on your own account: personal-hide settings let any cell member disable individual features for themselves without affecting siblings or co-parents. Cell-owner controls let the cell owner disable a feature for the whole cell (e.g. turning off Truth-or-Dare Ember for a household that never enters adult zones; toggling Wishbook off in a cell that doesn't want affiliate links). BE never deletes the hidden surface — the data structure stays intact and re-appears when the toggle flips. Permanent-flag operations require a two-eye gate on the admin side.

  • 2026-05-15

    Kid Mode — server-side age-tier filter

    Server-side age-tier filtering enforces that any account flagged kid-mode (under-13 by default; configurable upward by the cell owner) sees only the age-appropriate slice of every surface — no Ember entry point, no adult conflict-resolution prompts, no Wishbook affiliate-buy CTAs, no Vents Ember Cards. The filter runs in the BE, not the client, so a tampered build can't lift the gate. Help article at /help/kid-mode walks through the parent-side controls.

  • 2026-05-14

    Two-factor authentication at sign-in

    Every sign-in now passes through a 6-digit code emailed to the account address. Once a device is verified, it stays trusted for 30 days — repeat sign-ins on the same browser don’t re-prompt. Signing in from somewhere new always triggers the code. Implementation choice (email over SMS or authenticator apps) explained in the launch blog post and on /help/two-factor.

  • 2026-05-14

    New-device sign-in email alerts

    Every time an account is accessed from a previously-unseen device, the account holder gets an immediate email — device type, approximate city + country, timestamp. One tap in the email revokes that device and forces a password reset. For under-18 users, the same alert also fires to parent-role members of their cell — a single-purpose security signal, not a surveillance channel; minors see in Settings → Security exactly which parents are wired up.

  • 2026-05-14

    Backup codes for 2FA recovery

    Eight one-time backup codes generated at first 2FA setup, accessible from Settings → Security, regenerate on demand. The recovery path when email access is lost. Each code is single-use; the app prompts to generate a fresh set when two remain.

  • 2026-05-14

    Mobile capabilities lit up + two new web surfaces

    Things Minerva has been describing on /features, /platforms, and /pricing for weeks are now live in the apps. Sign in with Apple and Sign in with Google are wired through the BE (the OAuth flows complete server-side, then deep-link back into the app). The Apple Watch glance for the daily streak — a SwiftUI / WidgetKit extension — ships in the iOS build; the equivalent for Wear OS is in the Play track. iOS Shortcuts and Siri integration let visitors run common actions (mark a habit done, claim a streak) from outside the app. Calendar bridge lights up the two-way iCal / Google Calendar sync described on /help/calendar-sync. Proximity share lets two Cell members exchange a moment without going through a public network. Two new web surfaces shipped alongside: /export-data/<token> consumes the new GDPR Art. 20 download endpoint (single-use 24h link emailed from the app), and /s/<entity_type>/<id> renders entity-keyed OG share-card previews for journals / annals / stories pasted in iMessage / WhatsApp / Slack — the URL shape the app embeds in share links.

  • 2026-05-11

    Launch-day welcome blog post + roadmap-and-your-vote drafted

    Two-post launch sequence per the content plan. /blog/welcome-to-conkarma published today — ~2,000 words covering the household-OS framing, the two-zone privacy posture, the Cell as the multi-cell unit, what the website covers today, and what is intentionally not on the roadmap (no feed, no ad pixels, no public friend graph). Press-quotable. /blog/roadmap-and-your-vote drafted in-tree but date-gated for post-mobile-launch publication (listPosts filters future-dated posts in production); ops bumps the date when in-app voting goes live.

  • 2026-05-11

    Install row polish + social-network presence prep

    Web App CTA in the install row now matches the App Store / Google Play / Microsoft Store badges — same w-56 black tile, same border, brand-teal globe icon — so the four buttons read as one peer set. Plus social-presence scaffolding: NEXT_PUBLIC_SOCIAL_PROFILES populates Organization sameAs, per-platform domain-verification meta slots (Facebook / Pinterest / TikTok / Google), Pinterest Rich Pin meta on /blog (Article) and /pricing (Product), conditional /press media-kit download, and a checked-in UTM convention doc.

  • 2026-05-10

    Cell-content social-share landing — /shared/[token]

    New public route renders three entity types (journal, mission_completion, family_moment) from the BE social-share token. Per-entity OG + Twitter Card so a pasted link gets a rich preview in Facebook / WhatsApp / iMessage / Slack — the viral mechanic only works when the preview lands. Always noindex + robots-disallow (token-bearing). Polite expired card on miss / revoke. App / web install CTA pinned at the bottom.

  • 2026-05-10

    Social share buttons on /blog, /help, /roadmap, /changelog

    Reusable ShareButtons component mounted on every public article page. On mobile (Web Share API available) renders a single native Share button so users can deliver to any installed app — Signal, Telegram, Instagram DM, anything. On desktop falls back to discrete buttons per platform — Facebook, X, LinkedIn, WhatsApp, Reddit, Email, Copy link. Every shared URL carries utm_source=share, utm_medium=<platform>, utm_campaign=<route_slug> for attribution. No third-party JS — every button is a static link or a clipboard write. 14-locale labels.

  • 2026-05-10

    SEO foundation + per-route Schema.org

    Tier 1: robots.ts disallows the new token-bearing routes (grandparent / known-location / share / sign-in) plus locale-prefixed variants. Site-wide Organization + WebSite JSON-LD via @graph in every page head, with stable @id URIs for cross-references. og:locale:alternate covers the 13 other locales. Tier 2: visible breadcrumbs + BreadcrumbList JSON-LD on /blog/[slug] and all 17 /help/[slug] articles (HelpArticle moved to a server component to consume the breadcrumb data); Article JSON-LD on /blog posts; FAQPage JSON-LD on the homepage; Service+Offer JSON-LD on the Free pricing tier (Premium/Family region-priced via store listings — omitted to avoid bad-data SERP).

  • 2026-05-09

    Observability — request-id correlation, build-SHA surfacing, wider error capture

    Three pieces shipped together. (1) X-Request-Id minted in middleware on every request, threaded into the layout, attached on every BE call from lib/api.ts and lib/killSwitch.ts (incl. the multipart audio + photo paths) — one grep correlates nginx ↔ Next ↔ goia logs. (2) Build SHA inlined into the bundle at build time; surfaced via <meta name="build-sha"> in the layout and a static /api/version route — `curl https://conkarma.app/api/version` confirms what is actually running. (3) New captureFormFailure(surface, status) helper adopted in 10 form catch blocks (grandparent answer / contribute, support, bug-report, sign-in, consent, activate, reset-confirm, known-location confirm + deny) so non-2xx outcomes flow into the existing consent-gated error sink instead of just the console.

  • 2026-05-09

    Site-wide kill-switch banner

    Server-side fetch of the public kill-switch endpoint on every page render (30-second per-process cache; Cloudflare mirror at status.conkarma.app/kill.json as a backup if goia is down). When active, a severity-colored banner — maintenance / outage / critical — pinned above every route, never dismissible, with optional ETA. Renders in 14 locales for the default copy; admin-set master message renders verbatim until the BE exposes per-locale overrides on the public endpoint (separate follow-up).

  • 2026-05-08

    Grandparent companion lights up — audio answers + photo / memory contributions

    The /grandparent/answer page now renders the question prompt above the answer form (server-fetched via the new BE prompt GET) and offers a real in-browser audio recorder with a 90-second cap (MediaRecorder API; webm/opus on most browsers, mp4 on Safari). Replay before submit. New /grandparent/contribute page lets the grandparent post written memories or upload up to 5 photos per link, with client-side EXIF strip via canvas re-encode. All from the email link, no app install.

  • 2026-05-08

    — Ember zone hardenings live across mobile + web

    Seven new privacy primitives shipped in the mobile app, plus two new public web surfaces: /security/zone-isolation enumerates the fourteen end-to-end guarantees that keep adult and family content on separate rails (reviewer / auditor / partner reference); /security gains seven bullets covering the new app-side hardenings (per-device adult-zone enable, inactivity / background re-prompt, in-memory cache zeroing, Spotlight + Apple Intelligence + AppIntents exclusion, two-eye admin access, configurable 3-year retention, iCloud-backup + GDPR-export controls). Four new help articles cover the user-facing toggles (per-device, retention, backup/export, inactivity relock). All free privacy primitives — no premium tier.

  • 2026-05-08

    Wave 2-C — seven new help articles + /changelog web ship log

    Help articles for co-parenting setup, grandparents, Trusted Cells, sibling trades, reward split, the Sunday family reveal, and two-way calendar sync. Plus this section — a public log of what shipped on the web side, separate from the App Store release notes above.

  • 2026-05-08

    Wave 2-B — /for-co-parents and /for-grandparents persona pages

    Two new persona pages with full sitemap + cross-link wiring. Co-parents page covers multi-cell setup, custody-aware calendar, separate subscriptions, privacy boundaries. Grandparents page positions the read-only weekly digest and Question for Grandpa audio replies.

  • 2026-05-08

    Wave 2-A — /features expansion, /pricing therapist export, /for-families chore-trade

    16 new feature cards across four thematic sections on /features (Family Stories, Cell Network, Smart Tools, Platform-Native), therapist quarterly PDF export added to Premium pricing, and the household-OS framing extended on /for-families with kid-to-parent rewards and chore-trade differentiators.

  • 2026-05-08

    Marketing reposition to the "household agentic OS" frame

    Landing /about/, /pricing/, /features/, and the /for-* persona pages all rewritten around the household-OS positioning — moves us off the "another family chore app" interpretation and onto the life-stage / multi-cell story that distinguishes ConKarma from Greenlight / Cozi / Habitica. Affects copy across the marketing surface, not the underlying product mechanics.

  • 2026-05-08

    /features Calendar + Health bridges + Live Activities sections

    Three new /features sections covering: shared cell calendar with iCal export and RSVP, Apple Health + Google Fit bridges that auto-tag walking / sleep / activity missions (opt-in per category), and iOS Live Activities + Android equivalent for active streaks / countdowns on the lock screen and Dynamic Island.

  • 2026-05-08

    /pricing Wave-2 monetization — Boosters, Season Pass, Content Packs, Cosmetic store

    Pricing page picks up four new sections beneath the tier table: in-app Boosters (one-shot DNA multipliers), Season Pass (quarterly themed track), Content Packs (themed missions / cosmetics drops), and the cosmetic store (cell-themed avatars + rewards + frames). Premium / Family items list refreshed; restore-purchases section added for App Store / Play / Microsoft.

  • 2026-05-07

    /legal/affiliate-disclosure page

    New FTC-compliant affiliate disclosure page at /legal/affiliate-disclosure. It sets out where affiliate links would appear and how each would be disclosed — no affiliate partners are active at this time. Our own voucher-redemption catalog (powered by Tremendous) and the App Store / Google Play / Microsoft Store sub-purchase links explicitly do NOT earn a commission. Recommendations are off by default for child and teen accounts and gated behind 18+ verification on adult surfaces, and can be turned off entirely at Settings → Privacy → Recommendations. Linked from the footer + cross-referenced from /privacy.

  • 2026-05-07

    /pricing tier rows for adult_tier + content_drop SKUs

    Pricing page gains rows for the adult-tier subscription SKU (gates the Ember zone — biometric required, two-eye admin access, configurable retention) and the content-drop SKUs (themed mission packs sold à-la-carte). Both visible on the Premium and Family tier comparison; cross-link to /security/zone-isolation for the privacy posture context.

  • 2026-05-07

    /pricing — Family-tier expansion + missing Premium items

    Family-tier feature list filled out (parent analytics, allowance reports, shared cosmetic packs, Cell-wide theme) and the Premium tier picks up the items that were quietly added but not surfaced (voice notes, mentorship pairs, custom challenges, unlimited Cells, deeper history, scrapbook export, reward vouchers).

  • 2026-05-06

    Public roadmap rebuild — BE-driven, with comments

    /roadmap now pulls live feature requests from the BE roadmap API, grouped by status (in-progress / accepted / released / won't do). Each feature gets a /roadmap/[id] detail page with public comments anonymized as Member.

  • 2026-05-04

    Web app CTAs — handoff to web.conkarma.app

    New WebAppCta component (primary / compact / link variants) with UTM attribution. Mounted on the homepage, in the auth shell, on /pricing, and on /roadmap detail pages. Reset password CTA moved into the mobile drawer.

April 2026

  • 2026-04-30

    Mobile nav drawer — full nav parity at <lg

    WAI-ARIA dialog drawer (focus trap, Escape, body scroll lock, createPortal-based backdrop) surfaces every header link plus the four persona pages on tablet and phone. Closes the responsive gap left when the desktop For-You menu was added.

  • 2026-04-29

    Header reshuffle — Pricing / Compare / Help + For-you menu

    Surface the three under-trafficked v2 destinations directly in the header above lg, plus a WAI-ARIA disclosure For-you menu grouping the four (now six) persona pages. Reset password moved off the always-visible nav.

  • 2026-04-28

    Help articles for late-April / early-May feature wave

    Four new help articles: shared cell calendar, Apple Health and Google Fit, notification preferences, login-from-new-location. Each cross-links to /privacy and /security where relevant.

  • 2026-04-27

    Public /security posture page

    Eight-section security posture page covering data residency, encryption, key management, dependency scanning, vulnerability disclosure, sub-processors, breach notification, and a separate "report something" block with the security@ contact.

  • 2026-04-26

    Public /accessibility statement

    Aligned with EU Accessibility Act 2025 requirements. Sections on conformance level (WCAG 2.1 AA target), assistive technology compatibility, current limitations, how to report issues, alternative-format requests, and links to enforcement bodies.

  • 2026-04-25

    Legal sync — privacy policy + addenda

    Privacy policy and California / EEA-UK addenda re-synced from the Hestia Flutter app (single source of truth). Brazil, Quebec, and Australia addenda pages live for direct linking from local-language CTAs.

  • 2026-04-24

    Email-template URL contract migration to Minerva

    BE flipped activation and password-reset email links from api.conkarma.app to conkarma.app (this site). Both /activate and /reset-password/confirm now auto-fire when the email + 6-digit code arrive in the URL.