Skip to content

Releases: flomesh-io/ztm

v1.0.4-rc4

15 Sep 05:14

Choose a tag to compare

Based on the SEC's PQC support requirements released on Sep 3 (https://www.sec.gov/files/cft-written-input-daniel-bruno-corvelo-costa-090325.pdf), we have implemented PQC support in ztm. Starting with this version, ztm supports PQC mode, where the http2 tunnel established between the ztm agent and ztm hub is Quantum Safe. By using ztm, users can quickly make their traditional network applications Quantum Safe. More detailed information can be found here: https://youtu.be/D1XG07B9MW0

We also fixed several issues.

v1.0.0-rc3

04 Sep 12:29

Choose a tag to compare

We bring MCP capabilities into this release, called 'MCP Remote'.

Flomesh MCP Remote is a platform for rapid development of MCP based AI agents, including a zero-trust network framework, local RESTful interfaces, and a chat client. Flomesh MCP Remote brings Zero Trust security and dynamic orchestration to AI agent-tool interaction using the Model Context Protocol (MCP).

Much like Cloudflare Workers and Durable Objects form a programmable edge layer, ZTM acts as the orchestration backbone, handling mTLS-based authentication, routing, observability, and access control across all endpoints. Developers can interact with remote MCP tools via local RESTful APIs on http://localhost:7777/, while agents tunnel encrypted traffic through NAT and firewalls without any special network configuration.

Flomesh MCP Remote includes a chat client that can be used for rapid development of AI agents. The chat client supports:

  • multiple LLM chatbots
  • set LLM context length and memory length
  • configuration of pre-execution tool queries
  • manual parameter adjustment
  • playback of MCP calls

Flomesh MCP Remote key Features:

  • Zero Trust Mesh for MCP Enforces mTLS-based authentication and least-privilege access for all MCP interactions, no VPNs or static IPs required.
  • Distributed Orchestration with ZTM Agents ZTM Agents run on edge, user, mobile, and IoT devices to form a programmable mesh, similar in role to Cloudflare Workers.
  • Seamless Connectivity Across NAT/Firewalls Enables secure access to MCP servers across any network boundary without manual port forwarding or tunneling setup.
  • No SDK Required Connect to remote MCP tools or services without modifying or rebuilding them using any SDK.
  • Developer-Friendly Local API Access tools via RESTful API , ideal for rapid testing, IDE integration, and debugging.
  • Tool Poisoning & Threat Mitigation Built-in semantic validation, runtime monitoring, and strict access policies prevent tampering and misuse.
  • Cross-Platform & Lightweight Runs on Windows, macOS, Linux, iOS, Android, OpenWrt, and embedded Linux, making it ideal for hybrid cloud-edge use cases.
  • Full Auditability & Enterprise Compliance Logs every interaction with cryptographic guarantees to meet audit, security, and regulatory requirements.

Follow this wiki to try it in minutes :

https://github.com/flomesh-io/ztm/wiki/9.-ZTM%E2%80%90MCP%E2%80%90Remote:-Intro-&-Quick-Start

Fix issues:

  • Resolve in remote transmission for the agent gateway.
  • Enhance the stability of MCP transmission.
  • Fix tunnel blockage caused by Pipy2.
  • Add LLM memory length
  • Add Multi Agent Bot Window
  • Add MCP Tool execution confirmation/modification
  • Add MCP Tool historical replay
  • Upgrade the Tauri latest version
  • Improve the switching and status display of mesh selectors
  • Adjust the safe area height for the iPhone client, etc.
  • Add link route with llm messages
  • Adapted to more mcp servers and fixed related issues.
  • Improve mcp tool call recursive mode
  • Extend the expiration time of CA certificate
  • Fix deep-chat layout issue
  • Fix llm route bug
  • Add llm abort button
  • Add llm error message program
  • Fix function call logic issue
  • Fix llm error message display issue
  • Add llm prompt editor

v1.0.3-mcp-remote

22 Aug 01:30

Choose a tag to compare

  • Add llm abort button
  • Add llm error message program
  • Fix function call logic issue

v1.0.2-mcp-remote

06 Aug 13:25

Choose a tag to compare

  • Adapted to more mcp servers and fixed related issues.
  • Improve mcp tool call recursive mode
  • Extend the expiration time of CA certificate
  • Fix deep-chat layout issue
  • Fix llm route bug

v1.0.1-mcp-remote

17 Jul 11:07

Choose a tag to compare

1.Resolve in remote transmission for the agent gateway.

2.Enhance the stability of MCP transmission.

3.Fix tunnel blockage caused by Pipy2.

4.Add LLM memory length

5.Add Multi Agent Bot Window

6.Add MCP Tool execution confirmation/modification

7.Add MCP Tool historical replay

8.Upgrade the Tauri latest version

9.Improve the switching and status display of mesh selectors

10.Adjust the safe area height for the iPhone client, etc.

v1.0.0-mcp-remote

28 Jun 14:42

Choose a tag to compare

Flomesh MCP Remote is a platform for rapid development of MCP based AI agents, including a zero-trust network framework, local RESTful interfaces, and a chat client. Flomesh MCP Remote brings Zero Trust security and dynamic orchestration to AI agent-tool interaction using the Model Context Protocol (MCP).

Much like Cloudflare Workers and Durable Objects form a programmable edge layer, ZTM acts as the orchestration backbone, handling mTLS-based authentication, routing, observability, and access control across all endpoints. Developers can interact with remote MCP tools via local RESTful APIs on http://localhost:7777, while agents tunnel encrypted traffic through NAT and firewalls without any special network configuration.

Flomesh MCP Remote includes a chat client that can be used for rapid development of AI agents. The chat client supports:

  • multiple LLM chatbots
  • set LLM context length and memory length
  • configuration of pre-execution tool queries
  • manual parameter adjustment
  • playback of MCP calls

Flomesh MCP Remote key Features:

  • Zero Trust Mesh for MCP Enforces mTLS-based authentication and least-privilege access for all MCP interactions, no VPNs or static IPs required.
  • Distributed Orchestration with ZTM Agents ZTM Agents run on edge, user, mobile, and IoT devices to form a programmable mesh, similar in role to Cloudflare Workers.
  • Seamless Connectivity Across NAT/Firewalls Enables secure access to MCP servers across any network boundary without manual port forwarding or tunneling setup.
  • No SDK Required Connect to remote MCP tools or services without modifying or rebuilding them using any SDK.
  • Developer-Friendly Local API Access tools via RESTful API , ideal for rapid testing, IDE integration, and debugging.
    Tool Poisoning & Threat Mitigation Built-in semantic validation, runtime monitoring, and strict access policies prevent tampering and misuse.
  • Cross-Platform & Lightweight Runs on Windows, macOS, Linux, iOS, Android, OpenWrt, and embedded Linux, making it ideal for hybrid cloud-edge use cases.
  • Full Auditability & Enterprise Compliance Logs every interaction with cryptographic guarantees to meet audit, security, and regulatory requirements.

Follow this wiki to try it in minutes :

v1.0.0-rc2

28 Mar 08:37

Choose a tag to compare

  • Implement user and user group management
  • add system proxy switch, commercialize proxy rules, achieve user group granularity
  • optimize chat display
  • provide enterprise authentication
  • optimize tunneling function
  • configurable i18n

v1.0.0-rc1

29 Nov 15:39

Choose a tag to compare

This release comes with a builtin secure browser that protects your privacy by using ZTM technology while you surf the Internet. The builtin Chat app has also been largely improved since its release in the last version.

v0.9.0

15 Nov 10:13

Choose a tag to compare

In this release, we extended the functionality of ZTM even further by adding a new builtin Chat app. Users in the same mesh can send messages or files between each other in end-to-end privacy. All data is locally stored in participants' personal devices. There is no concern about information leak from the cloud-hosted servers. Check it out!

v0.3.1

21 Oct 06:46

Choose a tag to compare

In this minor release, we added a new builtin app named "File" as a tool for copying files and directories between arbitrary endpoints. Users can use this File app as a replacement for scp.