Live Helper Chat
Communication & EmailAn open‑source live chat application that adds free, self‑hosted customer support to any website.
Features
- Provides a web widget for real‑time visitor chat on your site
- Self‑hosted deployment options (Docker, plain PHP/Composer)
- Extensible via REST API and numerous integrations (Telegram, Discord, WhatsApp, etc.)
- Scalable to handle >10 000 concurrent chats in production
Recent releases
View all 22 releases →- Chat operation permissions now require explicit read/write access checks; additional permission hardening applied across related flows.
- CSP parser integration with policy exposure hardening
- Widget-theme option to disable voice messages
- DeepL model and formality options in translation workflow
Full changelog
-
Notable changes since 4.84v
- Security and access control: tightened chat operation permissions by requiring proper read/write access checks; additional permission hardening was applied across related flows.
- CSP and policy handling: completed CSP parser integration and follow-up fixes, including policy exposure hardening and parser/library alignment.
- Voice messaging and widget UX: improved voice-message flow and UX, updated voice app behavior, kept cursor focus on desktop, and added a widget-theme option to disable voice messages.
- Translation workflow: improved automatic translation reliability, added DeepL model/formality options, enhanced metadata/error handling, and refined start/stop and old-message translation flows.
- Analytics and timing metrics: improved chat duration/response-time calculations, participant timing accounting, and operator duration output in reports.
- REST API and diagnostics: added optional custom REST API messages, improved exception visibility/traceback details, and enabled direct log viewing from back office.
- Invitations and online-hours logic: enhanced invitation alias/profile handling and improved overlapping online-hours period calculations.
- UI/translations/dependencies: updated translations, refreshed JS dependencies (including html-react-parser migration), and applied multiple package/security updates.
- Misc fixes: delivered issue-specific fixes and regressions cleanup (including #2378, #2379, #2382), plus release workflow updates.
-
Summary
- This release focuses on security hardening, CSP maturity, and operator productivity, while also improving voice messaging UX and translation automation quality.
- It also improves chat/mail timing metrics and diagnostics, with additional stability updates across UI, dependencies, and release automation.
No new DB migration script required for this release.
Full Changelog: https://github.com/LiveHelperChat/livehelperchat/compare/4.84v...4.85v
- Execute `doc/update_db/update_351.sql` as part of the upgrade procedure
- New schema updates and tables added; ensure database migration runs successfully
- Enhanced uploaded file validation to prevent unsafe file execution (file preview upload flow)
- Expanded widget theme customization options including color controls, applied to offline form
- Added assignment notification preferences (assigned pending chats vs all pending chats) and quick auto‑assignment action
- Strengthened uploaded file verification with expanded MIME type handling
Full changelog
-
Notable changes since 4.83v
- REST API and bot workflow: improved REST API trigger execution and request body handling with attachment support; added skipped-body debug preview; enhanced chat locking behavior for streaming and chunked responses while preserving typing indicators.
- Widget and UI: expanded widget theme customization options (including color controls), applied theme colors to offline form, improved message delivery indicator styling, fixed height adjustments and zoom/icon interaction issues, and added support for custom nick from admin themes.
- Notifications and operator workflow: added assignment notification preferences (assigned pending chats vs all pending chats), quick action for auto-assignment, and persistent disabling of mobile notifications.
- Chat filters and analytics: added participant filters to chat search, improved filters and restored pagination behavior, added participant-aware export enhancements, and introduced average chat duration by agent/participant.
- File validation and security hardening: expanded MIME type handling for common file types and strengthened uploaded file verification (including file preview upload flow).
- Translation and UX polish: improved translation error handling and transaction flow, added operator notice for active chat translation state, and updated translations across modules.
- Core/codebase maintenance: added new tables and schema updates, improved error/log reporting and timing diagnostics (render and DB connection timing), and modernized PHP code style in core files.
-
Summary
- This release focuses on reliability and operator experience: stronger REST API/bot handling, better widget customization and messaging UX, richer notification controls, and improved chat search/export analytics.
- It also includes security-oriented file validation improvements, translation workflow refinements, and core maintenance updates for better observability and long-term stability.
execute doc/update_db/update_351.sql for update
What's Changed
- Msg fix by @remdex in https://github.com/LiveHelperChat/livehelperchat/pull/2370
- refactor: modernize syntax and simplify code by @NullSablex in https://github.com/LiveHelperChat/livehelperchat/pull/2371
- 4.84v by @remdex in https://github.com/LiveHelperChat/livehelperchat/pull/2374
Full Changelog: https://github.com/LiveHelperChat/livehelperchat/compare/4.83v...4.84v
- Run `doc/update_db/update_350.sql` to apply database migration for this release
- Chat list sorting options for highest/lowest message count with validation warning for date range >31 days
- Webhook debug mode in `processEvent` and new validation conditions `notempty` and `in_list`
- Multi-select dropdowns now include "Select all" and "Unselect all" buttons
Full changelog
-
Notable changes since 4.82v
- Chat list sorting: added sort options for highest and lowest message count in chat lists; a validation warning is shown when sorting by message count without a date range of 31 days or less.
- Webhooks: debug mode support added to
processEventin both chat and mail conversation continuous webhook classes; new validation conditionsnotemptyandin_list; improved error handling and logging; webhook form updated with chat ID testing and improved button styling; test pattern module enhanced with webhook ID validation. - Dropdown: "Select all" and "Unselect all" buttons added to multi-select dropdowns across the back-office; dropdown plugin and render helper updated accordingly.
- Subject filter: subject filter conditions added to the chat list search panel and mail conversation search panel; department user dep logic enhanced.
- Widget: bumped to version 272; improved
screenAttributesUpdateheight/width calculations for better responsiveness across screen sizes; wrapper now passes its version to the API; fixed proper termination in wrapper source. - Canned messages: fixed auto-uppercase breaking text input in the new rich-text editor (LHCEditor).
- REST API: fixed authentication validator regression.
- Chat core: added support for dashes in chat handling logic.
- Templates: minor fixes in chat lists template and survey fill-widget template.
-
Summary
- This release improves chat list usability with message count sorting, strengthens webhook debugging with debug mode and new validation conditions, and enhances multi-select dropdowns with select-all/unselect-all controls.
- Widget responsiveness and wrapper version reporting are improved; canned message auto-uppercase and REST API auth issues are resolved.
execute doc/update_db/update_350.sql for update
Full Changelog: https://github.com/LiveHelperChat/livehelperchat/compare/4.82v...4.83v
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.