Fetching from the wire…
Infra2026-09-13 · source-backed
The release candidate cut September 13 adds Azure Mistral in standard and native-auth variants, Azure Document Intelligence, Reducto legacy and v3, Vertex Mistral and Vertex DeepSeek OCR adapters, and PR #40509 removes the old pipeline instead of deprecating it. Native OCR requests were refactored to route through core. Anyone pinning a LiteLLM proxy for document work needs to check adapter names before upgrading, because the old path is gone in the same release the new one arrives.
Each link below shares sources, entities, or timing with this story.
The September 6 stable release carries PR #38114, which stopped credential-less Vertex passthrough from forwarding every proxy auth header upstream: Authorization, x-litellm-api-key, x-goog-api-key, api-key, x-api-key, Ocp-Apim-Subscription-Key and your configured key header....
Docker-only build, no PyPI package, released September 2. OpenTelemetry v2 spans now emit gen_ai.usage.cache_creation.input_tokens and gen_ai.usage.cache_read.input_tokens alongside the cache cost already reported (release). The notes say directly that anyone computing spend f...
About 37 merged changes, and #39511 plus #39541 fix spend attribution on the Anthropic Messages surface for both regular and bridged streaming rows (GitHub). Before this, reconciling a bill against a client-side message id was guesswork. Three more redact credentials: #39526 f...
Released September 1, leading its notes with cosign verification for ghcr.io/berriai/litellm, recommending verification against the public key at pinned commit 0112e53 because a commit hash is cryptographically immutable, with tag-based verification offered as the weaker optio...
The RC published August 30 adds a complexity_router rule sending client housekeeping calls to the cheapest model tier, and reports prompt caching savings as two numbers, total and gateway-attributed, so you can tell what the proxy saved you from what the provider would have ca...
Google's Agent Development Kit for Python listed litellm>=1.75.5 as an optional dependency. No upper bound. No pin. During the week of March 24, LiteLLM versions 1.82.7 and 1.82.8 were compromised by the TeamPCP group with a three-stage payload: credential harvesting, Kubernet...
MindPattern daily
One email a day at 7 AM. Sources and a take on every story. Unsubscribe anytime.