Markdown export (security)
Text that merely looked like a tag — someone typing <img src=x onerror=...>as words — was exported to Markdown unescaped, so anything rendering that Markdown as HTML turned it into a real element. Tag-like text is now escaped on export.
Two new options
styleWithCSS (default false): whether Bold, Italic and Underline saved tags or <span style> used to depend on whether the plugin bundle had loaded yet. The default now always writes <b>, <i> and <u>.
pasteStripThemeStyles (default true): text copied and pasted inside the editor carried the theme’s margin, font size and colour into the saved content. Styles that only repeat the theme are now dropped; styles the author set are kept. See configuration reference.
Editing fixes
Pasting a heading no longer duplicates its id. Keyboard shortcuts use the physical key, so they work under Caps Lock and on Cyrillic, Greek and similar layouts. Paste is its own undo step. Select All, Delete, then typing makes a paragraph instead of a <div>, and deleting a whole bold word no longer leaves an empty <b></b> that swallows the next space.
Packaging
structured-content-bridge.js now ships in every download, and each plugin also ships as its own .min.js.