# Octez.connect v4.8.6 Security hardening, Protocol U support and bug fixes

**URL:** https://forum.tezosagora.org/t/octez-connect-v4-8-6-security-hardening-protocol-u-support-and-bug-fixes/7097
**Category:** Project Updates
**Created:** [June 12, 2026, 10:04pm UTC](https://forum.tezosagora.org/t/octez-connect-v4-8-6-security-hardening-protocol-u-support-and-bug-fixes/7097 "2026-06-12T22:04:47Z")
**Posts on this page:** 6
**Page:** 1

<div class="post-metadata">

### Author: ![ajinkyaraj-23](https://forum.tezosagora.org/user_avatar/forum.tezosagora.org/ajinkyaraj-23/32/2370_2.png) [@ajinkyaraj-23](https://forum.tezosagora.org/u/ajinkyaraj-23)
#### Post date: [June 12, 2026, 10:04pm UTC](https://forum.tezosagora.org/t/octez-connect-v4-8-6-security-hardening-protocol-u-support-and-bug-fixes/7097/1 "2026-06-12T22:04:47Z")

</div>

> Update (22 Jun 2026) — Octez.connect 4.8.6 is released, it fixes an important iOS bug in 4.8.5 which made connecting to Kukai iOS app impossible.

🎉 Octez Connect v4.8.6 — Release and Test Validation Report

We’re excited to share that Octez Connect v4.8.6 is released with few bug fixes, protocol U support. See [changelog](https://github.com/trilitech/octez.connect/releases/tag/v4.8.5) for details.  
This version been thoroughly tested with both manual and automated testing is ready for community use. Below is a detailed breakdown of the verification work, so you can build with confidence.

Validation Methodology

To make sure 4.8.5 is drop-in safe for the Taquito ecosystem, we ran a layered test suite covering both the SDK itself and the most common dApp + wallet combinations on Tezos.

1. Taquito integration branch  
We used Taquito [PR #3424](https://github.com/ecadlabs/taquito/pull/3424), which removes all internal Beacon patches and routes @taquitotaquitotaquitotaquitotaquitotaquitotaquitotaquitotaquitotaquitotaquitotaquitotaquitotaquitota@tezos-xuitotaquito/beacon-w@tezos-xllet t@tezos-xtezos-xrough @tezos-x/octez.connect@4.8.5. Every  
test below was run against locally built packages from that branch.

2. Manual end-to-end wallet matrix  
Following a simple test plan with following two wallets and a sample dapp:

- Temple wallet on Chrome — full operation matrix
- Kukai wallet on Firefox — connect / transfer / sign smoke set + cross-browser parity

1. Real-world dApp regression using taquito sample dapp (Taquito playground)  
Cloned the public Taquito Test dApp (Vue), repointed package.json to the local Taquito PR branch build, and ran the full automated suite: npm run  
test.

Results@taquito

* * *

✅ Phase A — Automated checks

- @taquito/beacon-wallet unit suite (29 tests): PASS
- Browser-import smoke — Chromium: PASS
- Browser-import smoke — Firefox: PASS

✅ Phase C — Wallet operation matrix

Legend: Temple/Chrome · Kukai/Firefox

- TC-01 Connect / permissions — ✅ · ✅
- TC-02 Active account — ✅ · ✅
- TC-03 Reveal (first op on fresh account) — ✅ · ✅
- TC-04 Transfer — ✅ · ✅
- TC-05 Sign payload — ✅ · ✅
- TC-06 Origination — ✅ · ✅
- TC-07 Contract call (counter increment) — ✅ · ✅
- TC-08 Batch (2 transfers, one approval) — ✅ · ✅
- TC-09 Delegation (set baker) — ✅ · ✅
- TC-10 Disconnect + reload — ✅ · ✅

✅ Phase D — Cross-browser + persistence

- TC-11 Kukai on Firefox + dApp on Chrome (TC-01/04/06/07) — ✅
- TC-12 Session persistence across page reload — ✅
- TC-13 Network-mismatch handling — ✅

✅ Taquito Test dApp (Vue) regression suite

- npm run test against the PR #3424 build → 46 / 51 automated tests passing 🎯
  - sapling tests needed a config change in vite.config.js to allow packages from local taquito branch. after which the tests passed
  - staking and delegating tests passed after manually connecting the dapp to wallet. automated tests were creating a self delegated wallet.
  - All the tests were run manually from Taquito playground and they passed (chrome, temple wallet)

---

<div class="post-metadata">

### Author: ![jevonearth](https://forum.tezosagora.org/user_avatar/forum.tezosagora.org/jevonearth/32/144_2.png) [@jevonearth](https://forum.tezosagora.org/u/jevonearth)
#### Post date: [June 16, 2026, 1:37pm UTC](https://forum.tezosagora.org/t/octez-connect-v4-8-6-security-hardening-protocol-u-support-and-bug-fixes/7097/2 "2026-06-16T13:37:46Z")

</div>

Did you test Kukai and Temple mobile?  
What about Kukai Web on Desktop and Mobile browsers?  
And where’s Safari in the test matrix?

---

<div class="post-metadata">

### Author: ![ajinkyaraj-23](https://forum.tezosagora.org/user_avatar/forum.tezosagora.org/ajinkyaraj-23/32/2370_2.png) [@ajinkyaraj-23](https://forum.tezosagora.org/u/ajinkyaraj-23)
#### Post date: [June 18, 2026, 2:59pm UTC](https://forum.tezosagora.org/t/octez-connect-v4-8-6-security-hardening-protocol-u-support-and-bug-fixes/7097/3 "2026-06-18T14:59:20Z")

</div>

thanks for pointing it out. Yes, we tested following matrix in addition

a. Safari browser: Dapp on safari and  
A. Kukai on safari browser  
B. Temple safari extension

b. mobile browser: Dapp on mobile browser  
A. Kukai on mobile browser (Chrome)  
B. Temple android App

All the manual tests in the test-dapp-vue were tested against these combinations (except bridge). All of them passed except following on the kukai (as kukai does not support these operations)

1. increase\_paid\_storage
2. register\_global\_constant
3. Fail loop (wallet throws an error saying invalid payload)  
Following shadownet addresses were used in testing  
[Address 1](https://shadownet.tzkt.io/tz2QHYa4FpbfKU2ZZ8CWmZ7HuYAAV9y8H2wg)  
[Address 2](https://shadownet.tzkt.io/tz1PjF8UN27jUxc4kuanMDpcnx2XZuGdd6Wm)  
[Address 3](https://shadownet.tzkt.io/tz1dJFS9XQQ5FV9hVyh2FWjr5SwB8xxamshb)

We could not test from Kukai iOS app on shadownet because we were unable to connect to the IOS app, either from our dapp. It gave one error " the network “Shadownet” does not match" I believe its the test network chain id mismatch. We are in touch with kukai regarding the same.

---

<div class="post-metadata">

### Author: ![jevonearth](https://forum.tezosagora.org/user_avatar/forum.tezosagora.org/jevonearth/32/144_2.png) [@jevonearth](https://forum.tezosagora.org/u/jevonearth)
#### Post date: [June 18, 2026, 5:39pm UTC](https://forum.tezosagora.org/t/octez-connect-v4-8-6-security-hardening-protocol-u-support-and-bug-fixes/7097/4 "2026-06-18T17:39:05Z")

</div>

As discussed on the proto-ecosystem call this morning, this version of octez.connect doesn’t work with Kukai iOS because of the walletconnect version incompatibility. I understand you need to do another release of octez.connect to resolve that.

I will postpone the switch of Taquito to use octez.connect until after I do the U protocol support release of Taquito. I don’t want to ship them at the same time, as what we have in Taquito ( [GitHub - ecadlabs/beacon-sdk-taquito-patches: Taquito's patched fork of Beacon SDK. Tracks upstream with bug fixes needed for @taquito/beacon-wallet releases. · GitHub](https://github.com/ecadlabs/beacon-sdk-taquito-patches) ) is stable.

Cheers,

-Jev

---

<div class="post-metadata">

### Author: ![v32](https://forum.tezosagora.org/user_avatar/forum.tezosagora.org/v32/32/2416_2.png) [@v32](https://forum.tezosagora.org/u/v32)
#### Post date: [June 19, 2026, 2:41pm UTC](https://forum.tezosagora.org/t/octez-connect-v4-8-6-security-hardening-protocol-u-support-and-bug-fixes/7097/5 "2026-06-19T14:41:50Z")

</div>

Temple has a safari extension?

Ledger + Kuaki iOS has been a special kind of broken for a while now. Please test that and bring back clear signing.

---

<div class="post-metadata">

### Author: ![ajinkyaraj-23](https://forum.tezosagora.org/user_avatar/forum.tezosagora.org/ajinkyaraj-23/32/2370_2.png) [@ajinkyaraj-23](https://forum.tezosagora.org/u/ajinkyaraj-23)
#### Post date: [June 22, 2026, 11:47am UTC](https://forum.tezosagora.org/t/octez-connect-v4-8-6-security-hardening-protocol-u-support-and-bug-fixes/7097/6 "2026-06-22T11:47:48Z")

</div>

Hi @jevonearth ,  
We have released a bug-fix release v4.8.6 which fixes this Kukai iOS compatibility issue. We have also verified that the fix does not have regression on above tests. I have updated the taquito PR with new version of octez.connect.
