- add pre-created user support in the admin UI and claim those accounts automatically on first OIDC login
- clean up stale pinned nodes, proxies, and containers when resources are deleted or missing
- run Docker container console sessions as root by passing exec user through Gateway and the docker daemon
- fix inherited scoped-permission rendering in the scope picker for node-scoped and other resource-scoped permissions
- improve Docker tables with start-side truncation and wider badge columns, and refresh container detail immediately after settings and environment updates