Zoho Sign
Zoho Sign adds the EU's highest signature tier, one week after wiring itself to agents.
A side-by-side editorial comparison of HedgeDoc and Read the Docs — release velocity, themes, recent moves, and the top alternatives to consider.
HedgeDoc 1.x releases are now mostly advisories — security in, features rarely.
The 1.x line ships on a roughly six-to-eight-week rhythm, and almost every release leads with security fixes: HTML injection through an email localpart, YAML frontmatter denial-of-service, CSRF in the Gist export, a rate-limit bypass via the CF-Connecting-IP header, SVG upload script execution. Around that, the recent additions are operator controls — an external-link warning page with a whitelist, configurable login and signup rate limits, an option to restrict uploads to registered users or disable them entirely.
Read the Docs is rebuilding its build farm around uv and isolated builders, one week at a time.
Weekly date-tagged releases, almost entirely build infrastructure. The visible work is a migration to uv-managed environments and isolated, ephemeral builders, shipped in small increments between routine dependency bumps. The two most recent releases are the quietest of the run: plumbing for uv and build status in one, and a video extension bump, a nullable-field step toward dropping has_valid_clone, and Python 3.14 for the pip-tools workflow in the other.
The 1.x line ships on a roughly six-to-eight-week rhythm, and almost every release leads with security fixes: HTML injection through an email localpart, YAML frontmatter denial-of-service, CSRF in the Gist export, a rate-limit bypass via the CF-Connecting-IP header, SVG upload script execution. Around that, the recent additions are operator controls — an external-link warning page with a whitelist, configurable login and signup rate limits, an option to restrict uploads to registered users or disable them entirely.
This reads as a mature collaborative editor in hardening mode. New settings appear where an administrator needed a lever, not where a user asked for a feature, and the one substantial correctness fix in the window — data loss when five or more people edited a document at once — was a repair to the existing operational-transform client rather than new ground. Node 24 support and the removal of dead config options point the same direction: keeping a working product current.
Expect the next 1.x release to follow the same shape — one or more advisories plus a small configuration option — since every release in this window has done so.
Weekly date-tagged releases, almost entirely build infrastructure. The visible work is a migration to uv-managed environments and isolated, ephemeral builders, shipped in small increments between routine dependency bumps. The two most recent releases are the quietest of the run: plumbing for uv and build status in one, and a video extension bump, a nullable-field step toward dropping has_valid_clone, and Python 3.14 for the pip-tools workflow in the other.
The isolated builder is the arc worth tracking — private repository support, an ephemeral builder script, and removal of the old scale-in protection path all point at builds that run in disposable environments. Alongside it runs a quieter cleanup pattern: fields are made nullable before removal, feature flags are deleted once the code behind them lands, and Python versions are pushed forward in the tooling before the runtime. User-facing change is rare and arrives as a side effect, as when July's release moved images to Ubuntu 26.04 and Python 3.14.
Expect the isolated builder to become the default path and further uv environment fixes; the has_valid_clone column being made nullable signals its removal in a following release. Feature work should stay secondary until that migration finishes.
Other Collab products tracked by Sparkpulse, ranked by recent ship velocity. Each card links to a full editorial trajectory and lets you pivot into a head-to-head comparison with either HedgeDoc or Read the Docs.
Zoho Sign adds the EU's highest signature tier, one week after wiring itself to agents.
CommaFeed is patching its way through the attack surface a self-hosted reader inherits
SiYuan stabilises 3.8.1 after a seven-build beta run, all of it widening the agent surface it opened in 3.8.0
Hive ships in batches, and this one is all planning accuracy and admin control.
Teable ships daily, and the work has moved from grid features to platform governance.
Simpplr publishes the research that names the gap, then ships the product that closes it.
See all HedgeDoc alternatives → · See all Read the Docs alternatives →
Latest ship moves from both products, interleaved chronologically. ⚡ = editorial spark.
They serve adjacent needs but don't currently overlap on shipped themes. Read the Docs is currently shipping more aggressively (velocity 5.0 vs 2.5), with 0 editorial sparks in the last 30 days against 0. See the at-a-glance table above for a side-by-side breakdown of velocity, recent sparks, and editorial themes.
Sparkpulse doesn't pick a winner — we score release velocity, not feature parity. Read the Docs is currently shipping more aggressively (velocity 5.0 vs 2.5), with 0 editorial sparks in the last 30 days against 0. For your specific use case, the alternatives sections above list other Collab products to evaluate alongside.
Top HedgeDoc alternatives in Collab are ranked by recent ship velocity. Browse the "HedgeDoc alternatives" section above for the current picks, or visit /alternatives/hedgedoc for the full list with editorial commentary on each.
Top Read the Docs alternatives in Collab are ranked by recent ship velocity. Browse the "Read the Docs alternatives" section above for the current picks, or visit /alternatives/read-the-docs for the full list with editorial commentary on each.