Tracecat
Tracecat hits 1.0 RC with open-source agent presets, agent-case @mentions, and 20+ new security integrations.
A side-by-side editorial comparison of Vikunja and My Hours — release velocity, themes, recent moves, and the top alternatives to consider.
Vikunja crossed the v1.0 finish line and pivoted hard into security hardening.
Vikunja shipped two v1.0 release candidates through late 2025 and early 2026, then jumped to a v2 series whose first widely-tagged point release, v2.2.1, is dominated by security work. The latest release patches multiple SSRF and IDOR vulnerabilities, enforces disabled/locked-account semantics across every auth surface (OIDC, API tokens, CalDAV, LDAP), and adds a shared SSRF-safe HTTP client that webhooks and migrations now route through. User-facing feature work has slowed; the visible energy is in plumbing and audit cleanup.
My Hours launches a Claude MCP connector, making AI-driven time logging a first-class workflow
My Hours is a time tracking platform with a strong invoicing and reporting core, now shipping in two distinct directions: an AI integration layer (Claude MCP connector, Sep 3) and expanded compliance-friendly tracking features (break tracking with payroll calculations, attendance reports, budget alerts). The September releases represent the most capability-dense period in the window, following a patch-heavy summer. The MCP connector runs on Keboola's Cloudflare infrastructure — zero install, OAuth-only.
Vikunja shipped two v1.0 release candidates through late 2025 and early 2026, then jumped to a v2 series whose first widely-tagged point release, v2.2.1, is dominated by security work. The latest release patches multiple SSRF and IDOR vulnerabilities, enforces disabled/locked-account semantics across every auth surface (OIDC, API tokens, CalDAV, LDAP), and adds a shared SSRF-safe HTTP client that webhooks and migrations now route through. User-facing feature work has slowed; the visible energy is in plumbing and audit cleanup.
The arc moves from feature-completion (S3 storage, drag-and-drop project moves, hover previews in late 2025) toward platform credibility — closing security gaps a self-hosted task tool needs to clear before serious team adoption. The rapid version-number jump from v1.0.0-rc4 to v2.2.1 in two months suggests v1.0 shipped and the team tagged a v2 line aimed at addressing accumulated authz debt. Expect the next several releases to keep the security-first posture rather than return to a feature push.
The next release will likely continue closing remaining authz edges (more IDOR audits, additional credential-stripping in API responses) and bundle a translations and dependency sweep. A user-facing feature push probably waits until the security work plateaus.
My Hours is a time tracking platform with a strong invoicing and reporting core, now shipping in two distinct directions: an AI integration layer (Claude MCP connector, Sep 3) and expanded compliance-friendly tracking features (break tracking with payroll calculations, attendance reports, budget alerts). The September releases represent the most capability-dense period in the window, following a patch-heavy summer. The MCP connector runs on Keboola's Cloudflare infrastructure — zero install, OAuth-only.
The Claude MCP connector signals a clear strategic bet: My Hours wants to be the time tracking tool you interact with through AI conversation rather than through a timer UI. The infrastructure choice (remote server on Cloudflare, not a local install) removes adoption friction, making it viable for teams already using Claude. Parallel development on attendance reports and break tracking points toward a compliance and HR use case — overtime tracking, payroll-ready break records — that broadens My Hours beyond professional services billing.
The MCP integration will expand to cover write operations beyond time logging — budget tracking, invoice creation, and report export are the most obvious additions. The attendance report launched in August suggests a near-term push toward HR and payroll integrations, potentially positioning My Hours against more compliance-focused tools like Harvest or Timely for regulated industries.
Other PM products tracked by Sparkpulse, ranked by recent ship velocity. Each card links to a full editorial trajectory and lets you pivot into a head-to-head comparison with either Vikunja or My Hours.
Tracecat hits 1.0 RC with open-source agent presets, agent-case @mentions, and 20+ new security integrations.
NocoBase adds an AI knowledge base retrieval API, connecting no-code workflows to external knowledge sources.
RentRedi embeds AI into its maintenance workflow end-to-end, handling tenant intake and drafting landlord replies.
Camunda 8.10 alpha cycles through broad platform bug fixes while 8.7 gets routine security patches
Asana embeds AI into Slack threads and closes the rich-text gap with Notion
Rize pivots from solo time tracker to agency operations platform with invoicing, profitability reporting, and a ChatGPT integration.
See all Vikunja alternatives → · See all My Hours alternatives →
Latest ship moves from both products, interleaved chronologically. ⚡ = editorial spark.
They serve adjacent needs but don't currently overlap on shipped themes. My Hours is currently shipping more aggressively (velocity 6.3 vs 0.0), with 1 editorial sparks in the last 30 days against 0. See the at-a-glance table above for a side-by-side breakdown of velocity, recent sparks, and editorial themes.
Sparkpulse doesn't pick a winner — we score release velocity, not feature parity. My Hours is currently shipping more aggressively (velocity 6.3 vs 0.0), with 1 editorial sparks in the last 30 days against 0. For your specific use case, the alternatives sections above list other PM products to evaluate alongside.
Top Vikunja alternatives in PM are ranked by recent ship velocity. Browse the "Vikunja alternatives" section above for the current picks, or visit /alternatives/vikunja for the full list with editorial commentary on each.
Top My Hours alternatives in PM are ranked by recent ship velocity. Browse the "My Hours alternatives" section above for the current picks, or visit /alternatives/myhours for the full list with editorial commentary on each.