BTCPay Docker users must opt into Tor at their next update to keep onion access
Summary
BTCPay Server 2.4.5 no longer includes Tor by default in its standard Docker deployment. Operators who want to retain onion access must add the optional `opt-add-tor` fragment during their next setup or update; existing Tor data remains in its volumes, but access requires Tor to be enabled and running. The release also blocks outbound requests to private-network destinations by default for Lightning connections, LNURL requests, invoice notifications and webhooks, as an SSRF safeguard. Operators relying on private services must configure exceptions and test the affected integrations.
