---
url: 'https://metadrop.net/en/articles/metadrop-february-2025-security-reinforcements-dark-mode-expansion-open-source-innovation'
title: 'Metadrop February 2025: Security reinforcements, dark mode expansion & Open Source innovation'
author:
  - 'Jorge Tutor'
  - 'Ricardo Sanz'
date: '2025-03-18T11:45:11+00:00'
updated: '2026-08-04T11:04:41+00:00'
type: article
summary: 'A roundup of our latest work to help you build better Drupal sites, February, 2025.'
tags:
  - 'Drupal Planet'
  - Drupal
  - 'Open Source'
  - Metadrop
  - 'Monthly update'
published: true
og:
  determiner: Automatic
  site_name: Metadrop
  'image:alt': 'Metadrop February 2025: Security reinforcements, dark mode expansion & Open Source innovation'
  street_address: 'Calle Manuel Luna, 12, 3 Dcha'
  locality: Madrid
  region: Madrid
  postal_code: '28020'
  country_name: España
  email: hola@metadrop.net
  phone_number: '910053180'
schema:
  '@context': 'https://schema.org'
  '@graph':
    -
      '@type': Article
      '@id': 'https://metadrop.net/en/articles/metadrop-february-2025-security-reinforcements-dark-mode-expansion-open-source-innovation#article'
      name: 'Metadrop February 2025: Security reinforcements, dark mode expansion & Open Source innovation'
      headline: 'Metadrop February 2025: Security reinforcements, dark mode expansion & Open Source innovation'
      description: 'A roundup of our latest work to help you build better Drupal sites, February, 2025.'
      about:
        - Drupal
        - 'Open Source'
        - Metadrop
        - 'Monthly update'
      datePublished: '2025-03-18T13:45:11+0100'
      dateModified: '2026-08-04T13:04:41+0200'
      author:
        '@type': Person
        name:
          - 'Jorge Tutor'
          - 'Ricardo Sanz'
      publisher:
        '@type': Organization
        '@id': 'https://metadrop.net/#organization'
      mainEntityOfPage: 'https://metadrop.net/en/articles/metadrop-february-2025-security-reinforcements-dark-mode-expansion-open-source-innovation'
    -
      '@type': Organization
      '@id': 'https://metadrop.net/#organization'
      url: 'https://metadrop.net/'
      name: Metadrop
      sameAs:
        - 'https://www.drupal.org/metadrop'
        - 'https://twitter.com/metadrop'
        - 'https://asociaciondrupal.es/partner/metadrop'
        - 'https://www.linkedin.com/company/metadrop'
      logo:
        '@type': ImageObject
        url: 'https://metadrop.net/themes/custom/mdrop_radix/logo-metadrop-500-500.jpg'
        width: '500'
        height: '500'
    -
      '@type': ItemPage
      '@id': 'https://metadrop.net/en/articles/metadrop-february-2025-security-reinforcements-dark-mode-expansion-open-source-innovation'
      breadcrumb:
        '@type': BreadcrumbList
        itemListElement:
          -
            '@type': ListItem
            position: 1
            name: Home
            item: 'https://metadrop.net/en'
          -
            '@type': ListItem
            position: 2
            name: 'Expert Drupal & Tech Articles'
            item: 'https://metadrop.net/en/articles'
      publisher:
        '@type': Organization
        '@id': 'https://metadrop.net/#organization'
---
 1. [Articles](https://metadrop.net/en/articles)
 
  

# Metadrop February 2025: Security reinforcements, dark mode expansion &amp; Open Source innovation

Tuesday, March 18, 2025

 

 



A roundup of our latest work to help you build better Drupal sites, February, 2025.



   



h

February was a month of significant advancements, with a focus on **security, accessibility, performance, and open-source contributions**. Our clients benefited from the **implementation of dark mode,** **proactive security measures**, **new Drupal modules and features**, and **improvements in AI-driven automation**.

This report highlights key improvements that enhanced **the security, usability, and efficiency of the platforms we support**, as well as the next steps to continue delivering value.

## Major accomplishments

### Dark mode implementation for Syensqo

To enhance usability and accessibility, [**Syensqo**](https://www.syensqo.com/en/ "Syensqo main home page") and its network of sites now support **dark mode**:

- [**CDM USA**](https://cdmusa.syensqo.com/ "CDM USA home page")**:** A platform serving US-based space and defense customers.
- [**Syensqo Fund**](https://fund.syensqo.com/ " Syensqo Fund home page")**:** Supporting education, sustainability, and innovation initiatives.
- [**Proban**](https://proban.syensqo.com/ "PROBAN® home page")**:** Providing cutting-edge fire-resistant textile technology.

This update provides **a more comfortable viewing experience, improved accessibility, and energy efficiency** for users.

**Read more about the benefits of dark mode:**[ ](https://metadrop.net/en/articles/how-dark-mode-enhances-usability-accessibility-and-energy-efficiency)[How dark mode enhances usability, accessibility, and energy efficiency](https://metadrop.net/en/articles/how-dark-mode-enhances-usability-accessibility-and-energy-efficiency "Article about the benefits of the dark mode").

### New features and Open Source contributions

Several new tools and enhancements were introduced to **improve efficiency, performance, and security for our clients' platforms**:

- New [release of Xray Audit](https://www.drupal.org/project/xray_audit/releases/1.5.13 "Xray Audit module's page at Drupal.org") providing **better accessibility reporting** and compliance insights.
- We have released a new module, [URL Purge Aggregator](https://www.drupal.org/project/url_purge_aggregator "URL Purge Aggregator module's page at Drupal.org"), which **allows content updates to be reflected immediately by purging URLs**. This is particularly useful in cases where CDNs or proxy caches do not support cache tag invalidation.
- We joined [CDNetworks Purge](https://www.drupal.org/project/cdnetworks_purge "CDNetworks Purge module's page at Drupal.org") as maintainers and renewed the module with a new release for Drupal 10 and Drupal 11, allowing websites to stay fast and content fresh through optimised CDN caching using CDNetworks.
- [New release of Entity Mesh](https://www.drupal.org/project/entity_mesh/releases) with an **improved user interface** that makes content management more intuitive. New **report export functionality** that simplifies data analysis.
- **Artisan** 2.x: Development is underway for Artisan 2.x, a new version of our Drupal starter theme, experimenting with Tailwind CSS and daisyUI instead of Boostrrap. While Bootstrap is great, we feel we may benefit from the more flexible model of Tailwind CSS to provide a more modern approach to web components.

By continuously improving these tools, our clients benefit from **more reliable, secure, and high-performing digital platforms**. And all improvements are also available for the Drupal Community, that’s the magic of the Free Software/Open Source!

### Security and compliance: strengthening protection for clients

Ensuring the security of the platforms we support is always a priority. In February, a **critical Drupal core vulnerability (**[Drupal SA-CORE-2025-001](https://www.drupal.org/sa-core-2025-001 "Issue report")**)** was identified, which could have exposed websites to **cross-site scripting (XSS) attacks**. This type of vulnerability can allow malicious actors to manipulate content, steal data, or compromise user interactions.

To solve this situations, we apply our security process. In a nutshell, the workflow is this:

- **Time slots available** during Wednesdays and Thursdays to react to security releases published by the Drupal Security Team, prioritising response to potential vulnerabilities.
- **Immediate risk analysis and mitigation strategy** to prevent exposure while the final fix is deployed.
- **Automated security updates** delivered through **CI/CD processes** that include [automated patching](https://github.com/Metadrop/drupal-updater) (thanks to Jenkins), functional testing (using Behat) and visual testing (via BackstopJS), so fixes are quickly ready for deployment.
- **Custom security update plans** tailored to each platform’s needs, ensuring **no service disruptions**.
- **Clear communication with our clients**, keeping them informed about the issue and the steps taken to protect their websites. We believe in transparency and building trust with our clients. This business is complex, and clients do not always have full knowledge, so trust allows for smooth and faster updates without a slow questioning process.

By acting quickly, our clients' platforms remained **secure, stable, and fully operational**, with **no downtime or user impact**. Our **Drupal update automation project** ([Drupal Updater](https://github.com/Metadrop/drupal-updater)) played a key role in streamlining the response, as did our extensive test suites, because we know that everything will work as expected, at least what is tested, which always includes the most important features.

In this way, the **window of exposure to the vulnerabilities is certainly reduced**.

### Accessibility &amp; user experience enhancements

To ensure **better usability and compliance with accessibility standards**, several improvements were made:

- **Keyboard navigation support**, enabling easier interaction for users that rely on the keyboard for navigating the web.
- **Improved ARIA labels and semantic descriptions**, enhancing compatibility with screen readers.
- **Refined image handling**, optimising visual consistency across devices.
- **WCAG 2.1 compliance updates**, ensuring content is **accessible to all users**. It is easy to forget some users, but now it is also easy to comply with accessibility standards.

These updates help create **more inclusive digital experiences** for our clients and their users.

## Technical enhancements and best practices

### Performance and infrastructure optimisation

To help customers manage **faster, more scalable, and more efficient platforms**, several improvements were implemented:

- **Optimised Drupal multisite deployments**. Drupal multisite functionality is great to reduce maintenance costs, but it can come with some complexity that reduces its benefits. Optimising the deploy process reduces its costs again.
- **Enhanced caching and CDN strategies** to reduce backend hits, resulting in lower platform costs, **faster page loads and up-to-date content**.
- **API enhancements**, improving **connectivity with external services like Salesforce**.
- **SEO improvements**, optimising structured data for better visibility in search results.

These improvements ensure that platforms remain **fast, efficient, and easy to manage**.

### Security and compliance enhancements

In addition to resolving the critical Drupal security issue, other security improvements were made:

- **Stronger password policies**, providing better protection against unauthorized access.
- **OAuth authentication updates**, ensuring **more secure user sessions**.
- **Security patches applied across multiple platforms**, maintaining compliance with **industry best practices**.

Proactive security measures like these **reduce risk and enhance trust** for our clients and their users.

### Innovation - AI and Automation Integration

We continue exploring ways to help our clients through **AI-driven automation**:

- **Integration of AI Chat bots** like Voiceflow, read how we did here: [Implementing an AI customer support agent in Drupal using Voiceflow](https://metadrop.net/en/articles/implementing-an-ai-customer-support-agent-in-drupal-using-voiceflow "Articule about integrating Voiceflow into a Drupal site").
- **Testing AI models** to optimize content workflows.
- **Automating repetitive tasks**, reducing effort and increasing efficiency.
- **Exploring AI-powered accessibility enhancements**, making platforms even more user-friendly.
- Testing **different AI agents and tools like Aider, Roo, and new LLVM models** to improve our development workflow.

These innovations make digital platforms **smarter, faster, and more adaptive** to users' needs.

## Final words

February was a month of **meaningful improvements in security, accessibility, and performance**. The deployment of **dark mode, proactive security measures, and new open-source contributions** have all contributed to creating **more secure, high-performing, and accessible digital experiences**.

**If you are a developer**, we hope this article inspires you with ideas that you can incorporate into your daily workflow. **If you're looking for a partner** to help optimise, secure, and enhance your digital platform, [let's talk!](https://metadrop.net/en/contact "Contact form")



[Drupal](https://metadrop.net/en/articles?text=Drupal)

[Open Source](https://metadrop.net/en/articles?text=Open%20Source)

[Metadrop](https://metadrop.net/en/articles?text=Metadrop)

[Monthly update](https://metadrop.net/en/articles?text=Monthly%20update)

 

- Jorge Tutor
    
    CIO
- Ricardo Sanz
    
    CTO
 
## Related projects

- ###  [Syensqo](https://metadrop.net/en/projects/syensqo) 
    
    From one to two: Syensqo's digital challenge or how to split an infrastructure and rebrand in record time.
 
 

[Open Source Commitment](https://metadrop.net/en/about/open-source-commitment " See Open Source Commitment")

Metadrop is committed to open source: 120+ contributed Drupal modules, 500+ community patches, and a philosophy of sharing knowledge freely.

 

 See more