Skip to content

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Nov 25, 2022

Bumps guardian from 2.0.0 to 2.3.1.

Release notes

Sourced from guardian's releases.

v2.3.1

What's Changed

New Contributors

Full Changelog: ueberauth/guardian@v2.3.0...v2.3.1

v2.3.0

What's Changed

New Contributors

Full Changelog: ueberauth/guardian@v2.2.4...v2.3.0

v2.2.4

What's Changed

New Contributors

Full Changelog: ueberauth/guardian@v2.2.3...v2.2.4

v2.2.3

What's Changed

Full Changelog: ueberauth/guardian@v2.2.2...v2.2.3

v2.2.2

What's Changed

New Contributors

... (truncated)

Changelog

Sourced from guardian's changelog.

v2.3.1

  • Change compile time loading of configuration to only load permissions allowing the app to change things like ttl or secret key at runtime

v2.3.0

Enhancement

  • Check float values of time in time_within_drift?/2.

v2.2.3

Enhancement

  • Ensure that badly-formatted tokens don't raise an exception when attempting to decode them.

v2.2.2

Enhancement

  • Guardian.Plug.EnsureAuthenticated will now accept atom keys in the map passed to the claims option.

v2.2.1

Enhancement

  • Guardian.Plug.VerifyHeader and Guardian.Plug.VerifySession :refresh_from_cookie option will try refreshing when access token not found, invalid or expired if cookie present #683

v2.2.0

Enhancement

  • Add :scheme option to Guardian.Plug.VerifyHeader #680
  • Add :refresh_from_cookie option to Guardian.Plug.VerifyHeader and Guardian.Plug.VerifySession to replace Guardian.Plug.VerifyCookie plug #675

Deprecation

  • :realm option configuration of Guardian.Plug.VerifyHeader is deprecated please use :scheme instead.
  • Guardian.Plug.VerifyCookie is deprecated in favor of :refresh_from_cookie option in Guardian.Plug.VerifyHeader and Guardian.Plug.VerifySession

v2.1.2

... (truncated)

Commits
  • d8c87e3 Users should be able to change most config values at runtime (#715)
  • f6459d0 doc: Clarify session storage behavior on sign_in in README (#714)
  • d467955 Use erlef/setup-beam and prettify yaml file (#705)
  • cdfdd3a Fix deprecation warnings based on 1.14-dev. (#702)
  • 2fd0573 Fix typos (#703)
  • 3f178c4 Check float values of time in time_within_drift?/2 (#700)
  • e369d58 chore: fix readme badge (#698)
  • 09690cd Ensure that badly-formatted tokens don't raise an exception (#697)
  • 49702bc Permit atom keys when verifying claims with EnsureAuthenticated (#696)
  • 882c90b Minor docs improvements, mostly around Verify* plugs (#692)
  • Additional commits viewable in compare view

Dependabot compatibility score

You can trigger a rebase of this PR by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
> **Note** > Automatic rebases have been disabled on this pull request as it has been open for over 30 days.

@dependabot dependabot bot added the dependencies Pull requests that update a dependency file label Nov 25, 2022
@Betree
Copy link
Member

Betree commented Jan 2, 2023

@dependabot rebase

@dependabot dependabot bot force-pushed the dependabot/hex/guardian-2.3.1 branch 2 times, most recently from 668def6 to 1c2fe86 Compare January 3, 2023 21:47
@Betree
Copy link
Member

Betree commented May 3, 2023

@dependabot rebase

Bumps [guardian](https://github.com/ueberauth/guardian) from 2.0.0 to 2.3.1.
- [Release notes](https://github.com/ueberauth/guardian/releases)
- [Changelog](https://github.com/ueberauth/guardian/blob/master/CHANGELOG.md)
- [Commits](ueberauth/guardian@v2.0.0...v2.3.1)

---
updated-dependencies:
- dependency-name: guardian
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot force-pushed the dependabot/hex/guardian-2.3.1 branch from 1c2fe86 to 479ec94 Compare May 3, 2023 13:08
@Betree
Copy link
Member

Betree commented May 3, 2023

@dependabot rebase

@dependabot @github
Copy link
Contributor Author

dependabot bot commented on behalf of github May 3, 2023

Looks like this PR is already up-to-date with staging! If you'd still like to recreate it from scratch, overwriting any edits, you can request @dependabot recreate.

@Betree Betree force-pushed the staging branch 6 times, most recently from 8edadfd to a2007b8 Compare May 3, 2023 17:29
@dependabot @github
Copy link
Contributor Author

dependabot bot commented on behalf of github Sep 13, 2023

Superseded by #429.

@dependabot dependabot bot closed this Sep 13, 2023
@dependabot dependabot bot deleted the dependabot/hex/guardian-2.3.1 branch September 13, 2023 05:52
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants