Repository navigation
v3.6.0
[3.6.0] - 2026-06-07
release
- 3.6.0 - by @bruceblink (48e051d)
♻️ Refactors
- Add spring cache abstraction - by @bruceblink (2421029)
🐞 Bug Fixes
- Normalize user gender dictionary values - by @bruceblink (9f08d57)
- Update authentication mode and disable Keylo for local development - by @bruceblink (6dd734b)
- Use unicode collation for mysql - by @bruceblink (d1a7f25)
- Remove static service wiring - by @bruceblink (c3d766e)
- Use utf-8 in file service tests - by @bruceblink (a480b0b)
- Remove device list cache wiring - by @bruceblink (f419594)
- Protect tree children mutation - by @bruceblink (e5babf8)
- Tighten keylo token validation - by @bruceblink (4f72324)
- Use unicode collation for mysql - by @bruceblink (115c6ca)
- Align login session validation - by @bruceblink (8f18424)
- Correct logic for refresh session validation - by @bruceblink (5d6df07)
- Clear stale login session markers - by @bruceblink (0e786d6)
- Handle broken online user sessions - by @bruceblink (8fe46ac)
- Consolidate session takeover logout - by @bruceblink (15c7071)
- Allow confirmed session takeover - by @bruceblink (0ad7ac4)
- Align login session ttl with token expiry - by @bruceblink (17c8aca)
- Release account login marker on logout - by @bruceblink (c0f9d39)
- Prevent concurrent account logins - by @bruceblink (39e7dd4)
- Sync keylo password resets - by @bruceblink (abc9b3b)
- Relax production auth config validation - by @bruceblink (eca7493)
- Route swagger requests through api proxy - by @bruceblink (fb8013c)
- Parse client operation log time - by @bruceblink (f501042)
- Enforce encrypted password secrets - by @bruceblink (2a92a42)
📝 Documentation
- Align token session semantics - by @bruceblink (5d97781)
- Align refresh token implementation notes - by @bruceblink (b44f7b4)
- Clarify refresh token session concepts - by @bruceblink (40a55dc)
- Add refresh token session design - by @bruceblink (faab54b)
- Update single account session expiry design - by @bruceblink (cda915c)
- Document single account login policy - by @bruceblink (c9c53d0)
- Document redis acl info permission - by @bruceblink (ca43960)
- Clarify auth production configuration - by @bruceblink (f8d5ce3)
- Remove external swagger links - by @bruceblink (00b5633)
- Document encrypted secret workflow - by @bruceblink (b263d6e)
- Document encrypted secret workflow - by @bruceblink (d3ba25b)
🚀 Features
- Add 'info' permission to Redis ACL in deployment command - by @bruceblink (ee58b4d)
- Cache dictionary data map - by @bruceblink (48bff62)
- Migrate dictionaries to database - by @bruceblink (52afd71)
- Add scheduled job management backend - by @bruceblink (e6258d1)
- Add refresh token sessions - by @bruceblink (306f4b5)
- Update keystoneApi method to accept KeystoneConfig for dynamic versioning - by @bruceblink (d4ad53b)
- Add client operation log endpoint - by @bruceblink (70e9de7)
- Enhance Swagger access control based on environment profiles and add corresponding tests - by @bruceblink (d48b90d)
- Add unified secret generation tool - by @bruceblink (37b6186)
- Support encrypted database and redis secrets - by @bruceblink (957d359)
- Allow public access to Swagger UI and API docs - by @bruceblink (e914e36)
- Enable Swagger UI and API docs in development environment - by @bruceblink (f722f02)
- Add unified secret generation tool - by @bruceblink (b720076)
- Support encrypted database and redis secrets - by @bruceblink (d9561cf)