Skip to content

Releases: divmora/license-go

v1.4.0

Choose a tag to compare

@github-actions github-actions released this 28 Sep 18:06
ca12233

1.4.0 (2026-09-28)

Features

  • scope: support resource quotas and allowed resource patterns in claims (f42be7d)

v1.3.1

Choose a tag to compare

@github-actions github-actions released this 22 Sep 11:23
cc29f20

1.3.1 (2026-09-22)

Bug Fixes

  • crl: normalize HTTP ETags in CRLSyncer conditional caching (e3760b8)

v1.3.0

Choose a tag to compare

@github-actions github-actions released this 22 Sep 09:49
0b12cec

1.3.0 (2026-09-19)

Features

  • crl: add dynamic CRL synchronization, caching, and claims distribution point (b4a1b04)

v1.2.0

Choose a tag to compare

@github-actions github-actions released this 19 Sep 10:02
4b62ee1

1.2.0 (2026-09-19)

Features

  • crl: add offline cryptographically signed revocation lists (8106d04)

v1.1.0

Choose a tag to compare

@github-actions github-actions released this 18 Sep 08:11
71051fa

1.1.0 (2026-09-18)

Features

  • claims: add first-class tier-to-features matrix resolution (881b799)

Bug Fixes

  • scope: auto-resolve platform identity for non-fingerprinted licenses (#53) (b319c0f)
  • security: AWS Lambda fingerprint spoofing and scope bypass via unauthenticated env vars (#45) (36cebb4)

v1.0.0

Choose a tag to compare

@github-actions github-actions released this 17 Sep 17:14
5f21237

1.0.0 (2026-09-17)

⚠ BREAKING CHANGES

  • decouple license issuance and encapsulate internal subsystems

Features

  • claims, bsl: runtime schema validation, simulation BSL grant override, and performance benchmarks (c6363bf)
  • cli: introduce domain-grouped command routing with backward-compatible shortcuts (52db767)
  • provenance: harden release attestation and add bi-directional build date skew (408ab24)
  • security: separate keyring maps, add fail-closed scope, and harden warn-only policy (7002a6e)

Bug Fixes

  • security: constant-time fingerprint, 128-bit key fingerprint, version segment wildcards, and parser hardening (7901f65)
  • security: prevent symlink substitution, degraded downgrade attacks, and env spoofing (#30, #31, #34) (07aa117)
  • security: reconcile Manager BSL conversion and expiration with clock defense (#27, #28, #29) (1fef733)
  • validator: align clock skew tolerance with StatusAt lifecycle state reporting (#18) (63792bc)
  • validator: enforce claims.Environment when validator currentEnvironment is empty (#16) (88fdbfa)
  • validator: reject offline backward clock tampering prior to binary build date (#17) (d4ff4e4)

Code Refactoring

  • decouple license issuance and encapsulate internal subsystems (5c01ad6)

v0.7.0

Choose a tag to compare

@github-actions github-actions released this 16 Sep 18:15
3805a79

0.7.0 (2026-09-16)

Features

  • cli: air-gapped license request generator and fingerprint CLI subcommands (fixes #8) (885844b)
  • fingerprint: add AWS Lambda resolver and platform support (dccd9b8)
  • fingerprint: AWS EC2 IMDSv2 and Kubernetes cluster fingerprint resolvers (fixes #7) (f424a2f)
  • fingerprint: core machine identity & host hardware fingerprint engine (fixes #6) (cd5e539)
  • validator: auto-fingerprint resolution and node-lock verification in Validator (fixes #9) (ce4cacd)

Bug Fixes

  • claims: respect minor and patch version bounds in wildcard checkMaxVersion (#15) (e54ce3f)
  • fingerprint: prevent predictable Kubernetes cluster fingerprint collision under restricted RBAC (#14) (1637479)
  • manager: enforce license expiration in HasFeature() and CheckLimit() (#12) (fe58bfc)
  • provenance: treat placeholder values like "none" or "dev" as Attested: false in EvaluateProvenance (#21) (d9dbbc6)
  • scope: prevent slash-spanning wildcard match in matchFeaturePattern() (#13) (12d50c7)
  • security: prevent public key trust root spoofing via environment variables (#11) (6fb4d0d)

v0.6.0

Choose a tag to compare

@github-actions github-actions released this 16 Sep 13:20
fb0e981

0.6.0 (2026-09-16)

Features

  • add BSL 1.1 Additional Use Grant evaluator and bsl-eval CLI command (b884de0)
  • add cryptographic release attestation and provenance engine (fe37115)
  • add standardized CLI license status formatter and license-cli status command (55bf0e8)

v0.5.0

Choose a tag to compare

@github-actions github-actions released this 16 Sep 11:13
897f058

0.5.0 (2026-09-16)

Features

  • add authoritative server time attestation and clock skew defense (fc65848)
  • add custom scope CLI flags to license-cli issue and verify (e4956f3)
  • add diagnostic human status message (VerificationResult.StatusMessage) (f4d4ea5)
  • add hierarchical namespace and group tree scope matching for Scope.Namespaces (5a1bcf5)
  • add host URL normalization and apex domain matching for Scope.Hosts (96f10b3)
  • add KeyRing & public key environment resolver with programmatic overrides and CLI support (4fa9a87)
  • add reusable terminal claims inspection formatter (Claims.FormatInspect) (3fad97d)

Bug Fixes

  • lint: resolve gosimple warnings in claims and ensure golangci-lint path discovery (1c843aa)

v0.4.0

Choose a tag to compare

@github-actions github-actions released this 16 Sep 05:59
032fca8

0.4.0 (2026-09-16)

Features

  • add BSL 1.1 change date conversion and authoritative clock skew defense (25f1bdd)
  • implement configurable enforcement policies and graceful degradation in manager (4ce5a90)