Releases: divmora/license-go
Releases · divmora/license-go
Release list
v1.4.0
v1.3.1
v1.3.0
v1.2.0
v1.1.0
v1.0.0
1.0.0 (2026-09-17)
⚠ BREAKING CHANGES
- decouple license issuance and encapsulate internal subsystems
Features
- claims, bsl: runtime schema validation, simulation BSL grant override, and performance benchmarks (c6363bf)
- cli: introduce domain-grouped command routing with backward-compatible shortcuts (52db767)
- provenance: harden release attestation and add bi-directional build date skew (408ab24)
- security: separate keyring maps, add fail-closed scope, and harden warn-only policy (7002a6e)
Bug Fixes
- security: constant-time fingerprint, 128-bit key fingerprint, version segment wildcards, and parser hardening (7901f65)
- security: prevent symlink substitution, degraded downgrade attacks, and env spoofing (#30, #31, #34) (07aa117)
- security: reconcile Manager BSL conversion and expiration with clock defense (#27, #28, #29) (1fef733)
- validator: align clock skew tolerance with StatusAt lifecycle state reporting (#18) (63792bc)
- validator: enforce claims.Environment when validator currentEnvironment is empty (#16) (88fdbfa)
- validator: reject offline backward clock tampering prior to binary build date (#17) (d4ff4e4)
Code Refactoring
- decouple license issuance and encapsulate internal subsystems (5c01ad6)
v0.7.0
0.7.0 (2026-09-16)
Features
- cli: air-gapped license request generator and fingerprint CLI subcommands (fixes #8) (885844b)
- fingerprint: add AWS Lambda resolver and platform support (dccd9b8)
- fingerprint: AWS EC2 IMDSv2 and Kubernetes cluster fingerprint resolvers (fixes #7) (f424a2f)
- fingerprint: core machine identity & host hardware fingerprint engine (fixes #6) (cd5e539)
- validator: auto-fingerprint resolution and node-lock verification in Validator (fixes #9) (ce4cacd)
Bug Fixes
- claims: respect minor and patch version bounds in wildcard checkMaxVersion (#15) (e54ce3f)
- fingerprint: prevent predictable Kubernetes cluster fingerprint collision under restricted RBAC (#14) (1637479)
- manager: enforce license expiration in HasFeature() and CheckLimit() (#12) (fe58bfc)
- provenance: treat placeholder values like "none" or "dev" as Attested: false in EvaluateProvenance (#21) (d9dbbc6)
- scope: prevent slash-spanning wildcard match in matchFeaturePattern() (#13) (12d50c7)
- security: prevent public key trust root spoofing via environment variables (#11) (6fb4d0d)
v0.6.0
v0.5.0
0.5.0 (2026-09-16)
Features
- add authoritative server time attestation and clock skew defense (fc65848)
- add custom scope CLI flags to license-cli issue and verify (e4956f3)
- add diagnostic human status message (VerificationResult.StatusMessage) (f4d4ea5)
- add hierarchical namespace and group tree scope matching for Scope.Namespaces (5a1bcf5)
- add host URL normalization and apex domain matching for Scope.Hosts (96f10b3)
- add KeyRing & public key environment resolver with programmatic overrides and CLI support (4fa9a87)
- add reusable terminal claims inspection formatter (Claims.FormatInspect) (3fad97d)
Bug Fixes
- lint: resolve gosimple warnings in claims and ensure golangci-lint path discovery (1c843aa)