Skip to content

v0.3.0

Choose a tag to compare

@tmgbedu tmgbedu released this 24 Aug 16:17
· 22 commits to main since this release

What's Changed

  • Passport-style OAuth2/JWT auth package for the FastAPI startkit by @tmgbedu in #1
  • Close password-reset throttle enumeration side-channel (#894) by @tmgbedu in #2
  • Rename package fastapi-passport → fastapi-startkit-auth (#902) by @tmgbedu in #3
  • test: consolidate duplicated PKCE helper and app builders into conftest fixtures by @tmgbedu in #5
  • Prepare fastapi-startkit-auth for PyPI release by @tmgbedu in #4
  • docs: add documentation site and docs link by @tmgbedu in #6
  • Roadmap: sequenced plan for cookie, SPA, and API-token auth by @tmgbedu in #7
  • docs: confirm framework provider:publish contract for auth:cors (#1500) by @tmgbedu in #8
  • Phase 0: guard-driver registry refactor in AuthManager by @tmgbedu in #9
  • Phase 1: Cookie/session authentication (Auth facade, SessionGuard, session middleware, in-memory + SQL stores) by @tmgbedu in #10
  • Phase 2: SPA authentication + CSRF (csrf-cookie endpoint, double-submit middleware, provider:publish) by @tmgbedu in #11
  • Phase 3: Sanctum-style API token authentication (TokenGuard, opaque tokens, in-memory + SQL stores) by @tmgbedu in #12
  • Fix connection-vs-factory detection: raw sqlite3.Connection misfires callable() branch by @tmgbedu in #13
  • Remove docs site entirely by @tmgbedu in #14
  • Prepare v0.2.0 PyPI release (uv_build backend, release script) by @tmgbedu in #15

New Contributors

Full Changelog: https://github.com/fastapi-startkit/fastapi-startkit-auth/commits/v0.3.0