v0.2.0
Changelog
Features
- 55244da: feat(cel): thread originalParams to hasSecrets for case-sensitive secret detection (@dpup)
- b19c46e: feat(config): add uppercase literal linter for case-insensitive mode (@dpup)
- dd448a0: feat(engine): add case normalization helpers, config field, and wiring (@dpup)
- cf4f311: feat(engine): normalize inputs for case-insensitive matching (@dpup)
Bug Fixes
- c62e2da: fix(cel): scope hasSecrets detection to the named field, not all params (@dpup)
- 92336ec: fix(engine): use original-case params in audit ParamsSummary for deny paths (@dpup)
- e320947: fix(gateway): add bounds check for response block map access (@dpup)
- d4ef943: fix(gateway): use consistent read-then-unmarshal pattern in connection-refused test (@dpup)
- 4630ffa: fix(rate): capture clock.Now() before acquiring lock in Increment (@dpup)
- e03750f: fix(rate): protect stopCh with mutex in StartGC/StopGC (@dpup)
- e426556: fix(relay): use atomic.Bool for mcp server initialized flag (@dpup)
- c0cc073: fix: add actionable context to audit logger and pack resolver errors (@dpup)
- dde88bb: fix: address review findings from round 1 (@dpup)
- 778a219: fix: harden engine, relay, gateway, and test infrastructure (@dpup)
Refactoring
Others
- ed91ec3: docs(concepts): add limitations page (@dpup)
- 8c44610: docs(engine): add case-insensitive matching design spec (@dpup)
- d4455ba: docs(engine): add case-insensitive matching implementation plan (@dpup)
Full Changelog: v0.1.0...v0.2.0