Skip to content
This repository was archived by the owner on Jun 5, 2026. It is now read-only.

1.0.0

Choose a tag to compare

@padcmoi padcmoi released this 24 May 09:10
· 35 commits to main since this release

[1.0.0] - 2026-05-23

  • feat(http): propagateClientToApis sends the locally-computed secretHash instead of the plain secret; target stores it as-is via setSecretHash
  • feat(http): propagateClientToApis falls back to the local Redis credentialStore for secretHash when both secret and secretHash are omitted
  • feat(types): HmacHttpPropagationPlan.secret is now optional
  • test(propagation): 4 new vitest cases - hash on the wire, Redis fallback, missing-everything throw, caller secretHash priority
  • docs(release-notes): add docs/release-notes/1.0.0.md (before/after, resolution priority, FAQ on 3 acceptance scenarios)
  • docs(diagrams): add docs/diagrams/ with architecture.puml + seq-signed-fetch.puml + seq-propagation.puml + seq-message.puml
  • docs(architecture): refresh docs/architecture.md with per-file responsibilities, hashing/signing/propagation contracts, prepublishOnly gate
  • demo(poc): 11 propagated clientIds incl. client_via_redis_lookup (secret omitted), 3 distinct HMAC_SECRET_TOKEN, verifyAllPropagatedClients logs ok=11/11 at boot + every 15s