Skip to content

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Feb 1, 2024

Bumps mozilla-django-oidc from 3.0.0 to 4.0.0.

Changelog

Sourced from mozilla-django-oidc's changelog.

4.0.0 (2024-01-11)

  • Added PKCE support in the authorization code flow. Thanks @themooer1 <https://github.com/themooer1>_ and @escattone <https://github.com/escattone/>_
  • Added support for Elliptic Curve JWT signing algorithms Thanks @atanunq <https://github.com/atanunq>_
  • Replace mock with unittest.mock Thanks @traylenator <https://github.com/traylenator>_
  • Add pre-commit hooks
  • Add support for Python 3.11 and 3.12
  • Add support for Django 4.2
  • Document OIDC_USERNAME_ALGO Thanks @polyccon <https://github.com/polyccon>_
  • Add claims to custom username algorithm Thanks @EduardRosert <https://github.com/EduardRosert>_
  • Formatting fixes in the Documentation Thanks @EduardRosert <https://github.com/EduardRosert>_
  • Update token error response handling Thanks @dopry <https://github.com/dopry>

Backwards-incompatible changes:

  • Drop Python 3.7 support
  • Drop Django 4.1 support
Commits
  • 8db684a Bump version: 3.0.0 → 4.0.0
  • 107805c Merge pull request #518 from akatsoulas/fix-history
  • 3fa56fb Fix rst syntax.
  • 648a6e0 Merge pull request #514 from akatsoulas/release-preparation
  • bfd61b2 Merge pull request #516 from akatsoulas/drop-django410
  • 6044320 Update History for release v4
  • 1e81505 Drop support for Django 4.1
  • bf0d143 Merge pull request #515 from escattone/PKCE-in-session-refresh-middleware
  • 8bf691f add PKCE to SessionRefresh middleware
  • f75ff62 Merge pull request #513 from akatsoulas/ec-support
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

@dependabot dependabot bot added dependencies Pull requests that update a dependency file python Pull requests that update Python code labels Feb 1, 2024
Bumps [mozilla-django-oidc](https://github.com/mozilla/mozilla-django-oidc) from 3.0.0 to 4.0.0.
- [Release notes](https://github.com/mozilla/mozilla-django-oidc/releases)
- [Changelog](https://github.com/mozilla/mozilla-django-oidc/blob/main/HISTORY.rst)
- [Commits](mozilla/mozilla-django-oidc@3.0.0...4.0.0)

---
updated-dependencies:
- dependency-name: mozilla-django-oidc
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot force-pushed the dependabot/pip/mozilla-django-oidc-4.0.0 branch from 958b026 to 040688d Compare February 11, 2024 02:16
@peterbe peterbe enabled auto-merge (squash) February 11, 2024 02:16
@peterbe peterbe merged commit 4b05d30 into master Feb 11, 2024
@dependabot dependabot bot deleted the dependabot/pip/mozilla-django-oidc-4.0.0 branch February 11, 2024 02:18
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file python Pull requests that update Python code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants