Skip to content

feat: Mark refresh token headers as sensitive#347

Merged
spencewenski merged 2 commits into
mainfrom
refresh-token-headers-sensitive
Aug 22, 2024
Merged

feat: Mark refresh token headers as sensitive#347
spencewenski merged 2 commits into
mainfrom
refresh-token-headers-sensitive

Conversation

@spencewenski

Copy link
Copy Markdown
Member

These aren't standard headers, but we can provide them as a default in case they exist and we decide to make them a convention in Roadster in the future.

These aren't standard headers, but we can provide them as a default in
case they exist and we decide to make them a convention in Roadster in
the future.
@spencewenski spencewenski merged commit 371de6b into main Aug 22, 2024
@spencewenski spencewenski deleted the refresh-token-headers-sensitive branch August 22, 2024 10:37
This was referenced Aug 23, 2024
spencewenski added a commit that referenced this pull request Aug 26, 2024
## 🤖 New release
* `roadster`: 0.5.19 -> 0.6.0

<details><summary><i><b>Changelog</b></i></summary><p>

<blockquote>

##
[0.6.0](roadster-v0.5.19...roadster-v0.6.0)
- 2024-08-25

### Added
- Add a public method to decode a JWT from a string
([#348](#348))
- Mark refresh token headers as sensitive
([#347](#347))
- Make the `User` sea-orm migration enum public
([#346](#346))
- Allow splitting config files into many files in env directories
([#344](#344))
- [**breaking**] App methods take `self`
([#337](#337))
- Remove cookie extraction for `Jwt`, but allow it in `JwtCsrf`
([#332](#332))
- Allow custom sub-claims in provided `Claims` types
([#331](#331))
- Allow jwt from cookie, but only if it's explicitly requested
([#329](#329))

### Fixed
- [**breaking**] Don't expect a "Bearer" token in the auth token cookie
([#340](#340))

### Other
- Remove a `todo` comment
([#345](#345))
- Remove a todo comment from the tracing mod
([#343](#343))
- Update leptos example to use site-addr and env from roadster config
([#341](#341))
- sea-orm workspace dep and upgrade to `1.0.0`
([#336](#336))
- [**breaking**] Update tower to `0.5.0`
([#334](#334))
</blockquote>


</p></details>

---
This PR was generated with
[release-plz](https://github.com/MarcoIeni/release-plz/).

---------

Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com>
Co-authored-by: Spencer Ferris <3319370+spencewenski@users.noreply.github.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant