All Versions
72
Latest Version
Avg Release Cycle
67 days
Latest Release
47 days ago

Changelog History
Page 4

  • v5.1.0 Changes

    June 28, 2016
    • Implemented RFC7636 (Issue #574)
    • ๐Ÿ‘ป Unify middleware exception responses (Issue #578)
    • โšก๏ธ Updated examples (Issue #589)
    • Ensure state is in access denied redirect (Issue #597)
    • โœ‚ Remove redundant isExpired() method from entity interfaces and traits (Issue #600)
    • โž• Added a check for unique access token constraint violation (Issue #601)
    • Look at Authorization header directly for HTTP Basic auth checks (Issue #604)
    • โž• Added catch Runtime exception when parsing JWT string (Issue #605)
    • ๐Ÿ‘ Allow paragonie/random_compat 2.x (Issue #606)
    • โž• Added indigophp/hash-compat to Composer suggestions and require-dev for PHP 5.5 support
  • v5.0.3 Changes

    May 04, 2016
    • ๐Ÿ›  Fix hints in PasswordGrant (Issue #560)
    • โž• Add meaning of Resource owner to terminology.md (Issue #561)
    • ๐Ÿ‘‰ Use constant for event name instead of explicit string (Issue #563)
    • โœ‚ Remove unused request property (Issue #564)
    • Correct wrong phpdoc (Issue #569)
    • ๐Ÿ›  Fixed typo in exception string (Issue #570)
  • v5.0.2 Changes

    April 18, 2016
    • state parameter is now correctly returned after implicit grant authorization
    • Small code and docblock improvements
  • v5.0.1 Changes

    April 18, 2016
    • ๐Ÿ›  Fixes an issue (#550) whereby it was unclear whether or not to validate a client's secret during a request.
  • v5.0.0 Changes

    April 17, 2016

    ๐Ÿ”– Version 5 is a complete code rewrite.

    • ๐Ÿ“‡ Renamed Server class to AuthorizationServer
    • โž• Added ResourceServer class
    • โœ… Run unit tests again PHP 5.5.9 as it's the minimum supported version
    • ๐Ÿ‘ Enable PHPUnit 5.0 support
    • ๐Ÿ‘Œ Improved examples and documentation
    • ๐Ÿ‘‰ Make it clearer that the implicit grant doesn't support refresh tokens
    • ๐Ÿ‘Œ Improved refresh token validation errors
    • ๐Ÿ›  Fixed refresh token expiry date
  • v5.0.0-RC2 Changes

    April 10, 2016
    • ๐Ÿ‘ Allow multiple client redirect URIs (Issue #511)
    • โœ‚ Remove unused mac token interface (Issue #503)
    • ๐Ÿ– Handle RSA key passphrase (Issue #502)
    • โœ‚ Remove access token repository from response types (Issue #501)
    • โœ‚ Remove unnecessary methods from entity interfaces (Issue #490)
    • Ensure incoming JWT hasn't expired (Issue #509)
    • ๐Ÿ›  Fix client identifier passed where user identifier is expected (Issue #498)
    • โœ‚ Removed built-in entities; added traits to for quick re-use (Issue #504)
    • Redirect uri is required only if the "redirect_uri" parameter was included in the authorization request (Issue #514)
    • โœ‚ Removed templating for auth code and implicit grants (Issue #499)
  • v5.0.0-RC1 Changes

    March 24, 2016

    ๐Ÿ”– Version 5 is a complete code rewrite.

    • ๐Ÿ‘ JWT support
    • ๐Ÿ‘ PSR-7 support
    • ๐Ÿ‘Œ Improved exception errors
    • Replace all occurrences of the term "Storage" with "Repository"
    • Simplify repositories
    • Entities conform to interfaces and use traits
    • โšก๏ธ Auth code grant updated
      • Allow support for public clients
      • Add support for #439
    • โšก๏ธ Client credentials grant updated
    • โšก๏ธ Password grant updated
      • Allow support for public clients
    • โšก๏ธ Refresh token grant updated
    • Implement Implicit grant
    • Bearer token output type
    • โœ‚ Remove MAC token output type
    • Authorization server rewrite
    • ๐Ÿšš Resource server class moved to PSR-7 middleware
    • โœ… Tests
    • ๐Ÿ“š Much much better documentation
  • v4.1.7 Changes

    June 23, 2018

    ๐Ÿ›  Fixed

    • Ensure empty() function call only contains variable to be compatible with PHP 5.4 (PR #918)
  • v4.1.6 Changes

    September 13, 2016
    • Less restrictive on Authorization header check (Issue #652)
  • v4.1.5 Changes

    January 04, 2016
    • ๐Ÿ‘ Enable Symfony 3.0 support (#412)