Commit Graph

  • 3feee4758b
    Merge pull request #7 from kalvinparker/chore/consolidate-workflows kalvinparker 2025-11-22 11:10:24 +0000
  • 89a57903f0 Fix around singleorg policy Timshel 2025-08-28 17:08:45 +0200
  • 3863c1bcb2 chore(ci): consolidate Trivy workflows into ci.yml and remove duplicates kalvinparker 2025-11-21 17:33:07 +0000
  • c8cf780c5f
    Merge pull request #6 from kalvinparker/chore/add-ci-security kalvinparker 2025-11-21 17:17:02 +0000
  • 180207cd80 chore(ci): pin aquasecurity/trivy-action and upload SARIF results kalvinparker 2025-11-20 22:56:50 +0000
  • 66a178cec7
    Merge pull request #5 from kalvinparker/chore/add-contributing kalvinparker 2025-11-20 21:45:54 +0000
  • b311088aa7 chore: add CONTRIBUTING.md Gitflow branching strategy kalvinparker 2025-11-20 21:17:04 +0000
  • 00d84f0862 Fix typos in some files khanhkhanhlele 2025-11-18 14:37:29 +0700
  • 1441d08b11
    Merge branch 'main' into main Henning 2025-11-17 09:22:57 +0100
  • 319d982113
    Add `pm-25373-windows-biometrics-v2` feature flag (#6468) Ephemera42 2025-11-15 01:46:50 +0800
  • 95a0c667e4
    remove invalid emergency access dummy value (#6463) Stefan Melmuk 2025-11-14 18:46:42 +0100
  • b519832086
    Fix: admin theme emoji alignment (#6459) Joep Duin 2025-11-14 18:46:31 +0100
  • 516c5979e1
    Add `pm-25373-windows-biometrics-v2` feature flag Ephemera42 2025-11-13 21:11:26 +0800
  • 25fd4406b6
    Merge branch 'main' into main Henning 2025-11-13 13:32:29 +0100
  • 2e6b09293e Add audit output files and update dependencies kalvinparker 2025-11-13 11:57:11 +0000
  • 4a29844e7e
    remove invalid emergency access dummy value Stefan Melmuk 2025-11-12 14:36:48 +0100
  • 1418981984 Sprites Joep Duin 2025-11-11 20:13:45 +0000
  • 2146c1d263 chore(audit): bump lettre and psm kalvinparker 2025-11-12 06:46:08 +0000
  • 0b3872d474 docs(audit): add license triage summary and update PR body kalvinparker 2025-11-12 06:42:49 +0000
  • 15153e8505 docs(audit): record temporary allowlist for Apache-2.0 WITH LLVM-exception kalvinparker 2025-11-12 06:23:35 +0000
  • 43c08ecc3e chore(audit): add timeboxed allowlist for Apache-2.0 WITH LLVM-exception to unblock CI kalvinparker 2025-11-12 06:22:38 +0000
  • 1af3eab43c
    Merge branch 'main' into fix/admin-theme-emoji-alignment Joep Duin 2025-11-11 19:49:23 +0100
  • 58c72e6981 Fix: admin theme dropdown emoji alignment Joep Duin 2025-11-11 18:45:11 +0000
  • 2ee40d6105
    Fix KDF Change with new web-vault (#6458) Mathijs van Veluw 2025-11-11 19:37:32 +0100
  • 0182567a62
    Playwright against abitrary web-vault (#6380) Timshel 2025-11-11 19:23:35 +0100
  • 10e920584d
    Fix KDF Change with new web-vault BlackDex 2025-11-11 18:31:10 +0100
  • eac72a0546 Playwright fix for the extension setup Timshel 2025-10-22 12:08:26 +0200
  • a455519e40 Playwright improvements Timshel 2025-10-20 15:40:40 +0200
  • 101d9aefa3 docs(audit): add reqwest/webauthn experiments summary kalvinparker 2025-11-10 22:45:40 +0000
  • 9679613cfa docs(audit): add short license-failure analysis kalvinparker 2025-11-10 22:10:57 +0000
  • 6befc36448 docs(audit): add license triage summary and PR body update file kalvinparker 2025-11-10 22:05:58 +0000
  • 56e7b76db1 chore(experiment): remove openidconnect reqwest feature to avoid reqwest/rustls pull-in (experiment) kalvinparker 2025-11-10 21:55:31 +0000
  • 03eb5a2ab0 ci(audit): trigger dependency audit workflow kalvinparker 2025-11-10 21:50:42 +0000
  • 3acda59afd chore(audit): temporarily allow MPL-2.0 and CDLA-Permissive-2.0 to unblock CI; timebox and track remediation kalvinparker 2025-11-10 21:48:04 +0000
  • b0ee507743 chore(experiment): try reqwest with native-tls to avoid webpki-roots kalvinparker 2025-11-10 21:18:18 +0000
  • fe4f9ce212 docs(audit): record webauthn upgrade experiment results kalvinparker 2025-11-10 21:13:15 +0000
  • f9751a0a1d
    Use an older version of mariadb to prevent a panic (#6453) Mathijs van Veluw 2025-11-10 18:03:45 +0100
  • a4b1771fd7
    Resolve docker build check issue BlackDex 2025-11-10 14:46:25 +0100
  • e3c871d6bb
    Update GHA versions BlackDex 2025-11-10 14:39:59 +0100
  • e1131c8fa0
    Use an older version of mariadb to prevent a panic BlackDex 2025-11-10 14:31:10 +0100
  • 64f402b6af chore(audit): add Dockerfile and scripts for cargo audit and deny integration kalvinparker 2025-11-09 17:57:34 +0000
  • d9db30e4b9 docs(audit): add feasibility report for webauthn-rs and webpki-roots remediation kalvinparker 2025-11-09 17:53:16 +0000
  • 6ed3d31cc0 chore(audit): add temporary license allowlist for common OSI-approved licenses; document in tracking issue kalvinparker 2025-11-09 08:38:54 +0000
  • c97fc90f40 chore(audit): ignore RUSTSEC-2023-0071 and RUSTSEC-2024-0436 in deny.toml (temporary) kalvinparker 2025-11-09 08:00:37 +0000
  • a305cf3d6d chore(audit): add advisory exceptions for RUSTSEC-2023-0071 and RUSTSEC-2024-0436 under [advisories] (timeboxed) kalvinparker 2025-11-09 07:59:10 +0000
  • a64bf18935 chore(audit): format deny.toml license exceptions as [[licenses.exceptions]] (cargo-deny compatible) kalvinparker 2025-11-09 07:57:46 +0000
  • f16723c8d8 chore(audit): add temporary deny exceptions for rsa and paste; add tracking issue and document in audit note kalvinparker 2025-11-09 07:52:27 +0000
  • 22ff36919c chore(deps): allow caret ranges for rmpv and openidconnect to permit safe published bumps kalvinparker 2025-11-09 00:30:26 +0000
  • eb077610b8 chore(deps): revert attempted openidconnect/rmpv bumps (incompatible with crates.io) kalvinparker 2025-11-09 00:25:52 +0000
  • f84d861746 chore(audit): make deny.toml parseable by cargo-deny kalvinparker 2025-11-09 00:24:15 +0000
  • 5818cbfff9 chore(audit): fix deny.toml to valid cargo-deny format kalvinparker 2025-11-09 00:23:35 +0000
  • e3d25181b5 chore(deps): attempt bump openidconnect and rmpv to avoid transitive rsa/paste kalvinparker 2025-11-09 00:22:52 +0000
  • 1f2cadc8b2 chore(audit): add cargo-deny policy, CI audit workflow and security note (2025-11-09) kalvinparker 2025-11-09 00:16:11 +0000
  • 54053f7e28 Add audit and deny command error messages to respective files kalvinparker 2025-11-08 23:20:51 +0000
  • 0951c8d220 Add supply chain audit workflow with cargo-audit and cargo-deny steps kalvinparker 2025-11-08 23:20:44 +0000
  • 951b1e3c90
    Revert Debian to Bookworm BlackDex 2025-11-05 15:29:52 +0100
  • 2be8e7e628 Fix: reorder imports and clean up whitespace in admin.rs hnolde 2025-11-04 16:54:06 +0100
  • 7e3acf26b4 Fix: update OAuth2 state storage initialization and state token encoding hnolde 2025-11-04 16:11:51 +0100
  • 96fe363ee5
    Merge branch 'main' into main Henning 2025-11-04 15:47:17 +0100
  • 9017ca265a
    Optimizations and build speedup (#6339) Mathijs van Veluw 2025-11-01 22:21:04 +0100
  • 8d30285160
    Fix issue with key-rotation and emergency-access (#6421) Mathijs van Veluw 2025-11-01 22:20:38 +0100
  • 9d68045a2e
    Fix issue with key-rotation and emergency-access BlackDex 2025-11-01 18:57:57 +0100
  • d42f073464
    Update web-vault to v2025.10.1 and xx to v1.8.0 BlackDex 2025-10-31 18:27:00 +0100
  • 65ad7f0bff
    Update to Rust v1.91 and update crates BlackDex 2025-10-31 17:55:23 +0100
  • e5c0655c74 Fix: formatting hnolde 2025-10-31 12:09:27 +0100
  • 4b584bfa00
    Fix formating and pre-commit BlackDex 2025-10-30 11:22:17 +0100
  • 9e2506eea5
    Update crates and workflows BlackDex 2025-10-30 10:51:58 +0100
  • a997ce1f80
    Misc fixes and updated typos BlackDex 2025-10-14 19:44:26 +0200
  • 41d3062001
    Update typos and remove mimalloc check from pre-commit checks BlackDex 2025-10-05 17:22:36 +0200
  • f2f882365d
    Fix release profile BlackDex 2025-10-04 16:16:49 +0200
  • 0ea5c4bbd6
    Optimizations and build speedup BlackDex 2025-09-10 23:49:25 +0200
  • 3cd3d33d00
    Improve protected actions (#6411) Daniel García 2025-10-29 21:41:34 +0100
  • 8e01bcac7c
    Don't delete token when tracking attempts Daniel García 2025-10-29 21:30:12 +0100
  • 3cdb557455
    Use saturating add Daniel García 2025-09-17 20:26:45 +0200
  • 8de1915e31
    Match usage on two factor Daniel García 2025-09-17 19:57:33 +0200
  • 0c7ab88320
    Improve protected actions Daniel García 2025-09-17 19:39:10 +0200
  • 2ee5819b56
    Use Diesels MultiConnections Derive (#6279) Mathijs van Veluw 2025-10-29 21:04:30 +0100
  • 7c597e88f9
    [Playwright] Improvements around node (#6321) Timshel 2025-10-29 20:50:54 +0100
  • d3c8d04f26
    Update crates BlackDex 2025-10-22 17:10:34 +0200
  • a63ca00984 Switch to `fromJSON` digest extraction dfunkt 2025-10-23 20:52:12 +0300
  • 4911484865
    crate updates BlackDex 2025-10-13 22:04:42 +0200
  • 9afad72f25
    Small adjustment BlackDex 2025-10-05 17:32:21 +0200
  • bf559fd6cb
    Updated some crates to keep up2date BlackDex 2025-10-05 17:12:54 +0200
  • fd03d78f15
    Implement custom connection manager BlackDex 2025-10-05 17:09:51 +0200
  • 522de62efb
    Remove macro, replaced with an function BlackDex 2025-09-21 10:34:21 +0200
  • 666d6ce968
    Adjust query_logger and some other small items BlackDex 2025-09-20 22:17:39 +0200
  • 6e8af1b8a7
    Use Diesels MultiConnections Derive BlackDex 2025-09-06 09:54:19 +0200
  • f6a5e53e43 Fix: handlebars oauth2_success, http_client, url hnolde 2025-10-22 15:23:42 +0200
  • 1269330f46 Fix: formatting issues hnolde 2025-10-22 11:50:22 +0200
  • bfbedb05d6 Fix: is_some_and and formatting issues hnolde 2025-10-22 11:15:05 +0200
  • e5934c13e9 Add XoAuth2 support to fetch the token from the SMTP Provider and refresh used by Google or Microsoft hnolde 2025-10-22 10:20:59 +0200
  • fc8e0b6c25 Upgrade Keycloak compose to trixie Timshel 2025-09-23 16:33:17 +0200
  • c3ea1114fa Playwright node improvements Timshel 2025-09-23 16:02:49 +0200
  • 7bcfe0a5d2
    Merge 07e4cf251c into a85b48512c Chase Douglas 2025-10-22 00:34:29 +0200
  • a85b48512c
    add seat limit for the invite dialog (#6371) Stefan Melmuk 2025-10-21 20:23:46 +0200
  • fe1a8f7738
    add missing media-src directive (#6381) Stefan Melmuk 2025-10-21 19:22:37 +0200
  • d43edb8f17
    add mail address change warning for invited accounts (#6377) Stefan Melmuk 2025-10-21 19:21:47 +0200
  • 8043f7eca7
    Fix Org identifier (#6364) Timshel 2025-10-21 19:20:18 +0200
  • e659a61581
    Add auth_request pending endpoint (#6368) Timshel 2025-10-21 19:17:52 +0200
  • 2d54cc61df
    add new billing warnings endpoint (#6369) Stefan Melmuk 2025-10-21 19:16:27 +0200