Commit Graph

  • 57f65646d1 fix(scim): harden Group PUT/PATCH writes David Croft 2026-07-19 21:28:09 +1000
  • 2ac68220b0 feat(scim): warn when SCIM runs without org event logging David Croft 2026-07-19 21:28:09 +1000
  • 6d1cd3b3b4 fix(scim): create a real MySQL foreign key for scim_api_key David Croft 2026-07-19 21:28:09 +1000
  • a99d05e60a refactor(scim): hoist shared helpers into scim mod David Croft 2026-07-19 21:27:55 +1000
  • bcbbf370ed refactor(scim): batch user lookup and clarify scim_api_key David Croft 2026-07-19 21:27:55 +1000
  • cc33693d48 Fix custom role dialog selectors tom27052006 2026-07-18 22:45:03 +0200
  • f67e7641e3 Make useScim dynamic and add SCIM documentation David Croft 2026-07-19 01:42:40 +1000
  • 780cb9e293 Add SCIM Groups endpoints with diff-based member sync David Croft 2026-07-19 01:39:53 +1000
  • 45f19e004e Add SCIM Users PUT, externalId updates, and attribute-patch tolerance David Croft 2026-07-19 01:34:47 +1000
  • a4d1d870b1 Add SCIM Users endpoints: provision, deprovision, restore David Croft 2026-07-19 01:31:42 +1000
  • b1d0261800 Add SCIM v2 scaffolding: per-org api key, auth guard, discovery endpoints David Croft 2026-07-19 01:20:12 +1000
  • 08c21c212e Remove old compatibility code Timshel 2026-07-16 19:42:55 +0200
  • 06ad4d079c feat: Added clientside feature flag "fill-assist-targeting-rules" Raphaël Roumezin 2026-07-17 10:08:24 +0200
  • 9fc9b7c6fa Apply review feedback tom27052006 2026-07-15 16:53:07 +0200
  • 0fecadd124
    template correction Guilhem Zeitoun 2026-07-15 07:10:04 +0200
  • 19dd24e24c
    bad use of get_env_str Guilhem Zeitoun 2026-07-15 07:06:44 +0200
  • 9f09c30623
    test if needed Guilhem Zeitoun 2026-07-14 23:13:11 +0200
  • 4e2bde6da3 Normalize SSO default organization UUID before lookup tom27052006 2026-07-14 23:11:09 +0200
  • 29d76b5451
    rebase fix Guilhem Zeitoun 2026-07-14 22:39:28 +0200
  • b9166502cb
    Corrections on env and naming. Guilhem Zeitoun 2026-04-26 17:41:34 +0200
  • eac74fa0d1
    changes for review Guilhem Zeitoun 2026-07-14 22:35:14 +0200
  • 3a27382c2d Add default organization for SSO users tom27052006 2026-07-14 22:33:19 +0200
  • c58eebc584
    rebase Guilhem Zeitoun 2026-07-14 22:07:19 +0200
  • a3232c9855 Add admin controls for timeout and export policies tom27052006 2026-07-14 14:35:05 +0200
  • 97ac457910 chore: remove `SHELL` instructions unknown to OCI images and use POSIX commands Jakob Probst 2026-07-11 20:37:00 +0200
  • 29de7e1e80 chore: enable the `s3` feature within the Dockerfiles Jakob Probst 2026-07-11 19:19:34 +0200
  • b4caaab2df fix formatting Shocker 2026-07-11 16:28:41 +0300
  • 6302df6776
    Merge branch 'main' into icon-service-fallback Shocker 2026-07-11 16:04:26 +0300
  • 89bcfe67f8
    Merge branch 'main' of https://github.com/dani-garcia/vaultwarden into feat/webauthn_login Raphaël Roumezin 2026-07-09 09:20:10 +0200
  • 169aa5efcc
    Misc updates and fixes (#7406) Mathijs van Veluw 2026-07-08 22:10:29 +0200
  • 64d28ab66e
    improve CI (#6991) Denis Pisarev 2026-07-08 22:08:20 +0200
  • 89a25c4e12
    Merge branch 'main' of https://github.com/dani-garcia/vaultwarden into feat/webauthn_login Raphaël Roumezin 2026-07-08 13:59:48 +0200
  • a711aa1274
    Update MSRV to v1.94.1 BlackDex 2026-07-08 19:26:08 +0200
  • f7df02b483
    Misc updates and fixes BlackDex 2026-07-08 19:13:15 +0200
  • 4720cdbe86
    Add `pm-26340-linux-biometrics-v2` feature flag (#7358) pilotstew 2026-07-07 08:59:57 -0500
  • 5447ee6af2
    SSO use ClientSecretPost if ClientSecretBasic is not available (#7357) Timshel 2026-07-07 15:59:48 +0200
  • 5c5e8e1a6f
    2026.6.0 send support (#7346) Timshel 2026-07-07 15:59:36 +0200
  • 7320a1db4b
    PutPolicy now using vnext format (#7296) Timshel 2026-07-07 15:59:26 +0200
  • a058a35ccd
    [v2026.5.0] Registration request update (#7295) Timshel 2026-07-07 15:59:17 +0200
  • a16b5afaaa
    Org membership delete remove Invitation (#7284) Timshel 2026-07-07 15:59:06 +0200
  • fddc16d2b8
    fix(sends): emit hideEmail as non-null boolean in sync response (#7283) kvdb 2026-07-07 15:58:54 +0200
  • ec7fa137b7
    Admin password recovery endpoint change (#7270) Timshel 2026-07-07 15:58:41 +0200
  • b25f715364
    Fix enforce blocked (#7246) Timshel 2026-07-07 15:58:34 +0200
  • 9e4aa5efe7
    feat: Added support for passkey vault unlock feature Raphaël Roumezin 2026-06-30 11:07:00 +0200
  • c99ffe3d83 Review fix Timshel 2026-06-29 10:09:52 +0200
  • 7dbd82a311 add Zenith Hosting badge l1mey112 2026-06-29 16:53:04 +1000
  • 055cb61888 Don't block the login response on the new-device email max 2026-06-28 21:07:45 +0200
  • 5261bd7b0d Review fixes Timshel 2026-06-27 23:16:30 +0200
  • 3b669264bb
    fix(clippy): few refactors Raphael Roumezin 2026-06-27 16:55:05 +0200
  • 05c9af4d1e
    fix: Allowed Chromium extensions as origins for passwordless login Raphael Roumezin 2026-06-27 16:30:32 +0200
  • 9351e91de0 Do not fail login when push device registration fails max 2026-06-26 12:53:02 +0200
  • 224ad8a406 fix: typos Raphaël Roumezin 2026-06-24 13:00:48 +0200
  • 8cba57a1af feat(config): Add passkey_login_allowed config option Raphaël Roumezin 2026-06-24 11:44:53 +0200
  • 007ac4f992 fix: Correct attestation options Raphaël Roumezin 2026-06-23 16:01:02 +0200
  • 7711b02153 feat: passwordless login Raphaël Roumezin 2026-06-23 15:27:37 +0200
  • d9695088c7
    Add Podman Quadlet instructions to Readme 4liceD 2026-06-23 10:37:15 +0200
  • af02911b71 SSO use ClientSecretPost if ClientSecretBasic is not available Timshel 2026-06-23 08:24:33 +0200
  • 409031715f
    Merge branch 'main' into pr/3x8_improve-ci Denis Pisarev 2026-06-22 11:07:13 +0200
  • 995c96a55a Add `pm-26340-linux-biometrics-v2` feature flag pilotstew 2026-06-21 09:28:53 -0500
  • fb9e70b79f Use default to keep compatibility Timshel 2026-06-21 16:13:37 +0200
  • 649ed31aa7 enable rocket/mtls feature Simonas Kazlauskas 2026-06-20 16:11:51 +0300
  • 89dae0f082 fix: pin Debian MariaDB packages to 11.8.6 maxpetrusenkoagent 2026-06-18 16:36:13 -0400
  • 8450af2094 Prevent creating and editing a Send with email verification Timshel 2026-06-18 19:52:09 +0200
  • 4900b8fd81
    fix: use request-body OIDC auth Puria Nafisi Azizi 2026-06-18 03:02:12 +0200
  • 64d943b625 2026.6.0 send support Timshel 2026-06-16 20:48:12 +0200
  • dc82ad6d6c Pin Debian MariaDB client library maxpetrusenkoagent 2026-06-15 05:04:40 -0400
  • 2c97b41e87
    fix(sends): emit hideEmail as non-null boolean in sync response Kees van den Broek 2026-06-01 11:04:42 +0200
  • d0f6d297db Admin password recovery endpoint change Timshel 2026-05-28 14:11:07 +0200
  • ca446d46b2 Fix enforce blocked Timshel 2026-05-20 19:42:55 +0200
  • 00cc9f79b1 Registration request update Timshel 2026-06-03 15:12:21 +0200
  • 77283882e1 PutPolicy now using vnext format Timshel 2026-06-03 16:26:48 +0200
  • 283467f90e Add GET /public/events Bitwarden-compatible Public API endpoint svrforum 2026-06-09 10:56:16 +0900
  • 1c91b8a8c9 Make get_continuation_token reusable across modules svrforum 2026-06-09 10:56:16 +0900
  • 989fa9ac0d Add Event::to_json_public for Public API event model svrforum 2026-06-09 10:40:21 +0900
  • f750116afa
    Merge branch 'main' into pr/3x8_cargo-deny Denis Pisarev 2026-06-08 14:24:12 +0200
  • 3c584be7d0
    Fix invalid SSH key sync for Bitwarden 2026.5 MengYX 2026-06-06 12:28:27 +0800
  • d6a3d539ed
    Update Rust, Crates and GHA (#7307) Mathijs van Veluw 2026-06-05 21:52:52 +0200
  • 660a02db4a
    Update Rust, Crates and GHA BlackDex 2026-06-05 17:39:16 +0200
  • b999841de0
    Ignore RUSTSEC-2026-0098, -0099, -0104 in deny.toml TriplEight 2026-06-04 15:23:01 +0200
  • 727fead3a0 playwright: pin webauthn-grant 2FA-usability gate Zaid Marji 2026-06-02 19:13:27 +0300
  • e94b8556c8 playwright: disabled-account passkey login coverage Zaid Marji 2026-06-01 23:38:46 +0300
  • fcef37bfc7 webauthn: concurrent-modification handling + login error helpers Zaid Marji 2026-06-02 18:18:46 +0300
  • 6be69056d1 2FA: harden enforce_2fa_policy for unauthenticated callers Zaid Marji 2026-05-31 13:24:50 +0300
  • 019a1adf98 webauthn: passkey-management module + login hardening + Result-typed 2FA lookups Zaid Marji 2026-06-02 19:09:41 +0300
  • b5678daf8e webauthn: harden passkey management flows Zaid Marji 2026-06-02 17:43:24 +0300
  • 247a8905d8 Fix correctness, test reliability, and observability issues Zaid Marji 2026-06-02 19:08:20 +0300
  • 58bbc2d533 playwright: passkey UI flow tests + SSO_ONLY denial coverage Zaid Marji 2026-05-29 11:59:58 +0300
  • 6522923cdb playwright: account lifecycle test + host-iteration config Zaid Marji 2026-05-28 07:34:36 +0300
  • 2d59e7e631 playwright: implement fido2 + auto-pick 2FA provider in submitTwoFactor Zaid Marji 2026-05-28 07:34:11 +0300
  • 524194bbf4 config: advertise pm-2035-passkey-unlock feature flag Zaid Marji 2026-05-28 07:19:37 +0300
  • 3f96c26322 two_factor/webauthn: gate every entry point with is_webauthn_2fa_supported Zaid Marji 2026-05-27 15:04:05 +0300
  • a75273d40f playwright: cover PRF login-passkey enrolment via Chromium virtual authenticator Zaid Marji 2026-05-27 06:17:23 +0300
  • 6f2751ee79 Align UserDecryption response shapes with upstream Bitwarden Zaid Marji 2026-06-02 18:15:15 +0300
  • c489186e4f Add playwright tests for passkey login Zaid Marji 2026-05-24 06:04:07 +0300
  • a7dd529f1f
    Merge branch 'main' into pr/3x8_cargo-deny Denis Pisarev 2026-06-04 14:55:56 +0200
  • 95d2a73671 Fix local attachment download endpoint Puneet Dixit 2026-06-04 14:53:21 +0530
  • 89a9ef9afa Prevent duplicate passkey credential registration Zaid Marji 2026-05-23 12:51:55 +0300
  • ced3520def Harden passkey login flow Zaid Marji 2026-05-24 14:09:04 +0300
  • f728963aaa Tighten passkey credential persistence and enrollment Zaid Marji 2026-05-24 14:16:42 +0300
  • 3ab20f1f41 Centralize SSO_ONLY enforcement (deny-by-default) Zaid Marji 2026-06-02 17:43:12 +0300