Commit Graph

  • ca06099466 tests: fix tests for proxy controller Stavros 2026-05-15 18:43:18 +03:00
  • d4b4245017 chore: revert 4c741a5 and use 403 for acl errors Stavros 2026-05-15 18:39:12 +03:00
  • 4c741a5990 fix: use 401 errors instead of 403 for nginx responses Stavros 2026-05-15 18:12:15 +03:00
  • def539a40f refactor: replace bun with pnpm (#870) Stavros 2026-05-15 14:43:51 +03:00
  • e6b291d21c docs: enhance security policy with reporting guidelines (#868) Dreddy 2026-05-13 17:08:48 -04:00
  • 086e3af4e2 chore: add deepsec to gitignore Stavros 2026-05-13 19:11:39 +03:00
  • f9fff24ca5 fix: oidc open redirect (#854) Dreddy 2026-05-13 10:34:39 -04:00
  • a9eac7edd2 fix(ldap): pass through LDAP mail attribute instead of crafting email (#834) Ilyas 2026-05-11 14:40:15 +02:00
  • a6351790c3 chore(deps): bump github/codeql-action from 4.35.3 to 4.35.4 (#842) dependabot[bot] 2026-05-10 16:36:01 +03:00
  • 4f7335ed73 refactor: rework app logging, dependency injection and cancellation (#844) Stavros 2026-05-10 16:10:36 +03:00
  • 5649aea507 chore: add linter to ci feat/golanci Stavros 2026-05-09 18:02:08 +03:00
  • 3da9a5b18b feat: add golangci-lint for go linting Stavros 2026-05-09 18:00:41 +03:00
  • 1b18e68ce0 docs: regenerate readme sponsors list (#841) github-actions[bot] 2026-05-07 16:53:07 +03:00
  • 6602b52f85 feat: add support for oauth whitelist file (#817) (#826) djedditt 2026-05-07 15:35:38 +02:00
  • f8fb7d678b fix: fix conflicts feat/oauth-whitelist-file Stavros 2026-05-07 16:17:11 +03:00
  • 0c31fb0600 Merge branch 'main' into feat/oauth-whitelist-file Stavros 2026-05-07 16:17:01 +03:00
  • a8a98bd8d5 chore(deps): bump the minor-patch group across 1 directory with 3 updates (#827) dependabot[bot] 2026-05-07 16:13:04 +03:00
  • ca6a7fa551 feat: add option to run tinyauth on a top-level domain (#710) Jacek Kowalski 2026-05-07 15:12:24 +02:00
  • 5aeb886523 Merge branch 'main' into single-cookie-domain single-cookie-domain Stavros 2026-05-07 15:50:55 +03:00
  • 1382ab41e7 refactor: rework user context handling throughout tinyauth (#829) Stavros 2026-05-07 15:41:07 +03:00
  • 24f2da4e58 chore(deps): bump github/codeql-action from 4.35.2 to 4.35.3 (#837) dependabot[bot] 2026-05-06 18:49:37 +03:00
  • b06b60150f Merge branch 'main' into single-cookie-domain Stavros 2026-05-04 15:59:22 +03:00
  • 44c763c302 fix: narrow down action permissions to per-job ones fix/token-permissions Stavros 2026-04-29 16:41:24 +03:00
  • 956d2f55c3 feat(access-control): Add support for Kubernetes Label (#627) Contre 2026-04-29 15:16:21 +02:00
  • 5e822d99e1 chore: fix typos in oidc service Stavros 2026-04-29 16:08:21 +03:00
  • 373ee8806e chore: prefer errors.is instead of comparison Stavros 2026-04-29 16:04:27 +03:00
  • 4077bacfdf chore: rabbit feedback Stavros 2026-04-29 16:00:59 +03:00
  • a14d64c8ba chore: remove exp slices package and use stdlib Stavros 2026-04-29 15:56:35 +03:00
  • 4c0181c5e2 Merge branch 'main' into single-cookie-domain Stavros 2026-04-29 15:50:52 +03:00
  • 44a7cbf41b fix: inform services and controllers if subdomain cookie domain is enabled Stavros 2026-04-29 15:49:45 +03:00
  • 6b5a6bd982 feat: add support for oauth whitelist file (#817) djedditt 2026-04-29 02:53:56 +02:00
  • d51e3efe32 fix: use pinned step versions and set workflow permissions (#825) Stavros 2026-04-28 15:52:02 +03:00
  • d73cc628fb chore: add openssf baseline badge to readme Stavros 2026-04-28 15:46:40 +03:00
  • a8737ab0bd fix: use frozen lockfile in makefile bun install Stavros 2026-04-28 15:31:07 +03:00
  • 11793c9869 fix: use frozen lockfile in all bun installs Stavros 2026-04-28 15:30:21 +03:00
  • c68a022ed0 docs: add ai policy (#821) Stavros 2026-04-27 20:44:44 +03:00
  • a736c4ad90 fix: add request param to authorize post feat/oidc-authorize-post Stavros 2026-04-27 20:14:36 +03:00
  • 74901dd88f feat: support for authorize post in oidc controller Stavros 2026-04-27 20:13:14 +03:00
  • 5d95123dcb feat(oidc): support for all in-spec attributes and scopes (#777) Scott McKendry 2026-04-28 04:25:52 +12:00
  • c364b8682c feat: preserve login params in forgot password screen (#819) Stavros 2026-04-26 18:03:25 +03:00
  • ab7c81f63b chore(deps): bump github.com/Azure/go-ntlmssp from 0.1.0 to 0.1.1 (#814) dependabot[bot] 2026-04-26 17:16:39 +03:00
  • a9a782a9e4 chore(deps): bump ossf/scorecard-action from 2.4.1 to 2.4.3 (#812) dependabot[bot] 2026-04-26 17:16:15 +03:00
  • 399dee2ee5 chore(deps): bump actions/upload-artifact from 4.6.1 to 7.0.1 (#811) dependabot[bot] 2026-04-26 17:15:57 +03:00
  • 6422d5e491 chore(deps): bump github/codeql-action from 3 to 4 (#810) dependabot[bot] 2026-04-26 17:15:28 +03:00
  • a96ee13876 chore(deps): bump actions/checkout from 4.2.2 to 6.0.2 (#809) dependabot[bot] 2026-04-26 17:15:05 +03:00
  • 92b435d8cb chore(deps): bump the minor-patch group across 1 directory with 2 updates (#807) dependabot[bot] 2026-04-26 17:14:40 +03:00
  • 03164f6c97 chore(deps): bump oven/bun from 1.3.12-alpine to 1.3.13-alpine (#804) dependabot[bot] 2026-04-26 17:14:21 +03:00
  • f3186571cc Organisation update, steveiliop56 to tinyauthapp (#793) Ryc O'Chet 2026-04-26 15:13:53 +01:00
  • 3906e50925 chore: add openssf scorecard to readme Stavros 2026-04-21 22:20:00 +03:00
  • ff81f91366 feat: add scorecard workflow Stavros 2026-04-21 22:10:05 +03:00
  • d90e3d652d Add TINYAUTH_AUTH_SUBDOMAINSENABLED option Jacek Kowalski 2026-03-12 18:34:49 +01:00
  • 479f165781 fix: fail app on empty app url before parsing v5.0.7 Stavros 2026-04-16 12:44:20 +03:00
  • 36c7872a94 New Crowdin updates (#797) v5.0.7-beta.1 Stavros 2026-04-15 23:24:47 +03:00
  • c1dd37e7b9 chore(deps): bump the minor-patch group across 1 directory with 15 updates (#792) v5.0.7-alpha.1 dependabot[bot] 2026-04-14 13:45:12 +03:00
  • f257d00648 fix: use fmt println to show warning regardless of log level Stavros 2026-04-14 13:43:24 +03:00
  • 9f77816a1d feat: add organization migration note Stavros 2026-04-14 13:26:55 +03:00
  • 93d6191139 fix: lighthouse fixes Stavros 2026-04-14 13:16:15 +03:00
  • 6f99e7acff fix: revoke access token on duplicate auth code user (#786) Stavros 2026-04-14 12:45:27 +03:00
  • 578172d01e chore(deps): bump softprops/action-gh-release from 2 to 3 (#794) dependabot[bot] 2026-04-14 12:16:16 +03:00
  • 1280dbb517 Initial thoughts e2e Ryc O'Chet 2026-04-12 21:42:43 +01:00
  • 18c8413ea3 feat: support unsigned oidc request objects (#785) Scott McKendry 2026-04-13 04:19:47 +12:00
  • 1117f35496 refactor: use plain input for totp input to fix autofill issues (#790) Stavros 2026-04-12 19:12:21 +03:00
  • cc94294ece feat: add x-tinyauth-location to nginx response (#783) Stavros 2026-04-11 18:04:56 +03:00
  • b44dc75f54 fix: return 307 redirects for envoy proxy instead of 401 (#782) Stavros 2026-04-10 18:11:10 +03:00
  • d25aaba9d1 chore(deps): bump the minor-patch group across 1 directory with 2 updates (#779) dependabot[bot] 2026-04-10 18:03:59 +03:00
  • d4dbdc09d0 chore: add org notice to readme Stavros 2026-04-10 18:03:06 +03:00
  • 061d28f5e3 refactor: use tinyauthapp/paerser instead of traefik/paerser (#781) Stavros 2026-04-10 17:36:13 +03:00
  • 8b91ce09bd refactor: use zod for oidc params (#771) Stavros 2026-04-10 16:05:22 +03:00
  • 298f1bf8eb chore(deps): bump oven/bun from 1.3.11-alpine to 1.3.12-alpine (#778) dependabot[bot] 2026-04-10 16:04:59 +03:00
  • 195f788293 chore(deps): bump go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracehttp (#775) dependabot[bot] 2026-04-10 16:04:02 +03:00
  • 02fb35f992 chore(deps): bump peter-evans/create-pull-request from 7 to 8 (#759) dependabot[bot] 2026-04-10 16:02:49 +03:00
  • 2c1b62f464 feat: preserve oidc params in oauth flow (#772) Stavros 2026-04-10 15:58:31 +03:00
  • 646e24d98c feat(oidc): support access token in body for user info post (#769) Scott McKendry 2026-04-08 20:54:54 +12:00
  • 0d286d1864 feat(oidc): add post route for /userinfo (#767) Scott McKendry 2026-04-08 10:28:38 +12:00
  • 165197e472 feat: add pkce support to oidc server (#766) Stavros 2026-04-07 19:04:20 +03:00
  • 431cd33053 docs: regenerate readme sponsors list (#765) github-actions[bot] 2026-04-06 14:39:15 +03:00
  • 3373dcc412 test: extend traefik browser tests v5.0.6 Stavros 2026-04-02 18:46:38 +03:00
  • 9d666dc108 fix: skip browser detection for nginx and envoy Stavros 2026-04-02 18:24:26 +03:00
  • 7ad13935a5 chore(deps): bump docker/build-push-action from 6 to 7 (#749) v5.0.6-beta.1 dependabot[bot] 2026-04-02 15:37:35 +03:00
  • 98e788b1e8 chore(deps): bump docker/metadata-action from 5 to 6 (#750) dependabot[bot] 2026-04-02 15:37:19 +03:00
  • a074efb3a3 chore(deps): bump actions/download-artifact from 4 to 8 (#751) dependabot[bot] 2026-04-02 15:37:02 +03:00
  • 48ef8c0e4c chore(deps): bump actions/stale from 9 to 10 (#752) dependabot[bot] 2026-04-02 15:36:37 +03:00
  • 1313e8767a chore(deps): bump actions/checkout from 4 to 6 (#753) dependabot[bot] 2026-04-02 15:36:23 +03:00
  • 892097dc4d fix: account for proxy type in browser response Stavros 2026-04-02 15:35:50 +03:00
  • 6542e1b121 chore(deps): bump codecov/codecov-action from 5 to 6 (#746) dependabot[bot] 2026-04-01 19:09:28 +03:00
  • e1d7fa2eb3 chore(deps): bump docker/setup-buildx-action from 3 to 4 (#747) dependabot[bot] 2026-04-01 19:09:02 +03:00
  • 41244080c0 chore(deps): bump docker/login-action from 3 to 4 (#748) dependabot[bot] 2026-04-01 19:08:48 +03:00
  • 34f9724866 chore(deps): bump actions/upload-artifact from 4 to 7 (#745) dependabot[bot] 2026-04-01 19:08:33 +03:00
  • 19a317dd7c chore(deps): bump actions/setup-go from 5 to 6 (#744) dependabot[bot] 2026-04-01 19:08:01 +03:00
  • 8a9ffcf185 chore: add github action updates in dependabot Stavros 2026-04-01 19:03:05 +03:00
  • fc1d4f2082 refactor: use better ignore paths in context middleware (#743) v5.0.5-rc.2 v5.0.5 Stavros 2026-04-01 17:07:14 +03:00
  • 08e6b84615 fix: use int for status in healthcheck cmd Stavros 2026-04-01 16:12:06 +03:00
  • cec0a7327a New translations en.json (Ukrainian) (#740) v5.0.5-rc.1 Stavros 2026-04-01 15:43:23 +03:00
  • d7d6a476bf chore(deps): bump the minor-patch group across 1 directory with 5 updates (#742) dependabot[bot] 2026-04-01 15:42:58 +03:00
  • c3636784b6 chore(deps): bump github.com/go-jose/go-jose/v4 in the minor-patch group (#741) dependabot[bot] 2026-04-01 15:42:20 +03:00
  • da247f8552 fix: handle oauth provider id mismatch correctly v5.0.5-beta.3 Stavros 2026-03-30 23:02:13 +03:00
  • ce581a76f1 docs: regenerate readme sponsors list (#738) github-actions[bot] 2026-03-30 19:33:13 +03:00
  • 7139ad1cc6 fix: use correct go image in docker build v5.0.5-beta.2 Stavros 2026-03-30 19:21:50 +03:00
  • 7bfee6efc2 chore(deps): bump github.com/charmbracelet/huh from 0.8.0 to 1.0.0 (#708) dependabot[bot] 2026-03-30 19:15:30 +03:00
  • bf4e567a4e chore(deps): bump lucide-react from 0.577.0 to 1.7.0 in /frontend (#736) dependabot[bot] 2026-03-30 19:07:02 +03:00