Commit graph

  • 3f57c7c322 mail: add AWS SES transport Chase Douglas 2026-05-05 13:49:24 -07:00
  • e1f7a46375
    Merge branch 'main' into admin-totp Tom 2026-07-24 18:53:44 +02:00
  • e19dedea6e
    Merge branch 'main' into agent/sso-default-organization Tom 2026-07-24 18:53:22 +02:00
  • 7a22a66400
    Merge branch 'main' into agent/configurable-2fa-remember-days Tom 2026-07-24 18:53:05 +02:00
  • dc9722c641
    Merge branch 'main' into agent/admin-vault-timeout-export-policies Tom 2026-07-24 18:52:13 +02:00
  • 3ab418d1f0 Merge branch 'vd/main' into vd/external_2fa Ivan 2026-07-24 20:28:26 +04:00
  • 46ae59eaf4
    Trusted proxy support, unauthenticated rate limit & other fixes (#7472) 1.37.0 Daniel García 2026-07-24 18:27:32 +02:00
  • fbf53dc540 Implemented external 2fa provider support. Ivan 2026-07-24 20:27:29 +04:00
  • bcc4f32820
    deduplicate send validation Daniel García 2026-07-24 18:17:04 +02:00
  • 2a0b6193be
    Merge 0036471e9f into a6a88e7929 Timshel 2026-07-25 00:12:35 +08:00
  • 1e8f5be639
    Merge c33aa46f7e into a6a88e7929 acul021 2026-07-25 00:12:35 +08:00
  • a6a88e7929
    Update API response, crates and GHA (#7470) Mathijs van Veluw 2026-07-24 17:33:10 +02:00
  • 1c29a37e80
    Update API response, crates and GHA BlackDex 2026-07-24 17:15:40 +02:00
  • df61a6154c
    Merge 1aea203f34 into 5040bcb7c0 Raphaël Roumezin 2026-07-24 11:04:45 -04:00
  • 5040bcb7c0
    Remove unused fields (#7458) Timshel 2026-07-24 14:40:34 +00:00
  • 6a0c75320d
    Fix org import Daniel García 2026-07-24 16:36:11 +02:00
  • 08dce4bcf9
    Fmt Daniel García 2026-07-24 16:32:50 +02:00
  • 5f03e74feb
    Fix get_groups_data when not using full_access Daniel García 2026-07-24 16:20:34 +02:00
  • 94a798e9dd
    Fix get_groups_data Daniel García 2026-07-24 15:17:21 +02:00
  • 8cc0ac316e
    Merge 283467f90e into 660faee68e svrforum 2026-07-24 13:00:33 +08:00
  • 12c20f7484 Strip null values from optional Login cipher fields 0xjjjjjj 2026-07-23 19:27:20 -07:00
  • ea91c5431f fix: add autofillOnPageLoad and fido2Credentials for SDK 0.2.0 compatibility Alefsander Ribeiro 2026-07-23 22:42:51 -03:00
  • cd1a4713e5 Merge Custom access permissions (point 1) into access_all removal + Manager fold (points 2+3) tom27052006 2026-07-23 23:04:58 +02:00
  • bf56c9b169 Add accessEventLogs, accessImportExport and accessReports Custom permissions tom27052006 2026-07-23 23:00:15 +02:00
  • 5558b41801 Remove membership access_all flag and fold Manager role into Custom tom27052006 2026-07-23 22:15:32 +02:00
  • 7cbea9af41 Address SSO default organization review feedback tom27052006 2026-07-23 18:59:57 +02:00
  • e467062c94 Fix privilege escalation: collection manage grants bypassed delete gate tom27052006 2026-07-23 18:37:03 +02:00
  • 8778a6f934 feat(sso): implement login hint feature Raphaël Roumezin 2026-07-23 13:39:43 +02:00
  • e785cfbbf1
    Update version to 2026.4.1 in mod.rs Brandon 2026-07-23 14:51:00 +05:30
  • 3d3211e2cc Remove unused fields Timshel 2026-07-22 17:39:06 +02:00
  • eee1ee66f7 Merge branch 'main' into feat/webauthn_login Raphaël Roumezin 2026-07-23 09:21:29 +02:00
  • 8d9377f9a4 Merge branch 'main' into feat/fillassist Raphaël Roumezin 2026-07-23 09:18:55 +02:00
  • 2243922517 Quote reserved groups identifier in MySQL collection-permissions migration tom27052006 2026-07-22 19:27:39 +02:00
  • fe3111d9b5 Align bulk collection-access authorization with single-collection edit tom27052006 2026-07-22 19:16:59 +02:00
  • 031051b61c Fix privilege escalation: Edit any collection could reach Delete any collection tom27052006 2026-07-21 23:07:09 +02:00
  • 1aea203f34
    Merge branch 'main' into feat/collection-management Raphaël Roumezin 2026-07-22 17:10:55 +02:00
  • ca9602ef35 chore: bump nix dependency to 0.31.3 H-TTTTT 2026-07-22 23:04:09 +08:00
  • a624aeceb5 fix: flag check bug in bitwise ops Raphaël Roumezin 2026-07-22 16:41:28 +02:00
  • b6be6472f9 fix: Change model to use i16 newtype for OrganizationCollectionSettings Raphaël Roumezin 2026-07-22 16:06:05 +02:00
  • 9929b087c2 fix: limitItemDeletion, limitCollectionCreation and limitCollectionDeletion display behaviour Raphaël Roumezin 2026-07-22 15:17:46 +02:00
  • f05f9eddf3 fix: clippy refactors Raphaël Roumezin 2026-07-22 14:29:10 +02:00
  • c33aa46f7e Block owners and admins from enrolling in the Key Connector Luca Biemelt 2026-07-22 10:41:49 +02:00
  • 2d4843e92d feat: implement limitCollectionDeletion checks Raphaël Roumezin 2026-07-22 14:05:15 +02:00
  • be185837a0 feat: implement limitCollectionCreation checks Raphaël Roumezin 2026-07-22 13:50:27 +02:00
  • 888902cf81 fix: change db schema for lighter queries Raphaël Roumezin 2026-07-22 13:19:30 +02:00
  • 4e3d999e89
    Merge branch 'main' into admin-totp Tom 2026-07-21 23:04:18 +02:00
  • 7798f40256 Simplify admin TOTP configuration flow tom27052006 2026-07-21 22:56:19 +02:00
  • 6b4d8048e0
    Merge branch 'main' into agent/sso-default-organization Tom 2026-07-21 22:33:50 +02:00
  • e0b6fbf61b
    Merge branch 'main' into agent/admin-vault-timeout-export-policies Tom 2026-07-21 22:20:11 +02:00
  • aae6294ce2
    Merge branch 'main' into feature/custom-role-permissions Tom 2026-07-21 22:18:54 +02:00
  • 660faee68e
    Fix custom role dialog selectors (#7442) Tom 2026-07-21 22:06:45 +02:00
  • 151df9ca49
    Merge branch 'main' into agent/admin-vault-timeout-export-policies Tom 2026-07-21 21:58:07 +02:00
  • 8042d32de8
    Merge branch 'main' into agent/configurable-2fa-remember-days Tom 2026-07-21 21:57:50 +02:00
  • 56529a8a6a
    Merge branch 'main' into agent/fix-custom-role-dialog-selector Tom 2026-07-21 21:57:27 +02:00
  • 6792aeec1c
    Merge branch 'main' into agent/sso-default-organization Tom 2026-07-21 21:57:03 +02:00
  • 683a23e43c
    Fix compilation with newer rust-musl version (#7453) Daniel 2026-07-21 22:54:10 +03:00
  • 4314da6fba Fix compilation with newer rust-musl version dfunkt 2026-07-21 21:17:49 +03:00
  • a2de466f84
    Merge branch 'main' into feature/custom-role-permissions Tom 2026-07-21 21:08:37 +02:00
  • 4a9bcb0694
    Remove old compatibility code (#7434) Timshel 2026-07-21 17:59:40 +00:00
  • cfc685ec47 Report admin TOTP source honestly (environment vs config) tom27052006 2026-07-21 18:30:54 +02:00
  • c99c468eb7 Share TOTP code verification between user and admin 2FA tom27052006 2026-07-21 18:30:54 +02:00
  • 5e7cf66d67 fix: reflect ability to delete in display apis Raphaël Roumezin 2026-07-21 17:11:07 +02:00
  • a43bee409d
    Merge branch 'main' into feat/sso_login_graphical_fix Iacopo Sbalchiero 2026-07-21 17:05:31 +02:00
  • c5a080dd0c feat: implement limitItemDeletion checks Raphaël Roumezin 2026-07-21 15:36:22 +02:00
  • af47e59e38 Merge branch 'main' into feat/sso-cookie-vendor nathanmoreton 2026-07-21 13:18:09 +00:00
  • 521669ec8a feat: add collection management settings and persistance Raphaël Roumezin 2026-07-21 14:58:36 +02:00
  • 1cb10979bc fix: use nix access for USE_SENDMAIL executable check x06579 2026-07-21 09:03:57 +08:00
  • 22310039e4
    fix(api): provide fillAssistRules in /config Raphael Roumezin 2026-07-20 18:54:10 +02:00
  • 24c33dbd17 fix: accept any execute bit for USE_SENDMAIL command check H-TTTTT 2026-07-20 09:41:19 +08:00
  • 5a02e80a5a
    Trusted proxies, unauthenticated rate limits and various fixes Daniel García 2026-07-20 01:24:46 +02:00
  • 8289e2dcff Fix custom-role privilege escalation and align read guards (security review) tom27052006 2026-07-19 20:20:15 +02:00
  • 478c01db4e Fix admin TOTP endpoint URLs tom27052006 2026-07-19 00:14:19 +02:00
  • e049caa40e Add QR code enrollment and management page for admin TOTP tom27052006 2026-07-19 00:01:39 +02:00
  • 77debecdc3 Add optional TOTP second factor for the admin page tom27052006 2026-07-18 23:33:03 +02:00
  • 471c96536b docs(scim): document reinstatement exposure and add TODOS backlog David Croft 2026-07-19 21:28:34 +10:00
  • 90bf2ba9a1 test(scim): cover minting, rollback, disabled key, and group edges David Croft 2026-07-19 21:28:23 +10:00
  • bd977e3c79 refactor(scim): use shared SCIM body-limit constant in main David Croft 2026-07-19 21:28:23 +10:00
  • d7e94fa4cd fix(scim): audit token management, log rollback, resend invite on restore David Croft 2026-07-19 21:28:23 +10:00
  • 57f65646d1 fix(scim): harden Group PUT/PATCH writes David Croft 2026-07-19 21:28:09 +10:00
  • 2ac68220b0 feat(scim): warn when SCIM runs without org event logging David Croft 2026-07-19 21:28:09 +10:00
  • 6d1cd3b3b4 fix(scim): create a real MySQL foreign key for scim_api_key David Croft 2026-07-19 21:28:09 +10:00
  • a99d05e60a refactor(scim): hoist shared helpers into scim mod David Croft 2026-07-19 21:27:55 +10:00
  • bcbbf370ed refactor(scim): batch user lookup and clarify scim_api_key David Croft 2026-07-19 21:27:55 +10:00
  • 84edbf23b0 Fix Custom Role selectors for new dialogs tom27052006 2026-07-18 23:19:10 +02:00
  • cc33693d48 Fix custom role dialog selectors tom27052006 2026-07-18 22:45:03 +02:00
  • f67e7641e3 Make useScim dynamic and add SCIM documentation David Croft 2026-07-19 01:42:40 +10:00
  • 780cb9e293 Add SCIM Groups endpoints with diff-based member sync David Croft 2026-07-19 01:39:53 +10:00
  • 45f19e004e Add SCIM Users PUT, externalId updates, and attribute-patch tolerance David Croft 2026-07-19 01:34:47 +10:00
  • a4d1d870b1 Add SCIM Users endpoints: provision, deprovision, restore David Croft 2026-07-19 01:31:42 +10:00
  • b1d0261800 Add SCIM v2 scaffolding: per-org api key, auth guard, discovery endpoints David Croft 2026-07-19 01:20:12 +10:00
  • 3cd4dd8bfa Fix custom collection authorization tom27052006 2026-07-18 14:04:32 +02:00
  • 1cc4238654 Fix collection delete for legacy Managers migrated to Custom tom27052006 2026-07-17 14:35:44 +02:00
  • 0036471e9f Refactor Sends table Timshel 2026-06-22 16:23:42 +02:00
  • 9f7fcc0e69 Sends email verification Timshel 2026-06-18 19:42:00 +02:00
  • 7522ccec80 Support admin reset 2fa Timshel 2026-07-16 18:48:37 +02:00
  • 08c21c212e Remove old compatibility code Timshel 2026-07-16 19:42:55 +02:00
  • 06ad4d079c feat: Added clientside feature flag "fill-assist-targeting-rules" Raphaël Roumezin 2026-07-17 10:08:24 +02:00
  • a992695c00 Fix cross-tenant and revoke authorization bypasses from security audit tom27052006 2026-07-16 21:51:29 +02:00
  • e67fb30c5f Fix delete-only collection access in web vault tom27052006 2026-07-16 19:31:49 +02:00
  • 44139eb0c7 Add granular custom collection permissions tom27052006 2026-07-16 18:18:49 +02:00