Skip to content

Navigation Menu

Sign in
Appearance settings

Search code, repositories, users, issues, pull requests...

Provide feedback

We read every piece of feedback, and take your input very seriously.

Saved searches

Use saved searches to filter your results more quickly

Sign up
Appearance settings

Releases: eggjs/security

v4.0.1

02 Feb 17:24
@github-actions github-actions

Choose a tag to compare

4.0.1 (2025年02月02日)

Bug Fixes


This release is also available on:

Assets 2
Loading

v3.8.0

22 Jan 16:43
@github-actions github-actions

Choose a tag to compare

3.8.0 (2025年01月22日)

Features


This release is also available on:

Loading

v4.0.0

17 Jan 16:58
@github-actions github-actions

Choose a tag to compare

4.0.0 (2025年01月17日)

⚠ BREAKING CHANGES

  • drop Node.js < 18.19.0 support

part of eggjs/egg#3644

eggjs/egg#5257

Summary by CodeRabbit

Based on the comprehensive changes, here are the updated release notes:

  • New Features

    • Migrated security plugin to TypeScript.
    • Enhanced type safety for security configurations.
    • Improved middleware and helper utilities.
  • Introduced new middleware for handling Strict-Transport-Security,
    X-Frame-Options, and X-XSS-Protection headers.

    • Added support for new security configurations and helper functions.
  • Breaking Changes

    • Renamed package from egg-security to @eggjs/security.
    • Dropped support for Node.js versions below 18.19.0.
    • Restructured module exports and configurations.
    • Removed several deprecated middleware and utility functions.
  • Security Improvements

    • Updated CSRF, XSS, and SSRF protection mechanisms.
    • Enhanced middleware for handling security headers.
    • Refined configuration options for various security features.
  • Performance

    • Modernized codebase with ES module syntax.
    • Improved type definitions and module structure.
  • Enhanced test suite with TypeScript support and better resource
    management.

Features


This release is also available on:

Loading

v3.7.0

13 Jan 12:18
@github-actions github-actions

Choose a tag to compare

3.7.0 (2025年01月13日)

Features

  • csrf support check origin header with referer type (#69) (2c950d3)

This release is also available on:

Loading

v3.6.0

08 Jul 15:03
@github-actions github-actions

Choose a tag to compare

3.6.0 (2024年07月08日)

Features


This release is also available on:

Loading

v3.5.0

03 Jul 13:00
@github-actions github-actions

Choose a tag to compare

3.5.0 (2024年07月03日)

Features

  • add rotateWhenInvalid option for CSRF token (#98) (ae37c8f)

This release is also available on:

Loading

v3.4.0

01 Jul 15:25
@github-actions github-actions

Choose a tag to compare

3.4.0 (2024年07月01日)

Features

  • support SSRF check on useHttpClientNext = true (#96) (1d6bfff)

This release is also available on:

Loading

v3.3.1

12 Jun 08:37
@github-actions github-actions

Choose a tag to compare

3.3.1 (2024年06月12日)

Bug Fixes


This release is also available on:

Loading

v3.3.0

29 May 09:43
@github-actions github-actions

Choose a tag to compare

3.3.0 (2024年05月29日)

Features


This release is also available on:

Loading

v3.2.0

04 Jan 09:49
@github-actions github-actions

Choose a tag to compare

3.2.0 (2024年01月04日)

Features

  • CSRF cookies allow the use of signatures (#88) (da1b532)

This release is also available on:

Loading
Previous 1
Previous

AltStyle によって変換されたページ (->オリジナル) /