Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
5 changes: 0 additions & 5 deletions .changeset/did-web-resolver.md

This file was deleted.

5 changes: 0 additions & 5 deletions .changeset/fuzzy-lions-teach.md

This file was deleted.

12 changes: 0 additions & 12 deletions .changeset/split-otters-http.md

This file was deleted.

17 changes: 17 additions & 0 deletions CHANGELOG.md
Original file line number Diff line number Diff line change
@@ -1,5 +1,22 @@
# @germ-network/atprotoclient

## 0.9.0

### Minor Changes

- [#49](https://github.com/germ-network/AtprotoClient/pull/49) [`c9d149e`](https://github.com/germ-network/AtprotoClient/commit/c9d149e0655fa959205deefee53366115ba101d3) Thanks [@germ-mark](https://github.com/germ-mark)! - Add `Atproto.DidWebResolver`: resolves a did:web identifier to its DID document by fetching `https://{host}/.well-known/did.json`, matching `@atproto/identity`'s reference resolver (Accept header, redirect refusal, single-segment restriction). Screens the resolved host against a strict hostname allowlist before ever fetching, since a did:web identifier is attacker-influenced input turned directly into a URL (Linear GER-1912) — no port, loopback, or IP-literal host is accepted. Defaults to a redirect-refusing session; fetcher injection is reserved for tests.

### Patch Changes

- [#53](https://github.com/germ-network/AtprotoClient/pull/53) [`5d1ea0a`](https://github.com/germ-network/AtprotoClient/commit/5d1ea0a2df1f64676243fcec339c45bce0efe01e) Thanks [@germ-mark](https://github.com/germ-mark)! - Fix build against GermConvenience 0.8.0, which split `HTTPDataResponse` and
`HTTPFetcher` out of the base `GermConvenience` library into a new
`GermConvenienceHTTP` product. Adds the `GermConvenienceHTTP` product
dependency and the matching import everywhere those types are used, and
raises the floor to `from: "0.8.0"`.

No public API change — this only restores buildability against current
GermConvenience releases.

## 0.8.0

### Minor Changes
Expand Down
2 changes: 1 addition & 1 deletion package.json
Original file line number Diff line number Diff line change
@@ -1,7 +1,7 @@
{
"name": "@germ-network/atprotoclient",
"private": true,
"version": "0.8.0",
"version": "0.9.0",
"engines": {
"node": ">=24"
},
Expand Down