antedebaas / Viesti-Reports

DMARC & SMTP-TLS Reports processor and visualizer and BIMI file hoster
https://docs.viestireports.com/
GNU Affero General Public License v3.0
82 stars 16 forks source link

Bump symfonycasts/verify-email-bundle from 1.16.2 to 1.17.0 #67

Closed dependabot[bot] closed 7 months ago

dependabot[bot] commented 7 months ago

Bumps symfonycasts/verify-email-bundle from 1.16.2 to 1.17.0.

Release notes

Sourced from symfonycasts/verify-email-bundle's releases.

Validate emails using the Request

Howdy Verifiers!

This is a pretty significant release which introduces a new VerifyEmailHelperInterface::validateEmailConfirmationFromRequest() method that will replace, the now deprecated, validateEmailConfirmation() in v2.0.0. This new method requires for you to pass a Request object instead of a string that represents the signed url that the user "clicked" when verifying their email address. We've documented the change in our README and the UPGRADE guide.

Most users should not be using the UriSignerFactory class directly, but for those that are, this class will become final and internal in v2.0.0.

Speaking of v2.0.0, this will be one of the last 1.x versions of VerifyEmailBundle released that contains new features. Moving forward, we should see v2.0.0 released soon, at which time only bug / security fixes will be released in v1.x. We will continue to maintain v1.x until approximately November 2024. More information will be shared about this soon!

v1.17.0

March 16th, 2024

Feature

  • #165 - UriSignerFactory to become internal in 2.x - @​jrushlow
  • #157 - use UriSigner::checkRequest() to validate signatures using a Request object - @​jrushlow

Full Changelog: https://github.com/SymfonyCasts/verify-email-bundle/compare/v1.16.2...v1.17.0

Changelog

Sourced from symfonycasts/verify-email-bundle's changelog.

v1.17.0

March 16th, 2024

Feature

  • #165 - UriSignerFactory to become internal in 2.x - @​jrushlow
  • #157 - use UriSigner::checkRequest() to validate signatures using a Request object - @​jrushlow

v1.14.0

September 22nd, 2023

Feature

v1.13.0

January 4th, 2023

Feature

v1.12.0

October 4th, 2022

Feature

v1.11.0

July 12th, 2022

Feature

Bug

v1.10.0

... (truncated)

Commits
  • f72af14 minor #169 [release] v1.17.0
  • c167fa8 minor #171 RegistrationController uses constructor property promotion
  • 6d6aa41 minor #170 [upgrade] document validateEmailConfirmationFromRequest
  • 454059c minor #143 use maker generated controller/verifier
  • e44ebca feature #165 [1.x] UriSigner to become internal in 2.x
  • d60e9e8 feature #157 [1.x] use UriSigner::checkRequest() to validate signatures usi...
  • See full diff in compare view


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)