Wils Dawson
|
61845d61c4
|
11-25-2025 compliant Auth (#651)
* fix: correct discovery for AS metadata
* fix: add commitlint to dev container
* feat: add RFC 8707 support for resource parameter
* feat: pkce method verification
* feat(auth): implement SEP-835 scope handling and 403 upgrade flow
- add WWWAuthenticateParams for parsing scope and resource_metadata from headers
- add ScopeUpgradeConfig and scope tracking in AuthorizationManager
- add InsufficientScopeError and 403 handling in streamable HTTP client
- add scope union computation for progressive authorization
- export new public types: AuthClient, ScopeUpgradeConfig, WWWAuthenticateParams
Co-authored-by: fizy069 <fizy069@users.noreply.github.com>
* fix: reorg auth tests
* feat: add error to www-authenticate header parsing
* feat: consider protected resource metadata in scope selection
* fix: reorganize auth tests
* feat: add examples and docs for updated auth
---------
Co-authored-by: fizy069 <fizy069@users.noreply.github.com>
|
2026-02-12 11:30:13 -05:00 |
|