CARVIEW |
Select Language
HTTP/2 200
date: Sun, 27 Jul 2025 18:22:42 GMT
content-type: text/html; charset=utf-8
vary: X-PJAX, X-PJAX-Container, Turbo-Visit, Turbo-Frame, X-Requested-With,Accept-Encoding, Accept, X-Requested-With
etag: W/"4e845ae4bfa2872453fb98651e77d1cf"
cache-control: max-age=0, private, must-revalidate
strict-transport-security: max-age=31536000; includeSubdomains; preload
x-frame-options: deny
x-content-type-options: nosniff
x-xss-protection: 0
referrer-policy: no-referrer-when-downgrade
content-security-policy: default-src 'none'; base-uri 'self'; child-src github.githubassets.com github.com/assets-cdn/worker/ github.com/assets/ gist.github.com/assets-cdn/worker/; connect-src 'self' uploads.github.com www.githubstatus.com collector.github.com raw.githubusercontent.com api.github.com github-cloud.s3.amazonaws.com github-production-repository-file-5c1aeb.s3.amazonaws.com github-production-upload-manifest-file-7fdce7.s3.amazonaws.com github-production-user-asset-6210df.s3.amazonaws.com *.rel.tunnels.api.visualstudio.com wss://*.rel.tunnels.api.visualstudio.com objects-origin.githubusercontent.com copilot-proxy.githubusercontent.com proxy.individual.githubcopilot.com proxy.business.githubcopilot.com proxy.enterprise.githubcopilot.com *.actions.githubusercontent.com wss://*.actions.githubusercontent.com productionresultssa0.blob.core.windows.net/ productionresultssa1.blob.core.windows.net/ productionresultssa2.blob.core.windows.net/ productionresultssa3.blob.core.windows.net/ productionresultssa4.blob.core.windows.net/ productionresultssa5.blob.core.windows.net/ productionresultssa6.blob.core.windows.net/ productionresultssa7.blob.core.windows.net/ productionresultssa8.blob.core.windows.net/ productionresultssa9.blob.core.windows.net/ productionresultssa10.blob.core.windows.net/ productionresultssa11.blob.core.windows.net/ productionresultssa12.blob.core.windows.net/ productionresultssa13.blob.core.windows.net/ productionresultssa14.blob.core.windows.net/ productionresultssa15.blob.core.windows.net/ productionresultssa16.blob.core.windows.net/ productionresultssa17.blob.core.windows.net/ productionresultssa18.blob.core.windows.net/ productionresultssa19.blob.core.windows.net/ github-production-repository-image-32fea6.s3.amazonaws.com github-production-release-asset-2e65be.s3.amazonaws.com insights.github.com wss://alive.github.com api.githubcopilot.com api.individual.githubcopilot.com api.business.githubcopilot.com api.enterprise.githubcopilot.com; font-src github.githubassets.com; form-action 'self' github.com gist.github.com copilot-workspace.githubnext.com objects-origin.githubusercontent.com; frame-ancestors 'none'; frame-src viewscreen.githubusercontent.com notebooks.githubusercontent.com; img-src 'self' data: blob: github.githubassets.com media.githubusercontent.com camo.githubusercontent.com identicons.github.com avatars.githubusercontent.com private-avatars.githubusercontent.com github-cloud.s3.amazonaws.com objects.githubusercontent.com release-assets.githubusercontent.com secured-user-images.githubusercontent.com/ user-images.githubusercontent.com/ private-user-images.githubusercontent.com opengraph.githubassets.com copilotprodattachments.blob.core.windows.net/github-production-copilot-attachments/ github-production-user-asset-6210df.s3.amazonaws.com customer-stories-feed.github.com spotlights-feed.github.com objects-origin.githubusercontent.com *.githubusercontent.com; manifest-src 'self'; media-src github.com user-images.githubusercontent.com/ secured-user-images.githubusercontent.com/ private-user-images.githubusercontent.com github-production-user-asset-6210df.s3.amazonaws.com gist.github.com; script-src github.githubassets.com; style-src 'unsafe-inline' github.githubassets.com; upgrade-insecure-requests; worker-src github.githubassets.com github.com/assets-cdn/worker/ github.com/assets/ gist.github.com/assets-cdn/worker/
server: github.com
content-encoding: gzip
accept-ranges: bytes
set-cookie: _gh_sess=fL8PtS6b9h4NmOkM9DC1ZpCHsxeL5p5pNoJa4%2B5up65ydBdPGDun3i1h3eShYw3J70ahznpKMyZoBdRjO5BwJ9p4TTZm%2FpdZ38%2BwvqiuD7pTg3aB5T3Rczl7maNfbzxzJClg5PZW2innko3383SSj0O6%2FppsPP9mN5g1ZxhNV5h%2B0uEqo%2FpjsADAGgcxNj4afuIDU01L2RvQVzuWtl0KaTlwl0DsEnUQkh5tCO4fYm5xUJrhu2tUGkveeDvtCVzhkX5MFU3xlCOtu0RlvbL8Ww%3D%3D--xvbCHOVQ1zUHCBxI--ZPWj9A38nWDpilwKTz5R1g%3D%3D; Path=/; HttpOnly; Secure; SameSite=Lax
set-cookie: _octo=GH1.1.263311366.1753640561; Path=/; Domain=github.com; Expires=Mon, 27 Jul 2026 18:22:41 GMT; Secure; SameSite=Lax
set-cookie: logged_in=no; Path=/; Domain=github.com; Expires=Mon, 27 Jul 2026 18:22:41 GMT; HttpOnly; Secure; SameSite=Lax
x-github-request-id: B9D8:0A61:7324BC:95A0AD:68866E71
Releases · devise-security/devise-security · GitHub
15 Apr 17:24
Loading
29 Dec 17:51
Loading
03 May 23:56
13 Jan 22:42
Loading
26 May 23:21
Loading
21 May 00:31
Loading
26 Apr 18:55
Loading
15 Apr 17:39
Loading
19 Oct 00:08
Loading
16 Apr 17:43
Loading
Skip to content
Navigation Menu
{{ message }}
-
Notifications
You must be signed in to change notification settings - Fork 154
Releases: devise-security/devise-security
Releases · devise-security/devise-security
v0.18.0
29ac909
This commit was created on GitHub.com and signed with GitHub’s verified signature.
The key has expired.
Compare
What's Changed
- Bump devise-security to 0.17.0 by @dillonwelch in #366
- Change create to use new when possible by @dillonwelch in #368
- Update rubocop by @olbrich in #364
- Update to use byebug directly so we can use newer pry by @dillonwelch in #371
- Bump rubocop-minitest from 0.17.0 to 0.19.1 by @dependabot in #387
- Bump solargraph from 0.44.2 to 0.44.3 by @dependabot in #383
- Add paranoid verfication config for devise_security.rb by @kossy0701 in #374
- Bump rubocop-rails from 2.13.0 to 2.14.2 by @dependabot in #379
- Bump mongoid from 7.3.3 to 7.4.0 by @dependabot in #385
- Bump railties from 5.2.6 to 5.2.7 by @dependabot in #382
- Bump rubocop from 1.24.0 to 1.27.0 by @dependabot in #386
- Bump sqlite3 from 1.4.2 to 1.4.4 by @dependabot in #395
- Bump rubocop from 1.27.0 to 1.28.2 by @dependabot in #391
- Bump rack from 2.2.3 to 2.2.3.1 by @dependabot in #396
- Bump railties from 5.2.7 to 5.2.8 by @dependabot in #393
- Bump nokogiri from 1.13.3 to 1.13.4 by @dependabot in #389
- Bump omniauth from 2.0.4 to 2.1.0 by @dependabot in #390
- Update copyright notice by @dillonwelch in #372
- Round 1 of Rubocop cleanup by @dillonwelch in #367
- Bump railties from 5.2.8 to 5.2.8.1 by @dependabot in #399
- Update fr.yml by @Arpsara in #398
- Add missing translations for other languages by @dillonwelch in #373
- Fix 'send' of 'path_for' on controller helpers by @djpremier in #376
- Bump tzinfo from 1.2.9 to 1.2.10 by @dependabot in #400
- Fix a grammer in a code comment by @garigari-kun in #401
- PasswordExpiredController: Accept block for update action by @vlad-psh in #402
- Delete outdated controller patches by @vlad-psh in #403
- Update minimum ruby development version to 2.7. by @olbrich in #417
- Fix for Devise 4.9.1 by @olivier-thatch in #414
- v0.18.0 Pre-release cleanup by @olbrich in #419
- Add Rails 7.0 & Ruby 3.1 support by @djpremier in #404
- Update Mongoid to 8.0 series by @petergoldstein in #407
New Contributors
- @kossy0701 made their first contribution in #374
- @Arpsara made their first contribution in #398
- @djpremier made their first contribution in #376
- @garigari-kun made their first contribution in #401
- @vlad-psh made their first contribution in #402
- @olivier-thatch made their first contribution in #414
- @petergoldstein made their first contribution in #407
Full Changelog: v0.17.0...v0.18.0
Assets 2
0.17.0
Compare
New Features
- Allow settings in
secure_validatable
to be overridden at a class or instance level (#356) - Add new setting for password complexity validator in
secure_validatable
(#356) - Allow redirect routes to be customized (#316)
- Add Bulgarian (bg) translations (#327)
Bug Fixes & Maintenance
- Fix translations for digits vs digit and symbols vs symbol (#345)
- Performance fixes for
email_equal_to_password
validation (#354) - Fix duplicate error messages in
password_expiration
workflow (#340) - Unlock
devise
version (#334) - Ensure passwords are not subject to another order when storing (#289)
- Only show "blank" error if password is missing (#342)
- Fix for
email_equal_to_password
validation when email isnil
(#320)
Assets 2
0.16.0
d27a172
This commit was created on GitHub.com and signed with GitHub’s verified signature.
The key has expired.
Compare
0.15.0
bdde3fb
This commit was created on GitHub.com and signed with GitHub’s verified signature.
The key has expired.
Compare
New Features
- Add Traditional Chinese (zh_TW) translations (#244)
- Add Czech (cs) translations (#242)
- Add Hindi (hi) translations (#241)
- Add Farsi (fa) translations (#240)
- Add Belarusian (be_By) translations (#236)
- Add Simplified Chinese (zh_CN) translations (#235)
- Add Ukrainian (uk_UA) translations (#233)
- Add Portuguese (pt) translations (#223)
- Add Dutch (nl) translations (#196)
- Add Russian (ru) translations (#128)
- Add missing German (de) translations (#123)
- Update
paranoid_verification_code/show.html.erb
andpassword_expired/show.html.erb
to use translations instead of hardcoded text (#115) - Allow flexible API response on
Devise::PasswordExpiredController
(#111)
Bug Fixes & Maintenance
- Reduce gem size (#248)
- Update to Spanish (es) translations (#234)
- Update for Italian (it) translations (#229)
- Remove requirement to include entirety of Rails ecosystem (#219)
- Password Expirable bugfix (#201)
- Fix spelling mistake in English (en) translations (#190)
- Fix attribute_changed? deprecation warning (#174)
- Update for German (de) translations (#126)
- Add deprecation warnings for Rails 4.2 (#124)
- Fix typo for Japan (ja) translations (#117)
Deprecations
- Dropped official support for Ruby 2.4 (#189) (See discussion here: #261 (comment))
Assets 2
0.14.3
6c0009b
This commit was created on GitHub.com and signed with GitHub’s verified signature.
The key has expired.
Compare
New Features
- N/A
Bug Fixes & Maintenance
- Fixes for problems caused because some modules that needed the compatibility module didn't explicitly include them. (#107)
Assets 2
0.14.2
249ec82
This commit was created on GitHub.com and signed with GitHub’s verified signature.
The key has expired.
Compare
Assets 2
v0.14.1
d0b44a7
This commit was created on GitHub.com and signed with GitHub’s verified signature.
The key has expired.
Compare
Assets 2
0.14.0
4315e34
This commit was created on GitHub.com and signed with GitHub’s verified signature.
The key has expired.
Compare
Assets 2
v0.13.0
b47d944
This commit was created on GitHub.com and signed with GitHub’s verified signature.
The key has expired.
Compare
Remove Ruby 2.2 support: #55
Remove Rails 4.1 support: #56 #57
Refactor Password Expirable: #45
Better documentation in generator file: #46
Support for Turkish locale: #38
Password complexity validation with ReDOS vulnerability: #31
Add frozen_string_literal: true
pragma: #34
Models now inherit from ApplicationRecord
: #30
Assets 2
v0.12.0
7979805
This commit was created on GitHub.com and signed with GitHub’s verified signature.
The key has expired.
Compare
Assets 2
Previous Next
You can’t perform that action at this time.