| Age | Commit message (Collapse) | Author | |
|---|---|---|---|
| 2020-01-09 | clarify the docs | Michael Merickel | |
| 2020-01-09 | fix paradigm to avoid incorrect usages | Michael Merickel | |
| It's almost impossible to create a decorator that works on both methods and functions, but more importantly the original approach was sharing a cache across instances of the policy. It needed to be local to the policy instance, but shared across requests. The new example demonstrates that. The cache is also much more flexible in its usage patterns now. | |||
| 2020-01-08 | grammar fixes | Michael Merickel | |
| 2020-01-08 | fix lint | Michael Merickel | |
| 2020-01-08 | add changed directives | Michael Merickel | |
| 2020-01-08 | add a RequestLocalCache class | Michael Merickel | |
| 2020-01-08 | invoke finished callbacks in prepare/bootstrap closers | Michael Merickel | |
| 2020-01-05 | handle settable property same as reify | Michael Merickel | |
| 2020-01-05 | support using descriptors other than property | Michael Merickel | |
| 2020-01-05 | allow overriding synthesized properties | Michael Merickel | |
| 2019-12-27 | isort | Michael Merickel | |
| 2019-12-26 | fix imp deprecation | Michael Merickel | |
| 2019-12-24 | add "of the documentation" pointer to deprecation warnings | Michael Merickel | |
| 2019-12-24 | security policy docs and legacy policy improvements | Michael Merickel | |
| - Added `set_security_policy`` to more places in the docs. - Ensure that the authn/authz policies are not used at all if the legacy policy is not in effect to avoid edge cases where the code would skip the security policy and use the authn/authz policy on accident. - Change deprecation warnings in code to reference the docs by name instead of by URL. | |||
| 2019-12-23 | Merge branch 'master' into luhn-authenticated-userid | Michael Merickel | |
| 2019-12-23 | modify deprecation warning | Michael Merickel | |
| 2019-12-17 | Improve docs for remember/forget. | Theron Luhn | |
| 2019-12-17 | Remove `identity` from authenticated_userid interface. | Theron Luhn | |
| 2019-12-16 | Fix EffectivePrincipalsPredicate deprecation warning. | Theron Luhn | |
| Fired upon registering, not upon use. | |||
| 2019-12-15 | Remove requirement that identity is validated. | Theron Luhn | |
| 2019-12-15 | Revert "Bring back identity into permits." | Theron Luhn | |
| This reverts commit 2e06fa414412688dc3b7e0b422b0fc0b96ec882f. | |||
| 2019-12-15 | handle a missing content negotiation case where the unencoded option is not ↵ | Michael Merickel | |
| available and the client requests an encoded variant that doesn't exist | |||
| 2019-12-15 | Merge pull request #3537 from mmerickel/negotiate-static-encoding | Michael Merickel | |
| negotiate the best static asset using supported encodings | |||
| 2019-12-15 | Four spaces of indentation. | Theron Luhn | |
| 2019-12-14 | Bring back identity into permits. | Theron Luhn | |
| 2019-12-14 | Update docs. | Theron Luhn | |
| 2019-12-14 | Fix tests for `DummySecurityPolicy`. | Theron Luhn | |
| 2019-12-14 | Raise error on kwargs in `LegacySecurityPolicy.forget`. | Theron Luhn | |
| 2019-12-14 | Bring back `identify` to `LegacySecurityPolicy`. | Theron Luhn | |
| 2019-12-14 | Correct implementation of Request.unauthenticated_userid. | Theron Luhn | |
| New implementation was not backwards compatible. This brings back the old implementation, except changing to pull from ISecurityPolicy.authenticated_userid when applicable. Also undeprecated the method again. | |||
| 2019-12-14 | Update docs from Configurator.testing_securitypolicy. | Theron Luhn | |
| 2019-12-14 | merge upstream | Éric Araujo | |
| 2019-12-14 | start reworking security policy | Éric Araujo | |
| 2019-12-04 | negotiate the best static asset using supported encodings | Michael Merickel | |
| 2019-12-04 | add missing versionadded directive on config.add_cache_buster | Michael Merickel | |
| 2019-11-05 | invoke `deprecated()` | jonathan vanasco | |
| 2019-11-05 | fixed rst; migrated some inline references to the docs | jonathan vanasco | |
| 2019-11-05 | updated docstring issuet | jonathan vanasco | |
| 2019-11-05 | changes based on feedback | jonathan vanasco | |
| 2019-11-05 | deprecate PickleSerializer | jonathan vanasco | |
| 2019-11-05 | black 19.10b0 was released on 2019.10.28 and introduced several changes that ↵ | jonathan vanasco | |
| affect Pyramid | |||
| 2019-10-17 | support Origin: null in csrf_trusted_origins and check_origin=False | Michael Merickel | |
| 2019-10-17 | remove check_csrf view predicate | Michael Merickel | |
| 2019-10-02 | define an IPredicateInfo instead of passing the full configurator to predicates | Michael Merickel | |
| 2019-10-02 | Merge pull request #3510 from mmerickel/scan-categories | Michael Merickel | |
| modify the default scan categories to be limited to only 'pyramid' | |||
| 2019-09-30 | Merge pull request #3465 from luhn/security-policy | Michael Merickel | |
| Security policy implementation | |||
| 2019-09-23 | Doc fixes from @Deimos | Theron Luhn | |
| 2019-09-19 | Document CSRF allow_no_origin option. | Theron Luhn | |
| 2019-09-19 | Add allow_no_origin option to CSRF. | Theron Luhn | |
| 2019-09-18 | modify the default scan categories to be limited to only 'pyramid' | Michael Merickel | |
