log

age author description
13 months ago Matthew Wild mod_pubsub_serverinfo: Update README to link to known issues
13 months ago Matthew Wild mod_audit_status: Expose 'crashed' flag
13 months ago aidan mod_http_upload_external: Fix typo in access documentation.
13 months ago Matthew Wild mod_firewall: Fix REPORT TO action name in documentation
13 months ago Kim Alvefur mod_blocking: Drop mention of mod_privacy
13 months ago Kim Alvefur mod_blocking: Deprecate
13 months ago Kim Alvefur mod_privacy_lists: Deprecate
13 months ago Kim Alvefur mod_firewall: Fix to find scripts when installed with plugin installer
13 months ago Matthew Wild mod_pubsub_mqtt: Update to MQTT 3.1.1
14 months ago Matthew Wild mod_pubsub_mqtt: Fix syntax error
14 months ago Matthew Wild mod_pubsub_mqtt: Add TLS port (default 8883) for MQTT connections
14 months ago Kim Alvefur mod_http_oauth2: Reuse JWT issuance time as substitute for auth time
14 months ago Matthew Wild mod_poke_strangers: Fix incorrect log method calls
14 months ago Kim Alvefur mod_http_muc_log: Remove compat for very old MUC API
14 months ago Matthew Wild mod_http_admin_api: metrics: Filter out a value that is commonly nan at startup
14 months ago Matthew Wild mod_groups_muc_bookmarks: Don't add deleted MUCs to user bookmarks
14 months ago Matthew Wild mod_groups_internal: Add flag to indicate when a linked MUC has been deleted
14 months ago Matthew Wild mod_groups_internal: Also remove MUCs that still exist, but have been destroyed
14 months ago Matthew Wild mod_groups_muc_bookmarks: Sync bookmarks when user is added/removed to/from multi-MUC group
14 months ago Matthew Wild mod_groups_internal: Sync MUC affiliations for multi-MUC groups
14 months ago Matthew Wild mod_groups_internal: Save MUC room after creation to commit it to storage
14 months ago Matthew Wild mod_groups_internal: Fix traceback when room doesn't exist
14 months ago Matthew Wild mod_sasl_ssdp: Fix event name so legacy SASL works correctly (thanks Martin!)
14 months ago Matthew Wild mod_password_policy: Change error type from 'cancel' to 'modify'
14 months ago Matthew Wild mod_pubsub_serverinfo: Treat public providers as public
14 months ago Matthew Wild mod_pubsub_serverinfo: Allow configuration of node persistence/deletion
14 months ago Matthew Wild mod_pubsub_serverinfo: Add explicit xmlns to all pubsub tags
14 months ago Matthew Wild mod_pubsub_serverinfo: Remove unused variable declaration
14 months ago Matthew Wild mod_pubsub_serverinfo: Some logging improvements
14 months ago Matthew Wild mod_pubsub_serverinfo: Refresh cache entries if they will expire before next run
15 months ago Guus der Kinderen mod_pubsub_serverinfo: Add node on compatibility
15 months ago Guus der Kinderen mod_pubsub_serverinfo: Warm-up opt-in cache
15 months ago Guus der Kinderen mod_pubsub_serverinfo: Fix namespace parsing issue with disco/info
15 months ago Guus der Kinderen mod_pubsub_serverinfo: Consider sibling vhosts 'connected'
15 months ago Guus der Kinderen mod_pubsub_serverinfo: Update documentation
15 months ago Guus der Kinderen mod_pubsub_serverinfo: Added 'Known Issues' section
15 months ago Guus der Kinderen mod_pubsub_serverinfo: Disco/info cache TTL should be configurable
15 months ago Guus der Kinderen mod_pubsub_serverinfo: Detect existence of pub/sub node
15 months ago Guus der Kinderen mod_pubsub_serverinfo: implemented all basic features
15 months ago tmolitor mod_csi_battery_saver: mark some presences as important
15 months ago Guus der Kinderen mod_pubsub_serverinfo: New module that uses pub/sub to make accessible server info
15 months ago Kim Alvefur mod_groups_internal: Set group names as roster groups
15 months ago Kim Alvefur mod_http_oauth2: Reduce log level for error delivery via redirect
15 months ago Kim Alvefur mod_http_oauth2: Tweak fallback error text
15 months ago Kim Alvefur mod_http_oauth2: Improve registration schema documentation parts
15 months ago Kim Alvefur mod_http_oauth2: Do not enforce PKCE on Device and OOB flows
15 months ago Matthew Wild mod_groups_internal: Return group name instead of MUC name if MUC has no name
15 months ago Matthew Wild mod_server_info: New module to add custom service extension forms to disco
15 months ago Matthew Wild mod_firewall: TO/FROM ROLE: Handle JIDs with no role (thanks Zash)
15 months ago Matthew Wild mod_firewall: Fix TO/FROM ROLE
15 months ago Matthew Wild mod_measure_active_users: Fix inverted logic (thanks mirux)
15 months ago Kim Alvefur mod_http_oauth2: Use color-scheme to get nice dark mode defaults
15 months ago Matthew Wild mod_isolate_host: Fix inverted logic in log message
15 months ago Matthew Wild mod_s2s_status: Add missing return (thanks Zash)
16 months ago Matthew Wild mod_c2s_conn_throttle: Reduce log level from error->info
16 months ago Matthew Wild mod_http_admin_api: Abort request if no valid username
16 months ago Matthew Wild mod_http_admin_api: Fix some luacheck warnings and code style issues
16 months ago Matthew Wild mod_http_admin_api: Support PATCH for user enabled status
16 months ago Matthew Wild mod_http_admin_api: Support for setting user account enabled status
16 months ago Matthew Wild mod_http_admin_api: Only include user deletion_request if account is disabled
16 months ago Matthew Wild mod_http_admin_api: Return avatar metadata from get_user_info()
16 months ago Matthew Wild mod_audit_auth: Improve user-agent building (fixes traceback)
16 months ago Matthew Wild mod_http_admin_api: Include information about pending deletion request, if any
16 months ago Matthew Wild mod_measure_active_users: Use the new mod_lastlog2 API
16 months ago Matthew Wild mod_measure_active_users: Exclude disabled user accounts from counts
16 months ago Matthew Wild mod_lastlog2: Fix to interpret stored data structure correctly
16 months ago Matthew Wild mod_http_admin_api: Include user account status and activity in get_user_info
16 months ago Matthew Wild mod_lastlog2: Expose API to query the last active time of a user
16 months ago Matthew Wild mod_sasl_ssdp: New module implementing XEP-0474 SASL SCRAM Downgrade Protection
16 months ago Kim Alvefur mod_log_sasl_mech: Handle auth event from other than mod_saslauth
16 months ago Kim Alvefur mod_http_oauth2: Add logger to "session" for auth event
16 months ago Kim Alvefur mod_http_oauth2: Move some code earlier
16 months ago Kim Alvefur mod_restrict_xmpp: Allow all XEP-0199 pings to self
16 months ago Kim Alvefur mod_restrict_xmpp/README: Fix definition list rendering
16 months ago Kim Alvefur mod_http_oauth2: Reject unparsable URLs
16 months ago Kim Alvefur mod_http_oauth2: Return validation output added in trunk rev 72d7830505f0
16 months ago Kim Alvefur mod_s2s_smacks_timeout: Add note about being merged in trunk mod_s2s
16 months ago Kim Alvefur mod_http_oauth2: Handle login_hint without @hostpart
16 months ago Kim Alvefur mod_audit: Fix querying for both user and global events
16 months ago Kim Alvefur mod_storage_s3: Fix mapping archive query limit to ?max-keys=
16 months ago Kim Alvefur mod_audit: Fix error due to sub-second precision timestamps
16 months ago Kim Alvefur mod_storage_s3: Remove wrapper and original timestamp from payload (BC)
16 months ago Kim Alvefur mod_storage_s3: Fix sorting items by correct field
16 months ago Kim Alvefur mod_storage_s3: Fix passing of prefixes, should not be urlencoded
16 months ago Kim Alvefur mod_audit: Update command to handle storing JIDs instead of only usernames
16 months ago Kim Alvefur mod_client_management: Include session in the other new-client event too
16 months ago Kim Alvefur luacheckrc: Replace deprecated module:once with :on_ready
16 months ago Kim Alvefur mod_restrict_xmpp: Add vcard4 PEP node to profile permission
16 months ago Kim Alvefur mod_client_management: Include session in new-client event
16 months ago Kim Alvefur mod_http_oauth2: Fire authentication events on login form
16 months ago Kim Alvefur mod_http_oauth2: Comment on authorization code storage
16 months ago Kim Alvefur mod_audit_tokens: Record events fired by mod_tokenauth in audit log
16 months ago Matthew Wild mod_audit_auth: Add audit record when a client connects that has not been seen before
16 months ago Matthew Wild mod_audit_auth: Ignore FAST authentication events by default
16 months ago Matthew Wild mod_restrict_xmpp: Fix remaining hard-coded role name
16 months ago Matthew Wild mod_audit: Update README with new name of mod_audit_register
16 months ago Matthew Wild mod_audit_user_accounts: Renamed from mod_audit_register
16 months ago Matthew Wild mod_audit_register: Support for deregister and enable/disable events
16 months ago Matthew Wild mod_audit_status: Support writing heartbeat with async storage drivers
16 months ago Kim Alvefur mod_storage_xmlarchive: Support using requested archive-id
16 months ago Kim Alvefur mod_storage_xmlarchive: Pass hostname to converter for converting all users
16 months ago Kim Alvefur mod_storage_xmlarchive: Migrate all users/rooms if no JID argument given
16 months ago Kim Alvefur misc: Add a basic grafterm dashboard
16 months ago Kim Alvefur misc: Add a Grafana dashboard
16 months ago Kim Alvefur mod_storage_s3: Sort archive items by LastModified
16 months ago Kim Alvefur mod_storage_s3: Reorder path components (BC: invalidates any existing data)
16 months ago Kim Alvefur mod_storage_s3: Fix querying for basic MAM parameters
16 months ago Kim Alvefur luacheck: Add new module API methods from trunk
16 months ago Kim Alvefur mod_storage_s3: Implement search for set of IDs
16 months ago Kim Alvefur mod_storage_s3: Advertise full id range archive query capability
16 months ago Kim Alvefur mod_audit: Use new module API for period/time ranges
16 months ago Kim Alvefur mod_auth_oauth_external: Fix typo
16 months ago Kim Alvefur mod_storage_xmlarchive: Fix "user" iteration API
16 months ago Kim Alvefur mod_storage_s3: Fix storing archives for host itself (e.g. mod_audit)
16 months ago Matthew Wild mod_register_redirect: docs: Fix typo in example (thanks melvo)
16 months ago Matthew Wild mod_sasl2_sm: Remove duplicate advertisement of stream management (thanks singpolyma)
16 months ago Emmanuel Gil Peyrot mod_invites_page: Add support for Haiku and mobile Linux
16 months ago Emmanuel Gil Peyrot mod_invites_page: Also remove jQuery usage in client page
16 months ago Emmanuel Gil Peyrot mod_invites_page: Stop displaying the QRCode to mobile devices
16 months ago Emmanuel Gil Peyrot mod_register_apps: Remove intrinsic size from SVGs, to always display them at their full size
16 months ago Emmanuel Gil Peyrot mod_invites_page: Typo in preventing the default event when clicking on show all
16 months ago Emmanuel Gil Peyrot mod_http_avatar: Fix displaying the fallback on Firefox
16 months ago Emmanuel Gil Peyrot mod_invites_page: Move the JS script to its own file
16 months ago Emmanuel Gil Peyrot mod_invites_page: Replace jQuery with vanilla.js in the HTML
16 months ago Emmanuel Gil Peyrot mod_register_apps: Add Renga to the list of supported clients
16 months ago Kim Alvefur mod_http_oauth2: Make defaults more secure
16 months ago Kim Alvefur mod_http_oauth2: Skip consent screen if requested by client and same scopes already granted
16 months ago Kim Alvefur mod_audit: Replace argument parsing debug print() with debug logging
16 months ago Kim Alvefur mod_audit_register: Include hostpart with audit events here too
16 months ago Kim Alvefur mod_audit_auth: Include hostpart with audit events
16 months ago Kim Alvefur mod_audit: Fix storing IP prefixes
16 months ago Kim Alvefur mod_audit: Fix showing session details in module command
16 months ago Kim Alvefur mod_audit: Also record human-readable name of country
16 months ago Kim Alvefur mod_audit: Fix recording location info
16 months ago Kim Alvefur mod_audit: Parse IP into util.ip object once and reuse
16 months ago Kim Alvefur mod_audit: Pass IP address in string form
16 months ago Kim Alvefur mod_audit: Fix use of util.ip
16 months ago Kim Alvefur mod_firewall: Add FROM COUNTRY condition based on GeoIP DB
16 months ago Kim Alvefur mod_firewall: Tweak page outline
16 months ago Kim Alvefur mod_aws_profile: Fix use of timer API
16 months ago Kim Alvefur mod_auth_oauth_external: Enable experimental http connection pooling
16 months ago Kim Alvefur mod_storage_s3: Enable connection pooling added in latest trunk
16 months ago Kim Alvefur mod_storage_s3: Fix logging
16 months ago Kim Alvefur mod_storage_s3: Sort imports
16 months ago Kim Alvefur mod_storage_s3: Implement archive store deletion
16 months ago Kim Alvefur mod_storage_s3: Skip archive items matching on date but not full datetime
16 months ago Kim Alvefur mod_storage_s3: Move request signing into a net.http hook
16 months ago Kim Alvefur mod_client_management: Report on longest lived token when grant does not expire
17 months ago Matthew Wild mod_muc_members_json: Fix typo in example and set correct syntax highlighter
17 months ago Matthew Wild mod_muc_members_json: Expand example config and docs for clarity
17 months ago Kim Alvefur mod_storage_appendmap: Include timestamps when appending data
17 months ago Kim Alvefur mod_storage_appendmap: Implement item/user iteration methods
17 months ago Kim Alvefur mod_http_health: Copypaste IP access control code
17 months ago Kim Alvefur mod_dnsupdate: Support advertising explicit non-existence of service
17 months ago Matthew Wild mod_http_admin_api: Support for adding/removing group MUCs
17 months ago Matthew Wild mod_groups_muc_bookmarks: Update bookmarks when a group MUC is added/removed
17 months ago Matthew Wild mod_groups_internal: Update to support multiple MUCs per group
17 months ago Matthew Wild mod_storage_ejabberdsql_readonly: Don't use MySQL-specific syntax
17 months ago Kim Alvefur mod_client_management: Bail out retrieving tokens for user
17 months ago Kim Alvefur mod_http_oauth2: Limit revocation to clients own tokens in strict mode
17 months ago Kim Alvefur mod_http_oauth2: Restrict introspection to clients own tokens
22 months ago Kim Alvefur mod_http_oauth2: Implement introspection endpoint
17 months ago Kim Alvefur mod_http_status: Add IP allowlisting capabilities
17 months ago Kim Alvefur mod_rest: Limit payload size (cf stanza size limits)
17 months ago Kim Alvefur mod_storage_s3: Add brief README
17 months ago Kim Alvefur mod_storage_s3: Treat 404 to GET as a signal for empty data
17 months ago Kim Alvefur mod_storage_s3: Use '@' as placeholder for empty (host) store slots
17 months ago Kim Alvefur mod_storage_s3: Handle archive query without parameters
17 months ago Kim Alvefur mod_storage_s3: Implement Archive storage
17 months ago Kim Alvefur mod_storage_s3: Implement iteration of keyvalue keys (users usually)
17 months ago Kim Alvefur mod_storage_s3: Implement keyvalue deletion
17 months ago Kim Alvefur mod_storage_s3: Handle signing of request ?query part
17 months ago Kim Alvefur mod_storage_s3: Beginnings of an experimental S3 storage driver
18 months ago Kim Alvefur mod_measure_modules: Report module statuses via OpenMetrics
18 months ago Kim Alvefur mod_http_health: Provide a health check HTTP endpoint
18 months ago Kim Alvefur mod_rest/rest.sh: Restore default read-only behavior and the -rw flag
18 months ago Kim Alvefur mod_http_oauth2: Include 'amr' claim in ID Token
18 months ago Stephen Paul Weber mod_push2: restore offline message hook
18 months ago Stephen Paul Weber mod_push2: Need to include the public key with the JWT
18 months ago Stephen Paul Weber mod_push2: Add note about luaossl patch
18 months ago Stephen Paul Weber mod_push2: Fix unbalanced quote in readme
18 months ago Stephen Paul Weber mod_push2: Add back body truncation logic
18 months ago Stephen Paul Weber Initial work on Push 2.0
18 months ago Kim Alvefur mod_muc_adhoc_bots: Fix unbalanced quote in metadata section
18 months ago Kim Alvefur mod_muc_members_json: Fix potential error when removing old affiliations
18 months ago Kim Alvefur mod_http_muc_log: Correctly handle changed or retracted reactions
18 months ago Kim Alvefur mod_muc_members_json: Demonstrate support for more than one JID per list
18 months ago Kim Alvefur mod_muc_members_json: Fix invalid JSON in README
18 months ago Stephen Paul Weber Merge
18 months ago Stephen Paul Weber mod_muc_adhoc_bots: add module
23 months ago Stephen Paul Weber mod_pubsub_subscription: support subscribing from a bare JID
23 months ago Stephen Paul Weber merge
2023-02-23 Stephen Paul Weber mod_muc_restrict_avatars: Block MUC participant avatars for non-members
18 months ago Kim Alvefur misc/mtail: Start of an mtail config
18 months ago Kim Alvefur mod_muc_moderation: Mention that it works with mod_storage_xmlarchive (thanks Menel)
18 months ago Kim Alvefur mod_http_oauth2: Apply refresh token ttl to refresh token instead of grant
18 months ago Kim Alvefur mod_client_management: Show grant expiry in shell command
18 months ago Kim Alvefur mod_http_oauth2: Tweak wording in README to point out that this is an AS
18 months ago Kim Alvefur mod_http_oauth2: Allow 'login_hint' as a substitute for OIDC 'select_account' prompt
19 months ago Kim Alvefur mod_http_oauth2: Remove broken in-CSS templating
19 months ago Kim Alvefur mod_bidi: Really extra finally fix auto-linking to mod_s2s_bidi
19 months ago Kim Alvefur mod_bidi: Fix README again
19 months ago Kim Alvefur mod_bidi: Fix autolink syntax
19 months ago Kim Alvefur mod_bidi: Add warning about use with 0.12
19 months ago Kim Alvefur mod_rest/rest.sh: Silence shellcheck SC1091
19 months ago Kim Alvefur mod_rest/rest.sh: Update to use httpie-oauth2 plugin
19 months ago Kim Alvefur mod_http_oauth2: Specify language in templates
19 months ago Kim Alvefur mod_http_oauth2: Remove duplicated word in README introduced in 734788d8bfc3
19 months ago Kim Alvefur mod_http_oauth2: Allow omitting application type for native apps
19 months ago Kim Alvefur mod_client_management: Show timestamp of first client appearance
20 months ago Kim Alvefur mod_http_oauth2: Improve templates
20 months ago Kim Alvefur mod_http_oauth2: Add autocomplete hint to username field
20 months ago Kim Alvefur mod_http_oauth2: Make storage of various code more consistent
20 months ago Kim Alvefur mod_http_oauth2: Bail on invalid or expired device flow state token
20 months ago Kim Alvefur mod_http_oauth2: Tweak method of centering the UI
20 months ago Kim Alvefur mod_http_oauth2: Optionally enforce authentication on revocation endpoint
20 months ago Kim Alvefur mod_http_oauth2: Present errors in HTML <dialog>
20 months ago Kim Alvefur mod_http_oauth2: Move site name into <header>
20 months ago Kim Alvefur mod_http_oauth2: Conform to XHTML in templates
20 months ago Kim Alvefur mod_s2sout_override: Add support for one-level wildcards (e.g. *.example.net)
20 months ago Kim Alvefur mod_s2sout_override: Add support for a catch-all target
20 months ago Kim Alvefur mod_invites_page: Produce URL without config from prosodyctl in trunk
20 months ago Kim Alvefur mod_http_oauth2: Don't use new time period API just yet
20 months ago Kim Alvefur mod_http_oauth2: Clean cache less frequently
20 months ago Kim Alvefur mod_http_oauth2: Shorten default token validity periods
20 months ago Kim Alvefur mod_http_oauth2: Implement refresh token rotation
20 months ago Kim Alvefur mod_http_oauth2: Hint at future deprecation of resource owner password grant
20 months ago Kim Alvefur mod_http_oauth2: Allow a shorter form of the device grant in config
20 months ago Kim Alvefur mod_http_oauth2: Mention Device flow in list of flows in README
20 months ago Kim Alvefur mod_muc_moderation: Stamp XEP-0421 occupant-id for the acting moderator
20 months ago Kim Alvefur mod_muc_moderation: Copy XEP-0421 occupant-id from retracted message
20 months ago Kim Alvefur mod_muc_block_pm: Advertise that Moderators are allowed to send PMs
20 months ago Kim Alvefur mod_muc_block_pm: Allow private messages to yourself
20 months ago Kim Alvefur mod_http_oauth2: Show errors on device flow user code entry page
20 months ago Kim Alvefur mod_http_oauth2: Namespace the various codes to minimize confusion
20 months ago Kim Alvefur mod_default_bookmarks: Include 'autojoin' in examples
20 months ago Kim Alvefur mod_http_oauth2: Improve a description in schema
20 months ago Kim Alvefur editorconfig: Document established conventions
20 months ago Kim Alvefur mod_muc_limits: Drop unsupported Prosody versions from Compatibility table
20 months ago Kim Alvefur mod_muc_limits: Set syntax of config snippets to enable syntax highlighting
20 months ago Kim Alvefur mod_muc_limits: Reduce cost of multi-line messages, make configurable
20 months ago Kim Alvefur mod_client_management: Make ID column dynamically sized
20 months ago Kim Alvefur mod_client_management: Fix traceback if no last seen timestamp available
20 months ago Kim Alvefur mod_http_oauth2: Add titles and descriptions to registration schema
20 months ago Kim Alvefur mod_client_management: Fix missing equality check
20 months ago Kim Alvefur mod_client_management: Allow revoking a specific client version
20 months ago Kim Alvefur mod_client_management: Add way to revoke (one) client by software
20 months ago Kim Alvefur mod_client_management: Add shell command to revoke client access
20 months ago Kim Alvefur mod_client_management: Include software version in table (when known)
20 months ago Kim Alvefur mod_client_management: Include the client id in table in shell command
20 months ago Kim Alvefur mod_muc_block_pm: Update to 0.12+ API, use roles instead of affiliations
21 months ago Kim Alvefur mod_http_muc_log: Fix redirect bug
21 months ago Kim Alvefur mod_http_oauth2: Implement RFC 8628 Device Authorization Grant
21 months ago Kim Alvefur mod_http_oauth2: Mention support for RFC 9207
21 months ago Matthew Wild mod_muc_members_json: Set imported hats to active by default
21 months ago Matthew Wild mod_muc_members_json: New module to import MUC membership from a JSON URL
21 months ago Kim Alvefur mod_rest: Use logger of HTTP request in trunk
21 months ago Kim Alvefur mod_measure_lua: Add brief README
21 months ago Kim Alvefur mod_groups_oidc: Add dependency on mod_groups_internal
21 months ago Matthew Wild Multiple modules: Update for split prosody:user role (prosody 082c7d856e61)
21 months ago Kim Alvefur mod_http_muc_log: Hide joins and parts by default
21 months ago Kim Alvefur mod_http_oauth2: Only add nonce when issuing a client_secret
21 months ago Kim Alvefur mod_pubsub_feeds: Specify acceptable formats in Accept header
21 months ago Kim Alvefur mod_pubsub_feeds: Pass feed data as argument instead of storing on object
21 months ago Kim Alvefur mod_pubsub_feeds: Retrieve only the most recent item to compare
21 months ago Kim Alvefur mod_pubsub_feeds: Handle node already existing
21 months ago Kim Alvefur mod_pubsub_feeds: Remove comment, this text is in the README
21 months ago Kim Alvefur mod_pubsub_feeds: Remove broken attempt to generate an ID from content
21 months ago Kim Alvefur mod_pubsub_feeds: Fix mixup between feed object and parsed feed
21 months ago Kim Alvefur mod_pubsub_feeds: Create pubsub nodes on module load instead of later
21 months ago Kim Alvefur mod_pubsub_feeds: Track latest timestamp seen in feeds instead of last poll
21 months ago Kim Alvefur mod_pubsub_feeds: Add new interval setting in seconds (old still works)
21 months ago Kim Alvefur mod_pubsub_feeds: Disable WebSub (formerly PubSubHubbub) by default
21 months ago Kim Alvefur mod_http_oauth2: Always show list of requested scopes
21 months ago Kim Alvefur mod_muc_limits: Add a limit on number of bytes in a message body
21 months ago Kim Alvefur mod_muc_limits: Add a limit on number of lines per message
21 months ago Kim Alvefur mod_muc_limits: Normalise README markdown syntax (thanks pandoc)
21 months ago Kim Alvefur mod_muc_limits: Raise cost for multi-line messages
21 months ago Kim Alvefur Back out 22784f001b7f: Documentation change did not match code (thanks bronko)
21 months ago Kim Alvefur mod_http_oauth2: Rearrange description of redirect URIs requirements
21 months ago Kim Alvefur mod_http_oauth2: Add a more complete client registration example
21 months ago Kim Alvefur mod_http_oauth2: Strip JWKS metadata since we do not understand that
21 months ago Kim Alvefur mod_http_oauth2: Strip unknown client metadata
21 months ago Kim Alvefur mod_rest: Map the archive-id attribute in MAM result items
21 months ago Kim Alvefur mod_rest: Include full_jid property on origin
21 months ago Kim Alvefur mod_oidc_userinfo_vcard4: Remove unused import
21 months ago Kim Alvefur mod_oidc_userinfo_vcard4: Fix typo
21 months ago Kim Alvefur mod_http_oauth2: Make allowed locales configurable
21 months ago Kim Alvefur mod_http_oauth2: Improve error messages for URI properties
21 months ago Kim Alvefur mod_rest: Describe the error 'by' property in OpenAPI spec
21 months ago Kim Alvefur mod_rest: List all error conditions in OpenAPI spec
21 months ago Kim Alvefur mod_http_oauth2: Make note about handling repeated
21 months ago Kim Alvefur mod_http_oauth2: Add TODO about disabling password grant
21 months ago Kim Alvefur mod_http_oauth2: Disable CORS for authorization endpoint
21 months ago Kim Alvefur mod_http_oauth2: Make CSP configurable
21 months ago Kim Alvefur mod_http_oauth2: Link to RFC 7628 in README
21 months ago Kim Alvefur mod_http_oauth2: Use code spans for some config options in README
22 months ago Kim Alvefur mod_http_oauth2: Remove underscore prefix
22 months ago Kim Alvefur mod_cloud_notify_extensions: Fix Markdown syntax of Compatibility table
22 months ago Matthew Wild mod_firewall: Add console commands to mark/unmark users
22 months ago Matthew Wild mod_firewall: Load marks from storage on demand rather than at login
22 months ago Matthew Wild mod_firewall: Log warning when attempting to mark/unmark remote users
22 months ago Matthew Wild mod_firewall: enable marks by default
22 months ago Matthew Wild mod_firewall: Improve error when mark name contains invalid characters
22 months ago Matthew Wild mod_firewall: marks: Fix marking a user with no previous marks
22 months ago Matthew Wild mod_firewall: Update user marks to store instantly via map store
22 months ago Matthew Wild mod_firewall: Split some long lines [luacheck]
22 months ago Matthew Wild mod_firewall: Fix inverted logic of 'FROM FULL JID?'
22 months ago Matthew Wild mod_firewall: spam-blocking.pfw: Remove requirement for invites to have no body
22 months ago Matthew Wild mod_firewall: scripts: spam-blocklists: Check sender and inviter of MUC invitations against blocklist
22 months ago Matthew Wild mod_firewall: scripts: spam-blocking.pfw: Add special handling for MUC invites
22 months ago Matthew Wild mod_firewall: Add 'FROM FULL JID?' condition
22 months ago Matthew Wild mod_firewall: README: Add some emphasis on the exact behaviour of TO FULL JID
22 months ago Kim Alvefur mod_rest: Merge some common properties between openapi and schema
22 months ago Kim Alvefur mod_rest: Apply normalization to openapi spec
22 months ago Kim Alvefur mod_http_oauth2: Simplify template using if-falsy operator
22 months ago Kim Alvefur mod_http_dir_listing2: Fix wrong name for resource directory
22 months ago Kim Alvefur mod_http_dir_listing2: Include html resources with plugin installer
22 months ago Kim Alvefur mod_http_dir_listing: Strip path to using plugin installer
22 months ago Kim Alvefur mod_firewall: Include scripts with plugin installer (thanks gooya)
22 months ago Kim Alvefur mod_http_oauth2: Add some words about supported flows and defaults
22 months ago Kim Alvefur mod_http_oauth2/README: Expand summary to include OAuth 2.0 role
22 months ago Kim Alvefur mod_http_oauth2: Return Authentication Time per OpenID Core Section 2
22 months ago Kim Alvefur mod_http_oauth2: Validate the OpenID 'prompt' parameter
22 months ago Kim Alvefur mod_http_oauth2: Apply text color to OOB input field
22 months ago Kim Alvefur mod_client_management: Include client software version number in listing
22 months ago Kim Alvefur mod_http_oauth2: Present OOB code in an input field for easier selection
22 months ago Kim Alvefur mod_http_oauth2: Revert strict form check to allow consent of multiple scopes
22 months ago Kim Alvefur mod_http_oauth2: Reject duplicate form-urlencoded parameters
22 months ago Kim Alvefur mod_http_oauth2: Bind refresh tokens to client
22 months ago Kim Alvefur mod_http_oauth2: Record hash of client_id to allow future verification
22 months ago Kim Alvefur mod_http_oauth2: Add client verification wrapper function
22 months ago Kim Alvefur mod_http_oauth2: Add Cache-Control and Pragma headers per by RFC 6749
22 months ago Kim Alvefur mod_http_oauth2: Linkify mod_client_management in README
22 months ago Kim Alvefur mod_http_oauth2: Fix messed up section about redirect_uris requirements
22 months ago Kim Alvefur mod_http_oauth2: Restructure description of client metadata requirements
22 months ago Kim Alvefur mod_http_oauth2: Correct loopback URL example
22 months ago Kim Alvefur mod_groups_oidc: Expose groups to OAuth clients
22 months ago Kim Alvefur mod_oidc_userinfo_vcard4: Advertise OpenID scopes via new mechanism
22 months ago Kim Alvefur mod_http_oauth2: Add provisions for dynamically adding simple scopes
22 months ago Kim Alvefur mod_http_oauth2: Sort imports
22 months ago Kim Alvefur mod_http_oauth2: Fix closing h1 tag
22 months ago Kim Alvefur mod_auth_oauth_external: Correct docs about default scope
22 months ago Kim Alvefur misc/lnav: Add a README with installation instructions
22 months ago Kim Alvefur misc/lnav: Fix delimiting of timestamp in pattern
22 months ago Kim Alvefur misc/lnav: Fix timestamp-format to be an array as per schema
22 months ago Kim Alvefur mod_http_oauth2: Create proper template for OOB code delivery
22 months ago Kim Alvefur mod_http_oauth2: Add an example of client registration
22 months ago Kim Alvefur mod_http_oauth2: Document client registration requirements
22 months ago Kim Alvefur mod_http_debug: Handle any path under /debug/* as well
22 months ago Kim Alvefur mod_http_debug: Log some extended info about requests
22 months ago Kim Alvefur mod_http_debug: Handle more HTTP methods
22 months ago Kim Alvefur mod_http_debug: Add a brief README
22 months ago Kim Alvefur mod_rest/example: Include 'application_type' in registration
22 months ago Kim Alvefur mod_s2sout_override: Add support for Direct TLS
22 months ago Kim Alvefur mod_s2sout_override: New module for overriding s2s connections
22 months ago Matthew Wild mod_pubsub_alertmanager: Support for per-path config overrides
22 months ago Kim Alvefur mod_muc_moderation: Point to new Conversations issue tracker
22 months ago Matthew Wild mod_invites_adhoc: Fall back to generic allow_user_invites for role-less users
22 months ago Kim Alvefur mod_invites{,_adhoc,_register}: Recommend using version included with prosody
22 months ago Kim Alvefur mod_welcome_page: Remove dependency on mod_invites (included with Prosody)
22 months ago Kim Alvefur mod_http_oauth2: Allow CORS for browser clients
22 months ago Kim Alvefur mod_http_oauth2: Disable Referrer via header
22 months ago Kim Alvefur mod_http_oauth2: Always render errors as HTML for OOB redirect URI
22 months ago Kim Alvefur mod_http_oauth2: Use validated redirect URI when returning errors to client
22 months ago Kim Alvefur mod_http_oauth2: Return OAuth error for authz code store error
22 months ago Kim Alvefur mod_http_oauth2: Validate redirect_uri before using it for error redirects
22 months ago Kim Alvefur mod_http_oauth2: Don't return redirects or HTML from token endpoint
22 months ago Kim Alvefur mod_http_oauth2: Tweak formatting of log message
22 months ago Kim Alvefur mod_http_oauth2: Always show early errors to user
22 months ago Kim Alvefur mod_http_oauth2: Clarify some error messages
22 months ago Kim Alvefur mod_http_oauth2: Use error status code when rendering error page
22 months ago Kim Alvefur mod_http_oauth2: Add human-readable error messages
22 months ago Kim Alvefur mod_http_oauth2: Fix returning errors from response handlers
22 months ago Kim Alvefur mod_http_oauth2: Add a special "xmpp" scope that grants the users' default role
22 months ago Kim Alvefur mod_http_oauth2: Add support for the OpenID 'login_hint' parameter
22 months ago Kim Alvefur mod_http_oauth2: Note about partial OpenID Discovery implementation
22 months ago Kim Alvefur mod_http_oauth2: Split long list line in README
22 months ago Kim Alvefur mod_http_oauth2: Proper OAuth error for invalid redirect URI in implicit flow too
22 months ago Kim Alvefur mod_http_oauth2: Return proper OAuth error for invalid redirect URI
22 months ago Kim Alvefur mod_http_oauth2: Fix use of arbitrary ports in loopback redirect URIs
22 months ago Kim Alvefur mod_http_oauth2: Add FIXME about loopback redirect URIs
22 months ago Kim Alvefur mod_http_oauth2: Rename variables to improve clarity
22 months ago Kim Alvefur mod_http_oauth2: Do minimal validation of private-use URI schemes
22 months ago Kim Alvefur mod_http_oauth2: Reject relative redirect URIs
22 months ago Kim Alvefur mod_http_oauth2: Reject duplicate list items in client registration
22 months ago Kim Alvefur mod_http_oauth2: Require non-empty arrays in client registration
22 months ago Kim Alvefur mod_http_oauth2: Reject duplicate redirect URIs in registration
22 months ago Kim Alvefur mod_http_oauth2: Fix schema to enforce at least one redirect URI
23 months ago Kim Alvefur mod_http_oauth2: Show only roles the user can use in consent dialog
23 months ago Kim Alvefur mod_http_oauth2: Reference grant by id instead of value
23 months ago Kim Alvefur mod_http_oauth2: Scope FIXMEs
23 months ago Kim Alvefur mod_http_oauth2: Describe type signatures of scope handling functions
23 months ago Kim Alvefur mod_http_oauth2: Allow requesting a subset of scopes on token refresh
23 months ago Kim Alvefur mod_http_oauth2: Enforce client scope restrictions in authorization
23 months ago Kim Alvefur mod_http_oauth2: Fix inclusion of role in refreshed access tokens
23 months ago Kim Alvefur mod_http_oauth2: Fix unintentional persistence
23 months ago Kim Alvefur mod_auth_oauth_external: Update compatibility section with unknowns
23 months ago Kim Alvefur mod_auth_oauth_external: Also do XEP-0106 escaping in SASL OAUTHBEARER
23 months ago Kim Alvefur mod_auth_oauth_external: Stub not implemented auth module methods
23 months ago Kim Alvefur mod_auth_oauth_external: Add Mastodon to README
23 months ago Kim Alvefur mod_auth_oauth_external: Allow different username in PLAIN vs final JID
23 months ago Kim Alvefur mod_auth_oauth_external: Remove untested JID mapping
23 months ago Kim Alvefur mod_auth_oauth_external: Remove untested role mapping
23 months ago Kim Alvefur mod_auth_oauth_external: Expect XEP-0106 escaped username in PLAIN
23 months ago Kim Alvefur mod_auth_oauth_external: Make 'scope' configurable in password grant request
23 months ago Kim Alvefur mod_auth_oauth_external: Add setting for client_secret
23 months ago Kim Alvefur mod_auth_oauth_external: Work without token validation endpoint
23 months ago Kim Alvefur mod_auth_oauth_external: Fix missing import of util.jid
23 months ago Kim Alvefur mod_rest/rest.sh: Trim trailing whitespace
23 months ago Kim Alvefur mod_rest/rest.sh: Add --logout to revoke token
23 months ago Kim Alvefur mod_rest/rest.sh: Make scopes to request configurable in restrc
23 months ago Kim Alvefur mod_http_oauth2: Strip unknown scopes from consent page
23 months ago Kim Alvefur mod_http_oauth2: Simplify code with the power of first class functions
23 months ago Kim Alvefur mod_http_oauth2: More functional functions
23 months ago Kim Alvefur mod_http_oauth2: Add function for filtering roles
23 months ago Kim Alvefur mod_http_oauth2: Support granting zero role-scopes
23 months ago Kim Alvefur mod_http_oauth2: Revert role selector, going to try something else
23 months ago Kim Alvefur mod_http_oauth2: Include all granted roles in scopes
23 months ago Kim Alvefur mod_block_registrations: Refresh Compatibility section
23 months ago Kim Alvefur mod_block_registrations: Update description expansion of default list
23 months ago Kim Alvefur mod_http_oauth2: Bail out of implicit flow on invalid or missing redirect
23 months ago Kim Alvefur mod_http_oauth2: Fix error if no scopes requested
23 months ago Kim Alvefur mod_http_oauth2: Add role selector to consent page
23 months ago Kim Alvefur mod_http_oauth2: Refactor scope handling into smaller functions
23 months ago Kim Alvefur mod_http_oauth2: Add option for specifying TTL of registered clients
23 months ago Kim Alvefur mod_strict_https: Add way to disable redirect
23 months ago Kim Alvefur mod_strict_https: Refresh README
23 months ago Kim Alvefur mod_prometheus: Wrap pointer to mod_http_openmetrics in a box
23 months ago Kim Alvefur mod_listusers: Obsolete, suggest prosodyctl shell instead
23 months ago Kim Alvefur mod_strict_https: Update to use modern APIs instead of monkey patching
23 months ago Kim Alvefur mod_http_oauth2: Link to RFC 7009: OAuth 2.0 Token Revocation
23 months ago Kim Alvefur mod_http_oauth2: Add service documentation URL to metadata
23 months ago Kim Alvefur mod_http_oauth2: Allow configuring links to policy and terms in metadata
23 months ago Kim Alvefur mod_http_oauth2: Don't issue client_secret when not using authentication
23 months ago Kim Alvefur mod_http_oauth2: Validate consistency of response and grant types
23 months ago Kim Alvefur mod_http_oauth2: Enforce response type encoded in client_id
23 months ago Kim Alvefur mod_http_oauth2: Strip unknown extra fields from client registration
23 months ago Kim Alvefur mod_http_oauth2: Simplify validation of various URIs
23 months ago Kim Alvefur mod_http_oauth2: More appropriate error conditions in client validation
23 months ago Kim Alvefur mod_http_oauth2: Reject loopback URIs as client_uri
23 months ago Kim Alvefur mod_http_oauth2: Reduce line count of metadata construction
23 months ago Kim Alvefur mod_http_oauth2: Advertise response modes
23 months ago Kim Alvefur mod_http_oauth2: Advertise supported grant types
23 months ago Kim Alvefur mod_http_oauth2: Advertise revocation endpoint in metadata
23 months ago Kim Alvefur mod_http_oauth2: Return status 405 for GET to endpoints without GET handler
23 months ago Kim Alvefur mod_inotify_reload: Update to use FD watching method
23 months ago Kim Alvefur mod_http_oauth2: Allow loopback IP literals in redirect URIs
23 months ago Kim Alvefur mod_http_oauth2: Add way to retrieve registration schema
23 months ago Kim Alvefur mod_http_oauth2: Fix missing base64 part of base64url (Thanks KeyCloak)
23 months ago Kim Alvefur mod_http_oauth2: Fix accidental uppercase in invocation of hash function
23 months ago Kim Alvefur mod_http_oauth2: Advertise the currently supported id_token signing algorithm
23 months ago Kim Alvefur mod_http_oauth2: Specify that 'contacts' items are emails in client registration
23 months ago Kim Alvefur Back out 6f13200c9fc1: Confused request URI with redirect URI
23 months ago Kim Alvefur mod_rest/rest.sh: Implement RFC 7636 PKCE with the 'plain' method
23 months ago Kim Alvefur mod_http_oauth2: Advertise required registration of redirect URIs
23 months ago Kim Alvefur mod_http_oauth2: Advertise supported token endpoint auth methods
23 months ago Kim Alvefur mod_http_oauth2: Allow configuring PKCE challenge methods
23 months ago Kim Alvefur mod_http_oauth2: Implement RFC 7628 Proof Key for Code Exchange
23 months ago Kim Alvefur mod_http_oauth2: Reorder routes into order they happen in OAuth 2.0
23 months ago Matthew Wild mod_firewall: Initialize compiled chunk just once for all handlers
23 months ago Kim Alvefur mod_rest/rest.sh: Set software_id in client registration to something
23 months ago Kim Alvefur mod_rest/rest.sh: Include .sh suffix in client registration
23 months ago Kim Alvefur mod_http_oauth2: Record OAuth software id and version attached to tokens
23 months ago Kim Alvefur mod_http_oauth2: Fix misplaced 'default' on wrong side of } in client registration schema
23 months ago Matthew Wild mod_remote_roster: Set id on generated iq stanzas (thanks @agwa)
23 months ago Kim Alvefur mod_http_oauth2: Fix to include "openid" scope in discovery metadata
23 months ago Kim Alvefur mod_client_management: Show time for recent timestamps in shell command
23 months ago Kim Alvefur mod_client_management: Fix changed column cell "key"
23 months ago Kim Alvefur mod_client_management: Fix error when called against host without this module
23 months ago Kim Alvefur mod_client_management: Move table cell formatting into column specification
23 months ago Kim Alvefur mod_client_management: Fix type confusion
23 months ago Kim Alvefur mod_client_management: Fix error when last password change is unknown (or never)
23 months ago Kim Alvefur mod_rest/rest.sh: Register as native application
23 months ago Kim Alvefur mod_http_oauth2: Validate redirect URI depending on application type
23 months ago Kim Alvefur mod_http_oauth2: Fill in some client metadata defaults
23 months ago Kim Alvefur mod_http_oauth2: Allow only l10n variants of name in client metadata
23 months ago Kim Alvefur mod_http_oauth2: Normalize whitespace in client metadata schema
23 months ago Matthew Wild mod_log_ringbuffer: Fix description and examples of level configuration
23 months ago Matthew Wild mod_log_ringbuffer: Fix example config
23 months ago Kim Alvefur mod_oidc_userinfo_vcard4: Fix phone number claim
23 months ago Kim Alvefur mod_oidc_userinfo_vcard4: Unpack <vcard> from PubSub <item>
23 months ago Kim Alvefur mod_http_oauth2: Use new Lua pattern schema properties
23 months ago Kim Alvefur mod_http_oauth2: Include additional OpenID scopes in metadata
23 months ago Kim Alvefur mod_http_oauth2: Validate (unused at this point) localized URIs
23 months ago Kim Alvefur mod_http_oauth2: Declare https as required of URIs in schema
23 months ago Kim Alvefur mod_http_oauth2: Enforce https requirement on TOS URI
23 months ago Kim Alvefur mod_http_oauth2: Use new mod_cron API for periodic cleanup
23 months ago Kim Alvefur mod_audit_status: Fix error on first start
23 months ago Matthew Wild mod_muc_rtbl: Use correct occupant object
23 months ago Kim Alvefur mod_audit: Move underscore to avoid luacheck warning
23 months ago Kim Alvefur mod_oidc_userinfo_vcard4: Provide profile details in mod_http_oauth2
23 months ago Kim Alvefur mod_auth_oauth_external: Add configuration example
23 months ago Kim Alvefur mod_auth_oauth_external: Linkify password grant
23 months ago Kim Alvefur mod_auth_oauth_external: Some notes in README
2023-03-16 Kim Alvefur mod_auth_oauth_external: Allow setting identity instead of discovery URL
2023-03-16 Kim Alvefur mod_auth_oauth_external: Support PLAIN via resource owner password grant
2023-03-16 Kim Alvefur mod_auth_oauth_external: Authenticate against an OAuth 2 provider
23 months ago Kim Alvefur mod_client_management: Fix import of util.error (not errors)
24 months ago Kim Alvefur mod_rest: Implement use of refresh tokens in rest.sh example
24 months ago Kim Alvefur mod_http_oauth2: Fix error due to reference loop when using refresh token
24 months ago Kim Alvefur mod_http_oauth2: Fix table index error when using refresh token
24 months ago Maxime “pep” Buquet mod_muc_http_defaults: Use the new set_subject API. Thanks John Livingston
24 months ago Kim Alvefur mod_service_outage_status: XEP-0455: Service Outage Status
24 months ago Kim Alvefur mod_http_oauth2: Support OpenID UserInfo claims
24 months ago Kim Alvefur mod_http_oauth2: Add some debug logging for UserInfo endpoint
24 months ago Kim Alvefur mod_http_oauth2: Correct error code when missing credentials for userinfo
24 months ago Kim Alvefur mod_rest: Get correct type from config
24 months ago Kim Alvefur mod_http_debug: Module that echos back HTTP request info for debugging
24 months ago Kim Alvefur mod_rest: Allow passing configuring a timeout for <iq> responses
24 months ago Matthew Wild mod_audit: Add expiration of entries, and handling of full archive stores
24 months ago Kim Alvefur mod_rest/rest.sh: Update 'client_uri' to module page
24 months ago Kim Alvefur mod_rest/rest.sh: List dependencies in comment
24 months ago Kim Alvefur mod_http_oauth2/README: Add rest.sh to known implementations
24 months ago Matthew Wild mod_audit: Add 'note' column
24 months ago Matthew Wild mod_audit: Improve filtering options and add documentation to README
24 months ago Matthew Wild mod_audit: Add some control over output columns via command-line flags
24 months ago Matthew Wild mod_audit_status: Include shutdown reason in log entry
24 months ago Matthew Wild mod_audit: Let util.human.io pick a suitable default width
24 months ago Matthew Wild mod_audit: Use proportional columns in table output
24 months ago Matthew Wild mod_audit: Fix iteration of custom payloads to use ipairs
24 months ago Matthew Wild mod_audit_status: New module to log server status to audit log
24 months ago Matthew Wild mod_audit: Display most recent entries first, rather than showing oldest
24 months ago Matthew Wild mod_audit: Minor style nit
24 months ago Matthew Wild mod_audit: Allow caller to specify time of the event
24 months ago Kim Alvefur mod_http_oauth2/README: Link to mod_rest
24 months ago Kim Alvefur mod_http_oauth2/README: Link to OAuth and OIDC sites
24 months ago Matthew Wild mod_client_management: README: Update docs to detail shell and XMPP interfaces
24 months ago Matthew Wild mod_http_oauth2: README: Updated documentation to reflect module status
24 months ago Matthew Wild mod_client_management: Add list-clients + manage-clients permissions to users
24 months ago Matthew Wild mod_client_management: Add support for revoking client access via XMPP
24 months ago Matthew Wild mod_client_management: Improve representation of authentication methods
24 months ago Matthew Wild mod_client_management: Improve table output
24 months ago Matthew Wild mod_client_management: Fix user:clients() shell command to take a JID
24 months ago Matthew Wild mod_client_management: Use grant id from key
24 months ago Matthew Wild mod_client_management: Fail to revoke clients that have used passwords
24 months ago Matthew Wild mod_client_management: Add support for revocation of clients (when possible)
24 months ago Matthew Wild mod_client_management: Include client type in XML response listing
24 months ago Matthew Wild mod_sasl2_fast: Add API method to revoke FAST tokens for a given client
24 months ago Matthew Wild mod_cloud_notify_filters: Fix traceback when invalid JIDs are submitted
2023-04-01 Matthew Wild mod_client_management: Add XMPP and shell interfaces to fetch client list
2023-04-01 Matthew Wild .luacheckrc: Add module.once
2023-04-01 Matthew Wild mod_audit: Add a command to print the audit log on the command-line
2023-04-01 Matthew Wild mod_audit: Support for adding location (GeoIP) to audit events
2023-04-01 Jonas Schäfer mod_isolate_host: potentially pedantic optimization
2023-04-01 Jonas Schäfer mod_isolate_host: handle server-generated stanzas
2023-03-31 Jonas Schäfer mod_authz_delegate: make resistant against startup order issues
2023-03-30 Matthew Wild mod_client_management: New module for users to view/manage permitted clients
2023-03-30 Kim Alvefur mod_http_admin_api: Add roles to user schema in openapi
2023-03-30 Kim Alvefur mod_http_admin_api: Fix types of numbers in openapi spec
2023-03-29 Kim Alvefur Merge accidental extra head
2023-03-29 Jonas Schäfer mod_vcard_muc: take roles into account for access check
2023-03-29 Jonas Schäfer mod_authz_delegate: introduce module to "link" authorization of hosts
2023-03-29 Jonas Schäfer mod_authz_delegate: introduce module to "link" authorization of hosts
2023-03-29 Matthew Wild mod_sasl2_fast: Add an API that allows modules to check if a client has FAST
2023-03-29 Matthew Wild mod_sasl2_fast: Add flag to FAST sasl_handler for easier identification
2023-03-29 Matthew Wild mod_sasl2_fast: Fix harmless off-by-one error (invalidates existing tokens!)
2023-03-28 Kim Alvefur mod_http_admin_api: Fix missing import
2023-03-28 Kim Alvefur mod_http_admin_api: Tweak token session to please module:may()
2023-03-28 Matthew Wild mod_sasl2_fast: Invalidate tokens issued prior to last password change
2023-03-27 Kim Alvefur mod_rest: Add an example bash script for using mod_rest
2023-03-27 Matthew Wild mod_http_oauth2: Update to use new API of Prosody mod_tokenauth @ 601d9a375b86
2023-03-24 Matthew Wild mod_http_oauth2: Add support for refresh tokens
2023-03-26 Kim Alvefur mod_http_oauth2: Declare additional client registration fields as strings
2023-03-26 Kim Alvefur mod_http_oauth2: Stricten check of urlencoded form data
2023-03-26 Kim Alvefur mod_http_oauth2: Pedantic optimization
2023-03-25 Kim Alvefur mod_pubsub_feeds: Fix packaging of support library for installer
2023-03-17 Kim Alvefur mod_muc_rtbl: Handle node purge
2023-03-23 Kim Alvefur mod_http_oauth2: Fix traceback on missing 'scope' parameter
2023-03-23 Kim Alvefur mod_http_oauth2: Focus username field automatically
2023-03-23 Kim Alvefur mod_http_oauth2: Allow user to decide which requested scopes to grant
2023-03-23 Kim Alvefur mod_http_oauth2: Use <fieldset> in templates because it looks nice
2023-03-23 Kim Alvefur mod_rest: Update prosody_oauth.py example to non-legacy OAuth2
2023-03-21 Kim Alvefur mod_http_oauth2: Remove another reference to obsolete function
2023-03-21 Kim Alvefur mod_http_oauth2: Relax payload content type checking in revocation
2023-03-21 Kim Alvefur mod_http_oauth2: Remove now unused code
2023-03-21 Kim Alvefur mod_http_oauth2: Allow revoking a token without OAuth client credentials
2023-03-21 Kim Alvefur mod_http_oauth2: Correctly verify OAuth client credentials on revocation
2023-03-21 Kim Alvefur mod_http_oauth2: Group metadata section into OAuth and OpenID
2023-03-21 Kim Alvefur mod_http_oauth2: Rename oauth client credential related functions
2023-03-21 Matthew Wild mod_sasl2: Pull user-agent info into sasl_handler for later reference
2023-03-19 Kim Alvefur mod_adhoc_oauth2_client: Update to call into mod_http_oauth2
2023-03-19 Kim Alvefur mod_http_oauth2: Refactor to allow reuse of OAuth client creation
2023-03-16 Kim Alvefur mod_http_oauth2: Fix userinfo status code off-by-one
2023-03-16 Kim Alvefur mod_http_oauth2: Implement and return ID Token in authorization code flow
2023-03-16 Kim Alvefur mod_http_oauth2: Reject non-local hosts in more code paths
2023-03-16 Kim Alvefur mod_http_oauth2: Add support for the "openid" scope
2023-03-16 Kim Alvefur mod_http_oauth2: Prepare to handle multiple e.g. non-role scopes
2023-03-16 Kim Alvefur mod_adhoc_oauth2_client: Make note in README about current broken state
2023-03-15 Kim Alvefur mod_http_oauth2: Fix attempt to index a boolean value
2023-03-14 Matthew Wild mod_audit: Allow disabling IP logging, or limiting it to a prefix
2023-03-14 Matthew Wild mod_audit: Include client id in audit log entries (if known)
2023-03-14 Matthew Wild mod_sasl2: Fire authentication-{success,failure} events like mod_saslauth
2023-03-14 Kim Alvefur mod_http_oauth2: Record details of OAuth client a token is issued to
2023-03-12 Kim Alvefur mod_http_oauth2: Invoke mod_http_errors to render error on invalid redirect
2023-03-12 Kim Alvefur mod_http_oauth2: Validate all URIs against client_uri in client registration
2023-03-12 Kim Alvefur mod_http_oauth2: Organize HTTP routes with comments
2023-03-11 Kim Alvefur mod_http_oauth2: Fix validation of informative URIs
2023-03-11 Kim Alvefur mod_http_oauth2: Use more compact IDs
2023-03-11 Kim Alvefur mod_http_oauth2: Validate that informative URLs match the redirect URIs
2023-03-11 Kim Alvefur mod_http_oauth2: Reject insecure redirect URIs
2023-03-11 Kim Alvefur mod_http_oauth2: Validate that redirect URIs are absolute
2023-03-11 Kim Alvefur mod_http_oauth2: Validate basic URI syntax of redirect URIs
2023-03-11 Matthew Wild mod_spam_report_forwarder: Forward spam/abuse reports to one or more JIDs
2023-03-11 Kim Alvefur mod_http_oauth2: Require URL to client informational page in registration
2023-03-11 Kim Alvefur mod_http_oauth2: Reorder client metadata validation schema
2023-03-11 Matthew Wild mod_firewall: Add 'REPORT TO' to report (XEP-0377) a stanza to a specified JID
2023-03-11 Matthew Wild mod_firewall: README: Clarify docs about some of the stanza processing actions
2023-03-11 Matthew Wild mod_firewall: Warn about invalid pubsubitemid list specification
2023-03-11 Matthew Wild mod_firewall: Fix parsing of pubsubitemid list specification
2023-03-10 Kim Alvefur mod_http_oauth2: Fix to disable disabled response handlers correctly
2023-03-10 Kim Alvefur mod_http_oauth2: Log flows enabled and disabled
2023-03-10 Kim Alvefur mod_http_oauth2: Fix appending of query parts in error redirects
2023-03-09 Kim Alvefur mod_http_oauth2: Implement the OpenID userinfo endpoint
2023-03-09 Kim Alvefur mod_http_oauth2: Close site header tags
2023-03-07 Kim Alvefur mod_http_oauth2: Fix contrast of links on consent page
2023-03-07 Matthew Wild mod_http_oauth2: token endpoint: handle missing credentials
2023-03-07 Matthew Wild mod_http_oauth2: Fail early when no authorization header present
2023-03-07 Matthew Wild mod_http_oauth2: Support HTTP Basic auth on token endpoint
2023-03-07 Matthew Wild mod_http_oauth2: Separate extracting credentials from requests and verifying
2023-03-07 Matthew Wild mod_http_oauth2: Reflect ALL attributes of the client registration
2023-03-07 Kim Alvefur mod_rest: Point URLs to mod_http_oauth2 in demo mode
2023-03-07 Matthew Wild mod_http_oauth2: Improve handling of redirect_uri matching and fallback
2023-03-07 Kim Alvefur mod_http_oauth2: Correct field name for HTTP response status code
2023-03-07 Matthew Wild mod_http_oauth2: Fix incorrect function name (thanks Zash/luacheck)
2023-03-07 Matthew Wild mod_cloud_notify: Add note about Lua version requirements to README
2023-03-07 Matthew Wild mod_cloud_notify: Log warning when used on Lua 5.1
2023-03-06 Kim Alvefur mod_http_oauth2: Remove authorization codes after use
2023-03-06 Kim Alvefur mod_http_oauth2: Fix authorization code logic
2023-03-06 Kim Alvefur mod_http_oauth2: Include html templates in package for plugin installer
2023-02-22 Kim Alvefur mod_conversejs: This one weird trick updates options on reload
2023-03-06 Matthew Wild mod_http_oauth2: Switch to '303 See Other' redirects
2023-03-06 Matthew Wild mod_http_oauth2: Allow non-HTTPS on localhost URLs
2023-03-06 Matthew Wild mod_http_oauth2: Add authentication, consent and error pages
2023-03-06 Matthew Wild mod_http_oauth: Factor out issuer URL calculation to a helper function
2023-03-05 Kim Alvefur mod_http_oauth2: Clarify comment referencing mod_http_errors (thanks MattJ)
2023-03-04 Kim Alvefur mod_http_oauth2: Specify host for which to retrieve list of roles
2023-03-04 Kim Alvefur mod_http_oauth2: Return list of active roles in discovery
2023-03-04 Kim Alvefur mod_http_oauth2: Return actually enabled response types in discovery
2023-03-04 Kim Alvefur mod_http_oauth2: Calculate client secret expiry in registration response
2023-03-04 Matthew Wild mod_http_oauth2: Strip trailing '/' from issuer URL
2023-03-03 Kim Alvefur mod_http_oauth2: Advertise endpoints that are enabled
2023-03-03 Kim Alvefur mod_http_oauth2: Separate client_secret verification key from JWT key
2023-03-03 Kim Alvefur mod_http_oauth2: Fix response type config
2023-03-03 Kim Alvefur mod_http_oauth2/README: Document config options
2023-03-03 Kim Alvefur mod_http_oauth2: Remove error message
2023-03-03 Kim Alvefur mod_http_oauth2: Mention name of client when giving out OOB authorization code
2023-03-03 Kim Alvefur mod_http_oauth2: Comment on mutation by other module
2023-03-03 Kim Alvefur mod_http_oauth2: Implement stateless dynamic client registration
2023-03-03 Matthew Wild mod_http_oauth2: Add support for 'iss' authz response parameter (RFC 9207)
2023-03-03 Kim Alvefur mod_http_oauth2: Derive scope from correct user details
2023-03-03 Kim Alvefur mod_http_oauth2: Fix to actually return OOB response
2023-03-03 Matthew Wild mod_http_oauth2: Add OIDC discovery endpoint (thanks Zash)
2023-03-02 Kim Alvefur mod_http_oauth2: Implement OOB special redirect URI in code flow
2023-03-02 Kim Alvefur mod_http_oauth2: Add settings for allowed grant and response types
2023-03-02 Kim Alvefur mod_http_oauth2: Implement the Implicit flow
2023-03-02 Kim Alvefur mod_http_oauth2: Fix treatment of 'redirect_uri' parameter in code flow
2023-03-02 Kim Alvefur mod_s2s_whitelist/README: Show inclusion in modules_enabled in example
2023-03-02 Kim Alvefur mod_s2s_blacklist/README: Show inclusion in modules_enabled in example
2023-03-01 Kim Alvefur mod_http_oauth2: Issue tokens for the purpose of 'oauth2'
2023-03-01 Kim Alvefur mod_http_oauth2: Fix removal of consumed authorization codes
2023-03-01 Matthew Wild mod_sasl2_bind2: Support for SASL handlers forcing a specific resource
2023-02-28 Kim Alvefur mod_rest: Remove confusing oauth2 tokens from examples
2023-02-23 Kim Alvefur mod_register_apps: Detect 0.12+ when called from prosodyctl
2023-02-22 Jonas Schäfer mod_muc_rtbl: fix more incorrect more references to "event"
2023-02-22 Jonas Schäfer mod_muc_rtbl: ignore blocklist for affiliated users for messages
2023-02-22 Jonas Schäfer mod_muc_rtbl: fix traceback because of scoping error
2023-02-21 Jonas Schäfer mod_muc_rtbl: move use of "private" attributes to single function
2023-02-21 Jonas Schäfer mod_muc_rtbl: also filter messages
2023-02-20 Stephen Paul Weber New module, mod_muc_reserve_nick_pattern
2023-02-20 Stephen Paul Weber Strip images from XHTML-IM as well
2023-02-19 Kim Alvefur mod_muc_moderation: Derive role from reserved nickname if occupant
2023-02-19 Kim Alvefur mod_muc_moderation: Refactor to prepare for new version of XEP-0425
2023-02-19 Kim Alvefur mod_unsubscriber: Revoke roster subscriptions of unreachable hosts
2023-02-16 Kim Alvefur mod_jsxc: Correct description of resources setting (thanks ham5urg)
2023-02-16 Kim Alvefur mod_jsxc: Words about jQuery
2023-02-16 Kim Alvefur mod_jsxc: Add plugin installer metadata
2023-02-16 Kim Alvefur mod_jsxc: Document config options
2023-02-10 Matthew Wild mod_bob: Fix traceback when iq has no payload (thanks meaz)
2023-01-30 Matthew Wild mod_muc_auto_member: New module to automatically make MUC participants members
2023-01-29 Kim Alvefur mod_http_status: Report module statuses
2023-01-27 Kim Alvefur mod_firewall: Fix 'is_admin' internal dependency rule #1797 (thanks diane)
2023-01-25 Kim Alvefur mod_rest/README: Words about bearer tokens
2023-01-16 Kim Alvefur mod_inject_ecaps2: Mention and link to XEP-0390 in text
2023-01-14 Matthew Wild mod_unified_push: Update docs to recommend loading on normal hosts
2023-01-14 Matthew Wild mod_unified_push: README: Update docs
2023-01-14 Matthew Wild mod_unified_push: Make unified_push_secret only required for jwt backend
2023-01-14 Matthew Wild mod_unified_push: Improved error handling and reporting
2023-01-14 Matthew Wild mod_unified_push: fix return values for paseto backend
2023-01-14 Matthew Wild mod_unified_push: Fix storage backend error behaviours and return values
2023-01-14 Matthew Wild mod_unified_push: Fix default ACL in component mode
2023-01-14 Matthew Wild mod_unified_push: Fixes for paseto backend initialization
2023-01-14 Matthew Wild mod_unified_push: Add support for multiple token backends, including stoage
2023-01-13 Matthew Wild mod_unified_push: Refactor in anticipation of other registration backends
2023-01-13 Matthew Wild mod_unified_push: Add ACL option to restrict access
2023-01-13 Matthew Wild mod_unified_push: Fix JWT method parameter order (fixes #1791)
2023-01-13 Kim Alvefur mod_http_dir_listing: Update Compatibility section
2023-01-13 Kim Alvefur mod_http_dir_listing: Add metadata to fix plugin package build
2023-01-11 Matthew Wild mod_invites_api: Fix traceback when no query params (thanks Menel)
2023-01-11 Matthew Wild mod_invites_api: Fix traceback on list command with no entries (thanks mirux)
2023-01-10 Kim Alvefur Remove reverse dependencies on mod_invites (for plugin installer)
2023-01-10 Kim Alvefur mod_pubsub_summary: Mention HTML to Message Styling conversion
2023-01-10 Matthew Wild mod_unified_push: Remove dependency on trunk util.jwt (0.12 compat)
2023-01-10 Matthew Wild mod_unified_push: README: Documentation updates (example, etc.)
2023-01-10 Matthew Wild mod_sasl2_fast: Add some comments
2023-01-10 Matthew Wild mod_unified_push: Various fixes, now working with Conversations
2023-01-10 Kim Alvefur mod_pubsub_summary: Trim preceding and trailing whitespace from title
2023-01-08 Kim Alvefur mod_pubsub_text_interface: Try to clarify help message wrt node arguments
2023-01-08 Kim Alvefur mod_pubsub_text_interface: Improve error messages
2023-01-08 Martin Dosch mod_onions: Fix URL and linkify it.
2023-01-08 Kim Alvefur mod_pubsub_summary: Render geo:-URI from OASIS emergency broadcasts
2023-01-07 Kim Alvefur mod_ping_muc: Error out if loaded on Components
2023-01-07 Kim Alvefur mod_pubsub_summary: Hide link relation when value is "alternate"
2023-01-05 Matthew Wild mod_unified_push: Experimenal Unified Push provider
2023-01-03 Kim Alvefur mod_muc_moderation/README: Simplify Compatibility section
2022-12-31 Kim Alvefur mod_rest: Fix reference in OpenAPI
2022-12-31 Kim Alvefur mod_rest: Add XEP-0461 to OpenAPI
2022-12-31 Kim Alvefur mod_rest: Add missing message properties to OpenAPI documentation
2022-12-31 Kim Alvefur mod_rest: Add some GET-mapped iq-queries to OpenAPI documentation
2022-12-31 Kim Alvefur mod_rest/README: Fix XML well-formedness in example (thanks drsnuggles)
2022-12-30 Kim Alvefur mod_auth_dovecot: Fix plugin package (hopefully) (thanks nw)
2022-12-25 Kim Alvefur mod_s2s_auth_dane: Update Compatibility chart (doesn't work anymore)
2022-12-20 Kim Alvefur mod_rest: Remove manual reference expansion in schema
2022-12-18 Kim Alvefur Merge
2022-12-17 Jonas Schäfer Backed out changeset 85882735fd33
2022-12-17 Jonas Schäfer mod_http_muc_log: make default presence visibility configurable
2022-04-28 Jonas Schäfer mod_audit: remove event hook
2022-12-16 Matthew Wild mod_pubsub_mqtt: Switch to MQTT 3.1.1
2022-12-16 Matthew Wild mod_pubsub_mqtt: Support atom_title payload type
2022-12-16 Matthew Wild mod_pubsub_mqtt: Fix some inappropriate log levels
2022-12-16 Matthew Wild mod_pubsub_mqtt: Add XEP-0060 <item> wrapper to payloads
2022-12-09 Kim Alvefur mod_pubsub_feeds: Include feeds library in plugin package
2022-12-04 Kim Alvefur mod_http_muc_log: Fix syntax error in timestamp adjusting script
2022-12-04 Kim Alvefur mod_http_muc_log: Move language attribute onto body itself
2022-12-04 Kim Alvefur mod_http_muc_log: Tweak style towards the "modern"
2022-12-04 Kim Alvefur mod_http_muc_log: Fix error in js when displaying presence is disabled
2022-12-04 Kim Alvefur mod_http_muc_log: Include static resources (css & js) in plugin package
2022-12-04 Kim Alvefur mod_http_muc_log: Move CSS and JS out of template
2022-12-02 Kim Alvefur mod_s2soutinjection: Use session logger where it makes sense
2022-12-02 Kim Alvefur mod_s2soutinjection: Use module logging API
2022-12-02 Kim Alvefur mod_s2soutinjection: Remove undefined global (thanks Damian)
2022-12-02 Kim Alvefur mod_s2soutinjection: Remove unused variables [luacheck]
2022-11-29 Matthew Wild mod_compat_roles: Add support for role inheritance (built-in roles only)
2022-11-29 Matthew Wild mod_compat_roles: Fix permission checks/roles to be per-host as intended
2022-11-29 Matthew Wild mod_compat_roles: Fix traceback when no host roles are defined (thanks cc)
2022-11-29 Matthew Wild mod_isolate_host: Pass context to module:may() (thanks cc)
2022-11-28 Kim Alvefur mod_sasl2_fast: Add explicit dependency on mod_sasl2
2022-11-28 Kim Alvefur mod_sasl2_sm: Add explicit dependency on mod_sasl2
2022-11-28 Kim Alvefur mod_sasl2_bind2: Add explicit dependency on mod_sasl2
2022-11-28 Matthew Wild mod_sasl2_fast: Add README
2022-11-28 Matthew Wild mod_sasl2_sm: Update README with current information
2022-11-28 Matthew Wild mod_sasl2_bind2: Update and expand README with current status
2022-11-28 Matthew Wild mod_sasl2: Update and expand README with more (and updated) information
2022-11-28 Matthew Wild mod_sasl2: Honour (c2s_)require_encryption config option
2022-11-26 Kim Alvefur mod_rest: Wrap webhook setup in a function for future reuse
2022-11-26 Kim Alvefur mod_rest: Do not allow replies to <iq type=result> from webhooks
2022-11-22 Kim Alvefur mod_clean_roster: Clean out invalid characters from roster entires
2022-11-07 Matthew Wild mod_sasl2_fast: Add more debug logging
2022-11-07 Matthew Wild mod_sasl2_fast: Fixes to make channel binding work again
2022-11-07 Matthew Wild mod_sasl2_fast: Clean up backend return values (fixes constant rotation)
2022-10-29 Benjamin Danowski mod_password_reset: Add rockspec.build.copy_directories entry to make it work
2022-10-24 Kim Alvefur mod_rest: Fix JSON conversion of 'displayed' chat marker
2022-10-20 Matthew Wild mod_vjud: Better docs for vjud_mode
2022-10-15 Matthew Wild mod_sasl2_fast: Implement rotation and invalidation
2022-10-15 Matthew Wild mod_sasl2_fast: Remove X-TOKEN-PLAIN and related profile handler
2022-10-15 Matthew Wild mod_sasl2_fast: Improved logging
2022-10-15 Matthew Wild mod_sasl2_fast: Register HT-* mechanisms with the required channel binding
2022-10-15 Matthew Wild mod_sasl2_fast: Fix field name for returned secret