Skip to content

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Dec 1, 2025

Bumps webauthn4j from 0.29.7.RELEASE to 0.30.1.RELEASE.
Updates com.webauthn4j:webauthn4j-core from 0.29.7.RELEASE to 0.30.1.RELEASE

Release notes

Sourced from com.webauthn4j:webauthn4j-core's releases.

0.30.0.RELEASE

🪲 Bugs

  • Bugfix: AuthenticationExtensionsAuthenticatorOutputs' credProtect and uvm properties are deserialized into unknowns field #1183

⭐ Enhancements

  • Add topOrigin verification support #1188
  • Add constuctor parameter to DefaultSelfAttestationTrustworthinessVerifier and DefaultSelfAttestationTrustworthinessAsyncVerifier #1185
  • Correct CredentialRecordImpl parameters nullability #1176

📦 Dependency Upgrades

  • Bump jackson from 2.20.0 to 2.20.1 #1192
  • Bump org.sonarqube from 7.0.0.6105 to 7.0.1.6134 #1191
  • Bump org.sonarqube from 6.3.1.5724 to 7.0.0.6105 #1187
  • Bump github/codeql-action from 3 to 4 #1173

📝 Documentation

  • Fix JavaDoc for FidoMDS3MetadataBLOBAsyncProvider #1184
  • Fix JavaDoc for FidoMDS3MetadataBLOBProvider #1179
  • Correct CredentialRecordImpl javadoc #1177

❤️ Contributors

We'd like to thank all the contributors who worked on this release!

Commits
  • f66848e Release 0.30.1
  • 68712b7 Merge pull request #1206 from webauthn4j/dependabot/gradle/bouncycastle-1.83
  • beec371 Bump bouncycastle from 1.82 to 1.83
  • 6fbf898 Merge pull request #1205 from webauthn4j/getTopOrigin-should-be-nullable
  • 4ebaa1c Bugfix: Mark CollectedClientData.getTopOrigin() as @​Nullable
  • 646813d Merge pull request #1201 from webauthn4j/dependabot/gradle/org.sonarqube-7.1....
  • 142b02e Merge pull request #1204 from agitrubard/refactor/client_platform/process_reg...
  • de416de Replace switch to if statement to increase readability
  • 95fb99b Remove useless assignment to local variable and imports
  • 676e2a3 Merge pull request #1203 from webauthn4j/dependabot/github_actions/actions/ch...
  • Additional commits viewable in compare view

Updates com.webauthn4j:webauthn4j-test from 0.29.7.RELEASE to 0.30.1.RELEASE

Release notes

Sourced from com.webauthn4j:webauthn4j-test's releases.

0.30.0.RELEASE

🪲 Bugs

  • Bugfix: AuthenticationExtensionsAuthenticatorOutputs' credProtect and uvm properties are deserialized into unknowns field #1183

⭐ Enhancements

  • Add topOrigin verification support #1188
  • Add constuctor parameter to DefaultSelfAttestationTrustworthinessVerifier and DefaultSelfAttestationTrustworthinessAsyncVerifier #1185
  • Correct CredentialRecordImpl parameters nullability #1176

📦 Dependency Upgrades

  • Bump jackson from 2.20.0 to 2.20.1 #1192
  • Bump org.sonarqube from 7.0.0.6105 to 7.0.1.6134 #1191
  • Bump org.sonarqube from 6.3.1.5724 to 7.0.0.6105 #1187
  • Bump github/codeql-action from 3 to 4 #1173

📝 Documentation

  • Fix JavaDoc for FidoMDS3MetadataBLOBAsyncProvider #1184
  • Fix JavaDoc for FidoMDS3MetadataBLOBProvider #1179
  • Correct CredentialRecordImpl javadoc #1177

❤️ Contributors

We'd like to thank all the contributors who worked on this release!

Commits
  • f66848e Release 0.30.1
  • 68712b7 Merge pull request #1206 from webauthn4j/dependabot/gradle/bouncycastle-1.83
  • beec371 Bump bouncycastle from 1.82 to 1.83
  • 6fbf898 Merge pull request #1205 from webauthn4j/getTopOrigin-should-be-nullable
  • 4ebaa1c Bugfix: Mark CollectedClientData.getTopOrigin() as @​Nullable
  • 646813d Merge pull request #1201 from webauthn4j/dependabot/gradle/org.sonarqube-7.1....
  • 142b02e Merge pull request #1204 from agitrubard/refactor/client_platform/process_reg...
  • de416de Replace switch to if statement to increase readability
  • 95fb99b Remove useless assignment to local variable and imports
  • 676e2a3 Merge pull request #1203 from webauthn4j/dependabot/github_actions/actions/ch...
  • Additional commits viewable in compare view

Updates com.webauthn4j:webauthn4j-metadata from 0.29.7.RELEASE to 0.30.1.RELEASE

Release notes

Sourced from com.webauthn4j:webauthn4j-metadata's releases.

0.30.0.RELEASE

🪲 Bugs

  • Bugfix: AuthenticationExtensionsAuthenticatorOutputs' credProtect and uvm properties are deserialized into unknowns field #1183

⭐ Enhancements

  • Add topOrigin verification support #1188
  • Add constuctor parameter to DefaultSelfAttestationTrustworthinessVerifier and DefaultSelfAttestationTrustworthinessAsyncVerifier #1185
  • Correct CredentialRecordImpl parameters nullability #1176

📦 Dependency Upgrades

  • Bump jackson from 2.20.0 to 2.20.1 #1192
  • Bump org.sonarqube from 7.0.0.6105 to 7.0.1.6134 #1191
  • Bump org.sonarqube from 6.3.1.5724 to 7.0.0.6105 #1187
  • Bump github/codeql-action from 3 to 4 #1173

📝 Documentation

  • Fix JavaDoc for FidoMDS3MetadataBLOBAsyncProvider #1184
  • Fix JavaDoc for FidoMDS3MetadataBLOBProvider #1179
  • Correct CredentialRecordImpl javadoc #1177

❤️ Contributors

We'd like to thank all the contributors who worked on this release!

Commits
  • f66848e Release 0.30.1
  • 68712b7 Merge pull request #1206 from webauthn4j/dependabot/gradle/bouncycastle-1.83
  • beec371 Bump bouncycastle from 1.82 to 1.83
  • 6fbf898 Merge pull request #1205 from webauthn4j/getTopOrigin-should-be-nullable
  • 4ebaa1c Bugfix: Mark CollectedClientData.getTopOrigin() as @​Nullable
  • 646813d Merge pull request #1201 from webauthn4j/dependabot/gradle/org.sonarqube-7.1....
  • 142b02e Merge pull request #1204 from agitrubard/refactor/client_platform/process_reg...
  • de416de Replace switch to if statement to increase readability
  • 95fb99b Remove useless assignment to local variable and imports
  • 676e2a3 Merge pull request #1203 from webauthn4j/dependabot/github_actions/actions/ch...
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps `webauthn4j` from 0.29.7.RELEASE to 0.30.1.RELEASE.

Updates `com.webauthn4j:webauthn4j-core` from 0.29.7.RELEASE to 0.30.1.RELEASE
- [Release notes](https://github.com/webauthn4j/webauthn4j/releases)
- [Commits](webauthn4j/webauthn4j@0.29.7.RELEASE...0.30.1.RELEASE)

Updates `com.webauthn4j:webauthn4j-test` from 0.29.7.RELEASE to 0.30.1.RELEASE
- [Release notes](https://github.com/webauthn4j/webauthn4j/releases)
- [Commits](webauthn4j/webauthn4j@0.29.7.RELEASE...0.30.1.RELEASE)

Updates `com.webauthn4j:webauthn4j-metadata` from 0.29.7.RELEASE to 0.30.1.RELEASE
- [Release notes](https://github.com/webauthn4j/webauthn4j/releases)
- [Commits](webauthn4j/webauthn4j@0.29.7.RELEASE...0.30.1.RELEASE)

---
updated-dependencies:
- dependency-name: com.webauthn4j:webauthn4j-core
  dependency-version: 0.30.1.RELEASE
  dependency-type: direct:production
  update-type: version-update:semver-minor
- dependency-name: com.webauthn4j:webauthn4j-test
  dependency-version: 0.30.1.RELEASE
  dependency-type: direct:production
  update-type: version-update:semver-minor
- dependency-name: com.webauthn4j:webauthn4j-metadata
  dependency-version: 0.30.1.RELEASE
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file java Pull requests that update Java code labels Dec 1, 2025
@github-actions github-actions bot enabled auto-merge December 1, 2025 06:28
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file java Pull requests that update Java code

Development

Successfully merging this pull request may close these issues.

1 participant