diff --git a/CHANGELOG.md b/CHANGELOG.md index e2d2dfe..ec91290 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -6,11 +6,12 @@ All notable changes to backendkit are documented here. Format: ## [Unreleased] -### Fixed -- The `WithPostgresManagedSchema` privilege test failed in CI: there the database role is a - superuser, which holds every privilege whatever is revoked. The test now runs the store as a - real limited role when the role is a superuser, and a new test runs the exact #82 layout (a - CRUD-only role on a table it does not own) in CI. No library change. +## [1.20.0] - 2026-10-04 + +Minor release on the **v1** line: additive API, and a new minimum Go. `bff.WithPostgresManagedSchema` +lets the session store run on a migration-owned table with a role holding only `SELECT`, `INSERT`, +`UPDATE` and `DELETE` (Lakebridge #82). **The module now requires Go 1.27.1**: importers on an +older Go need `GOTOOLCHAIN=auto` (the default) or an upgrade. No exported identifier changes. ### Added - `bff.WithPostgresManagedSchema()`: `NewPostgresStore` runs no DDL, for a table created by the @@ -28,6 +29,12 @@ All notable changes to backendkit are documented here. Format: `httputil.ReverseProxy.Director` (deprecated since Go 1.26, still supported): callers wrap it, so moving to `Rewrite` needs a new, additive constructor. CI pins govulncheck to v1.8.0. +### Fixed +- The `WithPostgresManagedSchema` privilege test failed in CI: there the database role is a + superuser, which holds every privilege whatever is revoked. The test now runs the store as a + real limited role when the role is a superuser, and a new test runs the exact #82 layout (a + CRUD-only role on a table it does not own) in CI. No library change. + ## [1.19.0] - 2026-10-03 Minor release on the **v1** line: additive only. The service-side helpers Lakebridge asked for: @@ -587,7 +594,8 @@ are rejected. Confirm your Socrate server populates `aud` before enabling it in production. Making audience validation required-by-default is deferred to a future major (v2.0) and tracked separately. -[Unreleased]: https://github.com/ovander/backendkit/compare/v1.19.0...HEAD +[Unreleased]: https://github.com/ovander/backendkit/compare/v1.20.0...HEAD +[1.20.0]: https://github.com/ovander/backendkit/compare/v1.19.0...v1.20.0 [1.19.0]: https://github.com/ovander/backendkit/compare/v1.18.0...v1.19.0 [1.18.0]: https://github.com/ovander/backendkit/compare/v1.17.1...v1.18.0 [1.17.1]: https://github.com/ovander/backendkit/compare/v1.17.0...v1.17.1 diff --git a/README.md b/README.md index 8efbf37..f141639 100644 --- a/README.md +++ b/README.md @@ -133,7 +133,7 @@ to Socrate (`bff`, `pep`) and `ailang` for `aigateway`. ## Installation ```bash -go get github.com/ovander/backendkit@v1.19.0 +go get github.com/ovander/backendkit@v1.20.0 ``` ```go @@ -142,7 +142,7 @@ module github.com/your-org/my-service go 1.27.1 -require github.com/ovander/backendkit v1.19.0 +require github.com/ovander/backendkit v1.20.0 ``` ---