Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
20 changes: 14 additions & 6 deletions CHANGELOG.md
Original file line number Diff line number Diff line change
Expand Up @@ -6,11 +6,12 @@ All notable changes to backendkit are documented here. Format:

## [Unreleased]

### Fixed
- The `WithPostgresManagedSchema` privilege test failed in CI: there the database role is a
superuser, which holds every privilege whatever is revoked. The test now runs the store as a
real limited role when the role is a superuser, and a new test runs the exact #82 layout (a
CRUD-only role on a table it does not own) in CI. No library change.
## [1.20.0] - 2026-10-04

Minor release on the **v1** line: additive API, and a new minimum Go. `bff.WithPostgresManagedSchema`
lets the session store run on a migration-owned table with a role holding only `SELECT`, `INSERT`,
`UPDATE` and `DELETE` (Lakebridge #82). **The module now requires Go 1.27.1**: importers on an
older Go need `GOTOOLCHAIN=auto` (the default) or an upgrade. No exported identifier changes.

### Added
- `bff.WithPostgresManagedSchema()`: `NewPostgresStore` runs no DDL, for a table created by the
Expand All @@ -28,6 +29,12 @@ All notable changes to backendkit are documented here. Format:
`httputil.ReverseProxy.Director` (deprecated since Go 1.26, still supported): callers wrap it,
so moving to `Rewrite` needs a new, additive constructor. CI pins govulncheck to v1.8.0.

### Fixed
- The `WithPostgresManagedSchema` privilege test failed in CI: there the database role is a
superuser, which holds every privilege whatever is revoked. The test now runs the store as a
real limited role when the role is a superuser, and a new test runs the exact #82 layout (a
CRUD-only role on a table it does not own) in CI. No library change.

## [1.19.0] - 2026-10-03

Minor release on the **v1** line: additive only. The service-side helpers Lakebridge asked for:
Expand Down Expand Up @@ -587,7 +594,8 @@ are rejected. Confirm your Socrate server populates `aud` before enabling it in
production. Making audience validation required-by-default is deferred to a future
major (v2.0) and tracked separately.

[Unreleased]: https://github.com/ovander/backendkit/compare/v1.19.0...HEAD
[Unreleased]: https://github.com/ovander/backendkit/compare/v1.20.0...HEAD
[1.20.0]: https://github.com/ovander/backendkit/compare/v1.19.0...v1.20.0
[1.19.0]: https://github.com/ovander/backendkit/compare/v1.18.0...v1.19.0
[1.18.0]: https://github.com/ovander/backendkit/compare/v1.17.1...v1.18.0
[1.17.1]: https://github.com/ovander/backendkit/compare/v1.17.0...v1.17.1
Expand Down
4 changes: 2 additions & 2 deletions README.md
Original file line number Diff line number Diff line change
Expand Up @@ -133,7 +133,7 @@ to Socrate (`bff`, `pep`) and `ailang` for `aigateway`.
## Installation

```bash
go get github.com/ovander/backendkit@v1.19.0
go get github.com/ovander/backendkit@v1.20.0
```

```go
Expand All @@ -142,7 +142,7 @@ module github.com/your-org/my-service

go 1.27.1

require github.com/ovander/backendkit v1.19.0
require github.com/ovander/backendkit v1.20.0
```

---
Expand Down
Loading