)]}'
{
  "commit": "340cd948b33c6e410814c46ac7f864f527c5e366",
  "tree": "a7c6452e5d387dcc49f94e86a455546f11c85f45",
  "parents": [
    "941fc9148cbb6067c569ed191b9e417a3256156e",
    "8a15bed514887911cb220b15b3e0bc7b64226fc9"
  ],
  "author": {
    "name": "David M. Johnson",
    "email": "snoopdave@apache.org",
    "time": "Sat Sep 05 16:12:04 2026 -0400"
  },
  "committer": {
    "name": "David M. Johnson",
    "email": "snoopdave@apache.org",
    "time": "Sat Sep 05 16:12:04 2026 -0400"
  },
  "message": "Merge branch \u0027master\u0027 into oauth-authorize-session-binding\n\nBoth branches added SaltValidator. Master\u0027s copy is the one that landed,\nso the conflict resolves to it; the two differ only in the order of the\nearly returns inside consumeSubmittedSalt, which the authorization\nservlet cannot observe through the one method it calls.\n\nClaude-Session: https://claude.ai/code/session_019R1jdtwkaYEeA6L9DXEtEi\n",
  "tree_diff": []
}
