)]}'
{
  "log": [
    {
      "commit": "deb35583f1e40e88c5e53c7ba42d1717053fc38c",
      "tree": "92d2392497ef949b045dd17889953cead26d0834",
      "parents": [
        "2d7d0c37a9fa5265ea7ddc8d9137e02480009648"
      ],
      "author": {
        "name": "Carsten Ziegeler",
        "email": "cziegeler@apache.org",
        "time": "Thu Jul 16 17:54:48 2026 +0200"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Thu Jul 16 17:54:48 2026 +0200"
      },
      "message": "docs: expand AGENTS.md and README.md with IT and connection details (#50)\n\nCo-authored-by: Maia \u003cmaia@noreply\u003e"
    },
    {
      "commit": "2d7d0c37a9fa5265ea7ddc8d9137e02480009648",
      "tree": "eed4a62c621e3c5540e3e976c62d92ff338d60f8",
      "parents": [
        "881f98c11c660a290f57084cc5d991057f5e286d"
      ],
      "author": {
        "name": "Carsten Ziegeler",
        "email": "cziegeler@apache.org",
        "time": "Thu Jul 16 14:16:55 2026 +0200"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Thu Jul 16 14:16:55 2026 +0200"
      },
      "message": "docs: update AGENTS.md and README with project layout, gotchas, and API notes (#49)\n\nCo-authored-by: Maia \u003cmaia@noreply\u003e"
    },
    {
      "commit": "881f98c11c660a290f57084cc5d991057f5e286d",
      "tree": "fa02d7b337437cb58ea5746f8e14f438503528ec",
      "parents": [
        "80ed4ef70e05b6f0c3d31df0b29b25e439dbf60c"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Tue Jun 02 12:47:58 2026 +0200"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Tue Jun 02 12:47:58 2026 +0200"
      },
      "message": "Add security section to AGENTS.md\n"
    },
    {
      "commit": "80ed4ef70e05b6f0c3d31df0b29b25e439dbf60c",
      "tree": "b51c0321746c3b9dc8d5f3db13a7dac640cb2eee",
      "parents": [
        "e67e8dd19200b49647f5809bac1d711fc5d427f0"
      ],
      "author": {
        "name": "Carsten Ziegeler",
        "email": "cziegeler@apache.org",
        "time": "Tue Jun 02 09:41:20 2026 +0200"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Tue Jun 02 09:41:20 2026 +0200"
      },
      "message": "docs: rewrite README and AGENTS.md for clarity and completeness (#48)\n\nCo-authored-by: Maia \u003cmaia@noreply\u003e"
    },
    {
      "commit": "e67e8dd19200b49647f5809bac1d711fc5d427f0",
      "tree": "1c301b329817af5014f75e7ef6dae0568bb877bf",
      "parents": [
        "c80ee1a9a32ae37af356a6527b17f4bc54ea9370"
      ],
      "author": {
        "name": "dependabot[bot]",
        "email": "49699333+dependabot[bot]@users.noreply.github.com",
        "time": "Thu May 28 17:03:37 2026 +0200"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Thu May 28 17:03:37 2026 +0200"
      },
      "message": "chore(deps-dev): bump org.assertj:assertj-core from 3.24.2 to 3.27.7 (#47)\n\nBumps [org.assertj:assertj-core](https://github.com/assertj/assertj) from 3.24.2 to 3.27.7.\n- [Release notes](https://github.com/assertj/assertj/releases)\n- [Commits](https://github.com/assertj/assertj/compare/assertj-build-3.24.2...assertj-build-3.27.7)\n\n---\nupdated-dependencies:\n- dependency-name: org.assertj:assertj-core\n  dependency-version: 3.27.7\n  dependency-type: direct:development\n...\n\nSigned-off-by: dependabot[bot] \u003csupport@github.com\u003e\nCo-authored-by: dependabot[bot] \u003c49699333+dependabot[bot]@users.noreply.github.com\u003e"
    },
    {
      "commit": "c80ee1a9a32ae37af356a6527b17f4bc54ea9370",
      "tree": "1914426a0cda2ca5fc601e7283859e6741218b41",
      "parents": [
        "9f068e918dc2caadb94842c272d0aa66d8d78549",
        "fd4daf89b8704d21d37eccaf555860071e76bc7e"
      ],
      "author": {
        "name": "Carsten Ziegeler",
        "email": "cziegeler@apache.org",
        "time": "Thu May 28 13:02:15 2026 +0200"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Thu May 28 13:02:15 2026 +0200"
      },
      "message": "Merge pull request #45 from apache/maia/workflow-1776788150435\n\nBump sling-bundle-parent, pin slf4j, skip tests if Docker/Keycloak unavailable"
    },
    {
      "commit": "fd4daf89b8704d21d37eccaf555860071e76bc7e",
      "tree": "1914426a0cda2ca5fc601e7283859e6741218b41",
      "parents": [
        "3d770064570c606992c8ae642bff89e8767ecfc4"
      ],
      "author": {
        "name": "Carsten Ziegeler",
        "email": "cziegeler@apache.org",
        "time": "Thu May 28 12:32:14 2026 +0200"
      },
      "committer": {
        "name": "Carsten Ziegeler",
        "email": "cziegeler@apache.org",
        "time": "Thu May 28 12:32:14 2026 +0200"
      },
      "message": "Pin slf4j to 1.7.x for slingstarter 13\n"
    },
    {
      "commit": "3d770064570c606992c8ae642bff89e8767ecfc4",
      "tree": "d0310e1be6e0877ad96533b6abdc4f92445c6598",
      "parents": [
        "478ded2f2464fa856063ec6d0dc7e72ce9d46393"
      ],
      "author": {
        "name": "Carsten Ziegeler",
        "email": "cziegeler@apache.org",
        "time": "Thu May 28 12:15:35 2026 +0200"
      },
      "committer": {
        "name": "Carsten Ziegeler",
        "email": "cziegeler@apache.org",
        "time": "Thu May 28 12:15:35 2026 +0200"
      },
      "message": "Use property to disable keycloak\n"
    },
    {
      "commit": "478ded2f2464fa856063ec6d0dc7e72ce9d46393",
      "tree": "6f6eedf2e667288cbdde74f9e4a3b96371786457",
      "parents": [
        "933b9e408a6e7ae6422f5fe9609b7d5e7b329dd2"
      ],
      "author": {
        "name": "Carsten Ziegeler",
        "email": "cziegeler@apache.org",
        "time": "Thu Apr 23 11:04:32 2026 +0200"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Thu Apr 23 11:04:32 2026 +0200"
      },
      "message": "Update pom.xml\n\nCo-authored-by: Copilot \u003c175728472+Copilot@users.noreply.github.com\u003e"
    },
    {
      "commit": "933b9e408a6e7ae6422f5fe9609b7d5e7b329dd2",
      "tree": "195eda8040beaf898f01c6c6fca10087e5723e10",
      "parents": [
        "9f068e918dc2caadb94842c272d0aa66d8d78549"
      ],
      "author": {
        "name": "Carsten Ziegeler",
        "email": "cziegeler@apache.org",
        "time": "Tue Apr 21 18:15:50 2026 +0200"
      },
      "committer": {
        "name": "Carsten Ziegeler",
        "email": "cziegeler@apache.org",
        "time": "Tue Apr 21 18:15:50 2026 +0200"
      },
      "message": "chore: bump sling-bundle-parent to 66, pin slf4j version, and gracefully skip tests when containers unavailable\n\nCo-authored-by: Maia \u003cmaia@noreply\u003e\n"
    },
    {
      "commit": "9f068e918dc2caadb94842c272d0aa66d8d78549",
      "tree": "5de339245c4a935bf886563bc7d89c066910b0d4",
      "parents": [
        "091488d7a57047934039784fadf8417f32735910"
      ],
      "author": {
        "name": "Nicola Scendoni",
        "email": "scendoni@gmail.com",
        "time": "Tue Mar 31 15:05:40 2026 +0200"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Tue Mar 31 15:05:40 2026 +0200"
      },
      "message": "SLING-13119 Enhance OIDC authentication with support for SP-initiated logout\n\n* SLING-13049 Enhance OIDC authentication with support for SP-initiated logout\n\n- Added support for SP-initiated single logout by introducing an end_session_endpoint configuration in OidcConnectionImpl.\n- Updated OidcAuthenticationHandler to handle logout redirection to the IdP\u0027s end session endpoint.\n- Implemented logic to store the ID token for use during logout.\n- Enhanced tests to verify the correct behavior of the logout process, including redirection and allowed hosts validation.\n- Refactored related classes to accommodate new logout functionality.\n- possibility to delete the user tokens on logout\n- Flag to enable idp single logout\n- redirect parameter to logout\n\n* Refactoring Tests\nImplementation of review findings\n\n* OidcLogoutHandler.java\n  - S2589: Removed redundant scheme \u003d\u003d null / host \u003d\u003d null checks (they\u0027re @NotNull) — kept empty-only validation\n  - S1118: Added private UriBuilder() {} constructor\n  - S107: Added @SuppressWarnings(\"java:S107\") on the 8-param constructor\n  - S1075: Extracted ROOT_PATH \u003d \"/\" constant, replaced hard-coded \"/\" usages\n\n  JcrUserHomeOAuthTokenStore.java\n  - S3776: Extracted readEncryptedProperty() and decryptIdToken() helpers, reducing cognitive complexity of getIdToken()\n  - S5145: Added safeUserId sanitization (replace(\u0027\\n\u0027,\u0027_\u0027).replace(\u0027\\r\u0027,\u0027_\u0027)) used in all log calls\n  - S1141: Inner try/catch moved into decryptIdToken() helper\n  - S2139: Removed logger.error from the outer catch; now throws OAuthException(String, Throwable) with context message (added the two-arg constructor to OAuthException)\n\n  OidcAuthenticationHandlerTest.java\n  - S4144: Deleted requestCredentialsWithNullResourceAttribute (identical to requestCredentialsWithEmptyResourceAttribute)\n  - S5976: Replaced 6 similar dropCredentials tests with a single @ParameterizedTest @MethodSource(\"redirectPathScenarios\") covering all 6 cases\n\n* Added tests to meet SonarQube standards\n\n  JcrUserHomeOAuthTokenStoreTest — 9 tests for the new getIdToken() family:\n  - Session not JackrabbitSession → null\n  - User not found / user is group → null\n  - Token found at each of the 3 search paths (oauth-tokens/{conn}/id_token, profile/id_token, id_token)\n  - No token at any path → null\n  - Empty values array / empty token string → null (covers readEncryptedProperty edge cases)\n  - Decryption fails → null (covers decryptIdToken error path)\n  - RepositoryException → throws OAuthException (covers new OAuthException(String, Throwable) constructor)\n  OidcLogoutHandlerTest — 13 tests covering missing branches:\n  - resolveConnectionForLogout: empty connections, default name not found in map, empty default name\n    - getEndSessionEndpoint: non-OidcConnectionImpl connection, OidcConnectionImpl with endpoint\n    - UriBuilder.buildRedirectUri: empty scheme throws, empty host throws, null path defaults to /, default port omitted\n    - getIdTokenFromOak with tokenStore: returns token from store, returns null when no connection available\n\n* Addressed last comments from Robert and SonarQube\n\n* - Modified OidcLogoutHandler resolveConnectionForLogout to return null if the connection doesn\u0027t exists\n- Made OidcLogoutHandler Osgi Service\n\n* Set configurationPolicy \u003d OPTIONAL for JcrUserHomeOAuthTokenStore\n\n* Removed service user and used ResourceResolver\n\n* - Renamed getIdTokenFromOak to getIdTokenFromTokenStore\n- Refactoring Tests\n- Implemented getIdTokenFromTokenStore in RedisOAuthTokenStore and InMemoryOAuthTokenStore\n\n- addressed Sonatype linter findings\n\n- fix formatting\n\n- added ConfigurationPolicy.REQUIRE to JcrUserHomeOAuthTokenStore\n\n- Restored JcrUserHomeOAuthTokenStore(@Reference CryptoService cryptoService) as in master\n\n- Added configuration for JcrUserHomeOAuthTokenStore in IT Tests"
    },
    {
      "commit": "091488d7a57047934039784fadf8417f32735910",
      "tree": "fd063a2255b642ef1d42611f13dfb8439cf8efcb",
      "parents": [
        "cb8d827af3fbf2bcbc6d9b086fc31ffe160f29b3"
      ],
      "author": {
        "name": "Nicola Scendoni",
        "email": "scendoni@gmail.com",
        "time": "Tue Feb 10 16:56:17 2026 +0100"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Tue Feb 10 16:56:17 2026 +0100"
      },
      "message": "SLING-13048 Enhance OIDC authentication flow by adding configurable request key cookie max age (#43)\n\n* SLING-13048 Enhance OIDC authentication flow by adding configurable request key cookie max age\n\n- Introduced a new configuration option for the request key cookie max age in OidcAuthenticationHandler.\n- Updated RedirectHelper to utilize the configurable max age when setting cookies.\n- Modified OAuthEntryPointServlet to pass the new max age parameter.\n- Added tests to verify the correct usage of the configured cookie max age.\n\n* Refactor RedirectHelperTest to use a constant for cookie expiration time\n\n- Introduced a constant COOKIE_EXPIRE_SECONDS to replace hardcoded values in test cases.\n- Updated all relevant test methods to utilize the new constant for improved readability and maintainability.\n\n* Reformatted method calls in RedirectHelperTest\n\n* Enhance OAuthEntryPointServlet with configurable request key cookie max age\n\n- Added a new configuration option for the request key cookie max age in OAuthEntryPointServlet.\n- Updated the constructor to accept the configuration and utilize the specified max age for the request key cookie.\n- Enhanced unit tests to verify the correct application of the configured cookie max age."
    },
    {
      "commit": "cb8d827af3fbf2bcbc6d9b086fc31ffe160f29b3",
      "tree": "0f27914ca27c24a38478cb78bad113b3ec2b5e71",
      "parents": [
        "7eda64d0b9c86efda60babc431c2b3f2974f8b91"
      ],
      "author": {
        "name": "Nicola Scendoni",
        "email": "nscendoni@adobe.com",
        "time": "Thu Jan 08 11:59:03 2026 +0100"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Thu Jan 08 11:59:03 2026 +0100"
      },
      "message": "SLING-13047 Add RFC 8707 Resource Indicators support to Sling OIDC Au… (#40)\n\n* SLING-13047 Add RFC 8707 Resource Indicators support to Sling OIDC Authentication Handler\n"
    },
    {
      "commit": "7eda64d0b9c86efda60babc431c2b3f2974f8b91",
      "tree": "cf170138b2b67d848ab66d0e1620ad83bc2bb14f",
      "parents": [
        "951bd3fffe032cc5f962a45d6d9cf561a0bd63d8"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Wed Jan 07 13:44:02 2026 +0100"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Wed Jan 07 13:44:02 2026 +0100"
      },
      "message": "chore(testing): replace Thread.sleep with Awaitility in AuthorizationCodeFlowIT (#42)\n\n"
    },
    {
      "commit": "951bd3fffe032cc5f962a45d6d9cf561a0bd63d8",
      "tree": "d5ff85246821f33e0e4307bb42834eee1995dd72",
      "parents": [
        "079eafdaea60cca72efe864e0b9279721588bf6c"
      ],
      "author": {
        "name": "Nicola Scendoni",
        "email": "nscendoni@adobe.com",
        "time": "Wed Dec 03 13:16:52 2025 +0100"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Wed Dec 03 13:16:52 2025 +0100"
      },
      "message": "SLING-13004 Query parameters from original request are lost after authentication (#39)\n\n"
    },
    {
      "commit": "079eafdaea60cca72efe864e0b9279721588bf6c",
      "tree": "7698c01421a6ce4866aa2bd13e7f0a5367f8c346",
      "parents": [
        "cd22763d545fc87a30a34bb18a0c12d29920fa1e"
      ],
      "author": {
        "name": "Nicola Scendoni",
        "email": "nscendoni@adobe.com",
        "time": "Thu Nov 27 17:59:48 2025 +0100"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Thu Nov 27 17:59:48 2025 +0100"
      },
      "message": "SLING-12993 Support oidc_request_path Parameter in OIDC Authentication Handler (#38)\n\n* SLING-12993 Support oidc_request_path Parameter in OIDC Authentication Handler\n\n* Adding OidcAuthenticationHandlerException and exception management refactoring\n\n* Fixing flaky IT Test"
    },
    {
      "commit": "cd22763d545fc87a30a34bb18a0c12d29920fa1e",
      "tree": "ee58408cef15374d63f21c3f2a546655525c2699",
      "parents": [
        "902a643b7f5369eaafde89b8adeea6659045fddb"
      ],
      "author": {
        "name": "Stefan Seifert",
        "email": "stefanseifert@users.noreply.github.com",
        "time": "Wed Nov 26 11:49:26 2025 +0100"
      },
      "committer": {
        "name": "Stefan Seifert",
        "email": "stefanseifert@users.noreply.github.com",
        "time": "Wed Nov 26 11:49:26 2025 +0100"
      },
      "message": "remove duplicate osgi-mock dependency\n"
    },
    {
      "commit": "902a643b7f5369eaafde89b8adeea6659045fddb",
      "tree": "170bf0def926cad4c7d9bf09c95116e9b8bf7b3e",
      "parents": [
        "262793cdd4be3f7153c09b22ed962589e91341c9"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Fri Nov 21 15:52:07 2025 +0100"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Fri Nov 21 15:52:07 2025 +0100"
      },
      "message": "SLING-13008 - Update to test containers 2.0.2 (#37)\n\n- switch to latest testcontainers dependency versions\n- remove workaround needed by old testcontainers version\n- pin some transitive dependencies for compatibility\n- remove accidental JUnit 4 API usage\n- use keycloak container version as required by latest libraries"
    },
    {
      "commit": "262793cdd4be3f7153c09b22ed962589e91341c9",
      "tree": "a0dbb7e1bef0137d95ca49f05e091d3ffda083c2",
      "parents": [
        "fcb5e74a51471650c90d87442c77d969fb1499fa"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Fri Nov 14 13:32:49 2025 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Fri Nov 14 13:32:49 2025 +0100"
      },
      "message": "[maven-release-plugin] prepare for next development iteration\n"
    },
    {
      "commit": "fcb5e74a51471650c90d87442c77d969fb1499fa",
      "tree": "36efa035b9851b840643f659b821175686900b09",
      "parents": [
        "8a3e8569956c66393e8935167edaf5fd97d27f95"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Fri Nov 14 13:32:43 2025 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Fri Nov 14 13:32:43 2025 +0100"
      },
      "message": "[maven-release-plugin] prepare release org.apache.sling.auth.oauth-client-0.1.6\n"
    },
    {
      "commit": "8a3e8569956c66393e8935167edaf5fd97d27f95",
      "tree": "4baef1ec3dad3cc0f3efe8f7a4408b71567de31c",
      "parents": [
        "b4ac79cf0e6e71e8b6eb1a89b1321a520d2b7093"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Wed Nov 12 10:21:14 2025 +0100"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Wed Nov 12 10:21:14 2025 +0100"
      },
      "message": "SLING-12999 - Invalid refresh tokens are not cleared (#35)\n\nAlways clear access/refresh tokens in case the refreshing the token fails."
    },
    {
      "commit": "b4ac79cf0e6e71e8b6eb1a89b1321a520d2b7093",
      "tree": "a70f8ccb9e83da7d7683738bb9ab6e6cab50174e",
      "parents": [
        "3b4bc36db428639bd1d0275b45b3c2ece7b8b282"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Wed Nov 12 10:09:39 2025 +0100"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Wed Nov 12 10:09:39 2025 +0100"
      },
      "message": "chore: work around testcontainers-java incompatibility with Docker 29.0.0 (#36)\n\n"
    },
    {
      "commit": "3b4bc36db428639bd1d0275b45b3c2ece7b8b282",
      "tree": "f860ccc842d17716530174e7aa0b5e3a96fbe3cc",
      "parents": [
        "15d63fdccba93c046c871bb1a5afdd6a5208ff19"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Wed Nov 05 11:25:12 2025 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Wed Nov 05 11:25:12 2025 +0100"
      },
      "message": "chore: typo fixes in README\n"
    },
    {
      "commit": "15d63fdccba93c046c871bb1a5afdd6a5208ff19",
      "tree": "6c0cb5ce217d707ada9bc4eee054dfb32969f71b",
      "parents": [
        "ad9973ee8de2c9b0c84c5a68977e29b5ad583d02"
      ],
      "author": {
        "name": "Nicola Scendoni",
        "email": "nscendoni@adobe.com",
        "time": "Wed Oct 29 10:49:13 2025 +0100"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Wed Oct 29 10:49:13 2025 +0100"
      },
      "message": "SLING-12982 Restrict possible values of redirect parameter (#34)\n\n"
    },
    {
      "commit": "ad9973ee8de2c9b0c84c5a68977e29b5ad583d02",
      "tree": "37ffab36ef8dd345a1bd34e5e7187cf0c327694d",
      "parents": [
        "34065780a798d883db7eefff3d8e09f7810aa4ef"
      ],
      "author": {
        "name": "Nicola Scendoni",
        "email": "nscendoni@adobe.com",
        "time": "Thu Oct 23 18:09:43 2025 +0200"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Thu Oct 23 18:09:43 2025 +0200"
      },
      "message": "SLING-12876 - rename idpNameInUserId to idpNameInPrincipals (#33)\n\n"
    },
    {
      "commit": "34065780a798d883db7eefff3d8e09f7810aa4ef",
      "tree": "c0a16c80b5259d9ca764248c3c05bb91ce4e3d54",
      "parents": [
        "161b5e2593353c202569b1757dc8d5d640b49ba2"
      ],
      "author": {
        "name": "Nicola Scendoni",
        "email": "nscendoni@adobe.com",
        "time": "Thu Oct 23 14:15:04 2025 +0200"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Thu Oct 23 14:15:04 2025 +0200"
      },
      "message": "SLING-12876 Principals created by OidcIdentityProvider should optionally have suffix of idp (#28)\n\n"
    },
    {
      "commit": "161b5e2593353c202569b1757dc8d5d640b49ba2",
      "tree": "5d305193ffa9135b61670f9f58b9426a834633e6",
      "parents": [
        "523d29c20b270e5ff1e89e941a8071e1c42b7dc3"
      ],
      "author": {
        "name": "Nicola Scendoni",
        "email": "nscendoni@adobe.com",
        "time": "Wed Oct 22 17:45:57 2025 +0200"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Wed Oct 22 17:45:57 2025 +0200"
      },
      "message": "SLING-12976 -  Allow manual configuration of OidcConnection (#32)\n\n"
    },
    {
      "commit": "523d29c20b270e5ff1e89e941a8071e1c42b7dc3",
      "tree": "71e5ef9917ae6ed34bc89f2b91befc44a24c2ce3",
      "parents": [
        "9b3d2390acbbdb97707121a42ece30f805b97926"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Tue Oct 21 17:20:51 2025 +0200"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Tue Oct 21 17:20:51 2025 +0200"
      },
      "message": "[maven-release-plugin] prepare for next development iteration\n"
    },
    {
      "commit": "9b3d2390acbbdb97707121a42ece30f805b97926",
      "tree": "48ac26dae321e0ba07b54ee43546545770c33d7a",
      "parents": [
        "c7ea379b2bdf0424852835424fd8a4bde4b2e4da"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Tue Oct 21 17:19:59 2025 +0200"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Tue Oct 21 17:19:59 2025 +0200"
      },
      "message": "[maven-release-plugin] prepare release org.apache.sling.auth.oauth-client-0.1.4\n"
    },
    {
      "commit": "c7ea379b2bdf0424852835424fd8a4bde4b2e4da",
      "tree": "1c9a3c6e451e8db952ba54da8b81c53f93d1eaf5",
      "parents": [
        "2fb5e1289a3cc821faff68833b32572166478aba"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Tue Oct 21 16:53:43 2025 +0200"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Tue Oct 21 16:54:05 2025 +0200"
      },
      "message": "chore: remove outdated TODO\n\nOptional.of will gracefully handle a null value\n"
    },
    {
      "commit": "2fb5e1289a3cc821faff68833b32572166478aba",
      "tree": "f890d70da61363c1032fe6c28b8e87b0fbe5552f",
      "parents": [
        "6795cc2c8efcd7def1bafb2bb47d244db7847cc2",
        "1a09377914873a11e5d7bb505339b5fafc9cb18d"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Tue Oct 21 16:51:39 2025 +0200"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Tue Oct 21 16:51:39 2025 +0200"
      },
      "message": "Merge pull request #31 from apache/issue/SLING-12975\n\nSLING-12975 - Refreshing OAuth access tokens can remove current refresh token"
    },
    {
      "commit": "1a09377914873a11e5d7bb505339b5fafc9cb18d",
      "tree": "f890d70da61363c1032fe6c28b8e87b0fbe5552f",
      "parents": [
        "2c5257fc7d52e9a64166778938810eb802d69c73"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Tue Oct 21 16:37:35 2025 +0200"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Tue Oct 21 16:37:35 2025 +0200"
      },
      "message": "SLING-12975 - Refreshing OAuth access tokens can remove current refresh token\n\nEnsure that the old refresh token is preserved if none is returned after the tokens have been refreshed.\n"
    },
    {
      "commit": "2c5257fc7d52e9a64166778938810eb802d69c73",
      "tree": "97c687ce9c867f5da40f6d2397d9d89620b8e8d0",
      "parents": [
        "6795cc2c8efcd7def1bafb2bb47d244db7847cc2"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Tue Oct 21 16:36:44 2025 +0200"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Tue Oct 21 16:36:44 2025 +0200"
      },
      "message": "SLING-12975 - Refreshing OAuth access tokens can remove current refresh token\n\nAdd tests to demonstrate the current behaviour of OAuthTokenRefresherImpl. The behaviour is\ncorrect, is it is supposed to relay the exact response from the server.\n"
    },
    {
      "commit": "6795cc2c8efcd7def1bafb2bb47d244db7847cc2",
      "tree": "8665305e5342d6cb67c13bdf5410b8b58ede4921",
      "parents": [
        "2587f5dab5ee0dd168ddaa9a2072dace42e445f5"
      ],
      "author": {
        "name": "Nicola Scendoni",
        "email": "nscendoni@adobe.com",
        "time": "Fri Sep 05 15:53:33 2025 +0200"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Fri Sep 05 15:53:33 2025 +0200"
      },
      "message": "SLING-12926 SlingLoginCookieManager hardcodes the idp name to \u0027oidc\u0027 (#30)\n\n"
    },
    {
      "commit": "2587f5dab5ee0dd168ddaa9a2072dace42e445f5",
      "tree": "ec9e92c63a849b852a0eb64549151f0eed4e1e2e",
      "parents": [
        "c84fd60772fbe9dc4287fcd5ed03cc9630b31ebc"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Wed Aug 06 14:20:02 2025 +0200"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Wed Aug 06 14:20:02 2025 +0200"
      },
      "message": "SLING-12866 - Restrict force pushes, auto-delete branches on merge\n"
    },
    {
      "commit": "c84fd60772fbe9dc4287fcd5ed03cc9630b31ebc",
      "tree": "182c80e1f9b256d27e9d6736be00a3e68ee6d7a2",
      "parents": [
        "6e151a2533513bae7220983676df5434b3e29ced"
      ],
      "author": {
        "name": "Nicola Scendoni",
        "email": "nscendoni@adobe.com",
        "time": "Wed Aug 06 10:55:46 2025 +0200"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Wed Aug 06 10:55:46 2025 +0200"
      },
      "message": "SLING-12871 SlingUserInfoProcessor doesn\u0027t store Refresh token (#29)\n\nFollow-up fix."
    },
    {
      "commit": "6e151a2533513bae7220983676df5434b3e29ced",
      "tree": "03fc404716f904844d6924f6fef793f116cad974",
      "parents": [
        "bd3f85b32c8e8e8329a2cfa3291810b248b898bd"
      ],
      "author": {
        "name": "Nicola Scendoni",
        "email": "nscendoni@adobe.com",
        "time": "Tue Aug 05 11:01:44 2025 +0200"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Tue Aug 05 11:01:44 2025 +0200"
      },
      "message": "SLING-12871 SlingUserInfoProcessor doesn\u0027t store Refresh token (#27)\n\n* SLING-12851 SlingUserInfoProcessor should be a ServiceFactory\n\n* address review finding in SlingUserInfoProcessorImpl.java\n\n* review finding as discussed: handle missing userinfoprocessor\n\n* added test for missing UserInfoProcessor\n\n* SLING-12871 SlingUserInfoProcessor doesn\u0027t store Refresh token\n\n---------\n\nCo-authored-by: angela \u003canchela@adobe.com\u003e"
    },
    {
      "commit": "bd3f85b32c8e8e8329a2cfa3291810b248b898bd",
      "tree": "50bb56698780d0c50d71827eb78450d375afc5fa",
      "parents": [
        "b531aa11908c1fa8102ec62d7f0b4280d76051a0"
      ],
      "author": {
        "name": "Nicola Scendoni",
        "email": "nscendoni@adobe.com",
        "time": "Tue Aug 05 08:25:38 2025 +0200"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Tue Aug 05 08:25:38 2025 +0200"
      },
      "message": "SLING-12851 SlingUserInfoProcessor should be a ServiceFactory (#26)\n\n"
    },
    {
      "commit": "b531aa11908c1fa8102ec62d7f0b4280d76051a0",
      "tree": "789c0d41ddeaeb52c40f8646a6324419da8196d2",
      "parents": [
        "12def553f5b106ec54a8f80e62db7b1f67f00500"
      ],
      "author": {
        "name": "Nicola Scendoni",
        "email": "nscendoni@adobe.com",
        "time": "Wed Jul 30 15:52:12 2025 +0200"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Wed Jul 30 15:52:12 2025 +0200"
      },
      "message": "SLING-12850 Added support for groups in ID Token. (#25)\n\n"
    },
    {
      "commit": "12def553f5b106ec54a8f80e62db7b1f67f00500",
      "tree": "7b280cfe5584a654962485e80b65f50a444668ea",
      "parents": [
        "108704d760e87e49f7091158b87391eb08ac8e51"
      ],
      "author": {
        "name": "Nicola Scendoni",
        "email": "nscendoni@adobe.com",
        "time": "Wed Jun 25 10:40:27 2025 +0200"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Wed Jun 25 10:40:27 2025 +0200"
      },
      "message": "SLING-12838 - Support for non-OIDC connections broken (#24)\n\n"
    },
    {
      "commit": "108704d760e87e49f7091158b87391eb08ac8e51",
      "tree": "d2df460b27e934482659852310aa67641d047eaa",
      "parents": [
        "8278f2e588c48ec7a9215bd32032f30679c22c91"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Wed Jun 18 16:49:48 2025 +0200"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Wed Jun 18 16:49:48 2025 +0200"
      },
      "message": "[maven-release-plugin] prepare for next development iteration\n"
    },
    {
      "commit": "8278f2e588c48ec7a9215bd32032f30679c22c91",
      "tree": "8ec4a09ae1ed32b2fa7a93f22e8175baea76203a",
      "parents": [
        "c467b0ed44c48b46a9844970d25b6fb3012649e3"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Wed Jun 18 16:49:42 2025 +0200"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Wed Jun 18 16:49:42 2025 +0200"
      },
      "message": "[maven-release-plugin] prepare release org.apache.sling.auth.oauth-client-0.1.2\n"
    },
    {
      "commit": "c467b0ed44c48b46a9844970d25b6fb3012649e3",
      "tree": "ff4cbc860fad816fa1092e710e8b552ae41f5d1e",
      "parents": [
        "566126abda9e07111500e53212e3966fe1211675"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Wed Jun 18 16:46:11 2025 +0200"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Wed Jun 18 16:46:11 2025 +0200"
      },
      "message": "chore: remove unused OAuthStateManager (#23)\n\n"
    },
    {
      "commit": "566126abda9e07111500e53212e3966fe1211675",
      "tree": "aa8f7abd1bfb6975609ad3fc7b35be6fb27f7ff3",
      "parents": [
        "acfecb904f716eebc55a3277ac455c7c9f1d0682"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Wed Jun 18 14:05:15 2025 +0200"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Wed Jun 18 14:05:15 2025 +0200"
      },
      "message": "chore(deps): update to org.apache.sling.api 2.25.4 (#22)\n\nThis is the first released version not affected by CVE-2022-32549. The vulnerability has no impact\non the bundle, but let\u0027s keep the security scanning tools happy."
    },
    {
      "commit": "acfecb904f716eebc55a3277ac455c7c9f1d0682",
      "tree": "aa9f2173472f232f8be05ba64f9a503fa758de19",
      "parents": [
        "46bec3e40f5878bece450b96d7502050247c7bbc"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Wed Jun 18 13:49:30 2025 +0200"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Wed Jun 18 13:49:30 2025 +0200"
      },
      "message": "chore: enable baseline checks, now that we have a release (#21)\n\nAlso bump initial version of spi package to 0.1.0 to better align with bundle version and other exports."
    },
    {
      "commit": "46bec3e40f5878bece450b96d7502050247c7bbc",
      "tree": "1843ea58fcb92e5e4d4c01e1b7b945ff5f2737c3",
      "parents": [
        "449b3feeadd93e1d667081ed9ebeb58951c78d7c"
      ],
      "author": {
        "name": "Nicola Scendoni",
        "email": "nscendoni@adobe.com",
        "time": "Mon Jun 16 16:54:44 2025 +0200"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Mon Jun 16 16:54:44 2025 +0200"
      },
      "message": "SLING-12714 - Refactoring Tests - removed custom Mock classes and junit 4 tests (#20)\n\n"
    },
    {
      "commit": "449b3feeadd93e1d667081ed9ebeb58951c78d7c",
      "tree": "41a675e475252a07adf779f98c485edc09c263f5",
      "parents": [
        "7271bf86f71cc9264c94ab7e09bd784b3640c97d",
        "16ed48a42b66c56f041fa298e3cac4449d80f8eb"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Tue Jun 03 15:23:10 2025 +0200"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Tue Jun 03 15:23:10 2025 +0200"
      },
      "message": "Merge pull request #19 from apache/issue/SLING-12817\n\nSLING-12817 - Update to parent pom 62"
    },
    {
      "commit": "16ed48a42b66c56f041fa298e3cac4449d80f8eb",
      "tree": "41a675e475252a07adf779f98c485edc09c263f5",
      "parents": [
        "366668af55249d0f5d3a3c5a3cd7617f34cf4af8"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Tue Jun 03 15:10:26 2025 +0200"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Tue Jun 03 15:11:02 2025 +0200"
      },
      "message": "SLING-12817 - Update to parent pom 62\n\nIgnore formatting applied in 0e07968bb060acd5dca35812ef40d14f85f58db2 for git blame.\n"
    },
    {
      "commit": "366668af55249d0f5d3a3c5a3cd7617f34cf4af8",
      "tree": "73b1006246f95b5d1eaedcd2712b6a422b04b766",
      "parents": [
        "74b81e7f784271b9dfca3ec0598034e95d88e43b"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Tue Jun 03 15:09:51 2025 +0200"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Tue Jun 03 15:11:02 2025 +0200"
      },
      "message": "SLING-12817 - Update to parent pom 62\n\nReformat using mvn spotless:apply\n"
    },
    {
      "commit": "74b81e7f784271b9dfca3ec0598034e95d88e43b",
      "tree": "400760d1563609710926cf6866bc090dbfab52b4",
      "parents": [
        "7271bf86f71cc9264c94ab7e09bd784b3640c97d"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Tue Jun 03 15:08:51 2025 +0200"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Tue Jun 03 15:11:02 2025 +0200"
      },
      "message": "SLING-12817 - Update to parent pom 62\n\nUpdate the parent pom version and remove version overrides.\n"
    },
    {
      "commit": "7271bf86f71cc9264c94ab7e09bd784b3640c97d",
      "tree": "f5e3500bcc304c588ce77fa68fd98e717192835f",
      "parents": [
        "3b0ebb96857a13c068c896e1ca9a033aaa9c01f1"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Tue Jun 03 15:04:09 2025 +0200"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Tue Jun 03 15:04:09 2025 +0200"
      },
      "message": "SLING-12714 - Oidc Authentication Handler (#18)\n\nMinor test cleanups"
    },
    {
      "commit": "3b0ebb96857a13c068c896e1ca9a033aaa9c01f1",
      "tree": "4f2cab0380e7fd67c8d91dd89598ce58add51acb",
      "parents": [
        "802e11b84796b59e6359c901dbdd1d5cb4ad87de"
      ],
      "author": {
        "name": "Nicola Scendoni",
        "email": "nscendoni@adobe.com",
        "time": "Tue Jun 03 14:19:05 2025 +0200"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Tue Jun 03 14:19:05 2025 +0200"
      },
      "message": "SLING-12714 - Impementation of OidcAuthenticationHandler (Support for PKCE, nonce in OidcAuthenticationHandler, bug fixes) (#15)\n\n* Added support for Authorization Code Flow with PKCE\n* Added check nonce in IDToken\n* Various improvements and fixes\n\n- Added path array in OidcAuthenticationHandler config\n- Added path to cookies\n- Refactoring IT Test and ResolvedConnection\n- Small refactoring OidcAuthenticationHandler\n- Added groups to Keycloak test\n- Improved README.md\n\n* Fix bug when urls with parameters are authenticated\n* Removed nonce from OAuthState\n* Encrypted nonce cookie\n* Restore log as Robert\u0027s comment\n* chore: remove unnecessary changes from keycloak-import/sling.json\n* Implemented single encrypted cookie to store OAuth/OIDC data\n* Removed temporary files after tests\n\n---------\n\nCo-authored-by: Robert Munteanu \u003crombert@apache.org\u003e"
    },
    {
      "commit": "802e11b84796b59e6359c901dbdd1d5cb4ad87de",
      "tree": "799c701b05a7e1465fbd268ba32f125262c3b973",
      "parents": [
        "cf7b1ff5a36b9d13143445be107ebd679cd70398"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Fri May 23 17:56:48 2025 +0200"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Fri May 23 17:56:48 2025 +0200"
      },
      "message": "SLING-12592 - Do not install/deploy feature models used for testing (#16)\n\nUse the latest versions of the feature model tooling and no longer attach the \u0027app\u0027 feature\naggregate used for testing."
    },
    {
      "commit": "cf7b1ff5a36b9d13143445be107ebd679cd70398",
      "tree": "040f8313248f5ff077754dd60784e2bac0ed9c18",
      "parents": [
        "3a7873af1e2a48a268243d02a3096d30fab89fa0"
      ],
      "author": {
        "name": "Nicola Scendoni",
        "email": "nscendoni@adobe.com",
        "time": "Wed May 21 16:39:57 2025 +0200"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Wed May 21 16:39:57 2025 +0200"
      },
      "message": "SLING-12792 Ensure Java 11 Compatibility for sling-org-apache-sling-auth-oauth-client (#17)\n\n"
    },
    {
      "commit": "3a7873af1e2a48a268243d02a3096d30fab89fa0",
      "tree": "21de4a1cd019d9276a5e91a949efd9e1d20a4c25",
      "parents": [
        "8acd62db4fb0934c16b2d2522baa4ccf9c53f3a0"
      ],
      "author": {
        "name": "Nicola Scendoni",
        "email": "nscendoni@adobe.com",
        "time": "Sun May 04 12:19:25 2025 +0200"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Sun May 04 12:19:25 2025 +0200"
      },
      "message": "SLING-12714 - Impementation of OidcAuthenticationHandler (#14)\n\n* minor improvements: add nullable and notnull annotations, defense against NPE\n\n* docs: record Microsoft OIDC as validated\n\n* first commit of auth handler\n\n* fix on main.json\n\n* fix on main.json\n\n* auth handler provision users and authenticate users. Profile not correcly provisioned.\n\n* added redirect management\n\n* Set up Maven build with GH actions (#2)\n\n* modified org.apache.jackrabbit version and fix on main.json as suggested by rmuntean\n\n* Added TokenUpdate service to allow to perform custom update on login token.\n\n* Fixed IT Test.\n\n* renamed TokenUpdate class to LoginCookieManager\n\n* Exported spi, defined serviceRank, added support for groups\n\n* minor improvements: add nullable and notnull annotations, defense against NPE\n\n* Set up Maven build with GH actions (#2)\n\n* ci: only run the test phase\n\nThe package phase downloads the SNAPSHOT version of the Sling Starter and becomes rate limited.\n\n* Adding AuthenticationHandler (#1)\n\n* docs: record Microsoft OIDC as validated\n\n* first commit of auth handler\n\n* fix on main.json\n\n* fix on main.json\n\n* auth handler provision users and authenticate users. Profile not correcly provisioned.\n\n* added redirect management\n\n* modified org.apache.jackrabbit version and fix on main.json as suggested by rmuntean\n\n* Added TokenUpdate service to allow to perform custom update on login token.\n\n* Fixed IT Test.\n\n---------\n\nCo-authored-by: Robert Munteanu \u003crombert@apache.org\u003e\n\n* fix imports after merge, removed old files\n\n* removed OidcBearerTokenAuthenticationHandler\n\n* Exported some JcrUserHomeOAuthTokenStore and required dependencies interfaces and classes\n\n* Added support for pkce in Authorization Code flow\n\n* Revert \"Added support for pkce in Authorization Code flow\"\n\nThis reverts commit baa622c083db53635476974d7b9e8dcd3d3095e7.\n\n* Removed classes added to spi to reimplement services that uses sling-common-crypto\n\n* Added first implementation of OidcAuthenticationHandlerTest\n\n* - Implemented Oidc ID Token validation\n- Added Unit Test to OidcAuthenticationHandler\n- Added configuration parameter to disable UserInfo\n- Updated interface in UserInfoProcessor\n\n* - fix on the UserInfoProcessor interface to pass openid subject\n- fix on Unit Test flaky\n\n* fix on pom after robert\u0027s comment\n\n* Added more Unit Tests\nImproved LoginCookieManager interface\n\n* Added RetryRule for IT Tests\n\n* Added retry in the first get in IT Tests\n\n* Removed parameter in javadoc\n\n* Added new tests\n\n* Fixed retry\n\n* Increased Unit Test with line coverage up to 81%\n\n* small changes\n\n* - removed old Felix SCR annotations\n- small increase on test coverage\n\n* Increased test coverage for OidcIdentityProvider\n\n* small changes to increase readability of the patch\n\n* small change on pom.xml to increase readability of the patch\n\n* address review findings\n\n* fix OAuthToken.getValue such that it never returns null -\u003e fix potential NPE and remove corresponding FIXME comments\n\n* avoid NPE with OauthTokens.getAccessToken return null, add TODOs to clarify expected behavior in case of null tokens and upon \u0027clearAccessToken\u0027\n\n* minor improvements to tests, SlingLoginCookieManager: make sure timeout is initialized before passing it to TokenStore constructor\n\n* simplify OidcAuthenticationHandler.extractCredentials (first round)\n\n* OidcAuthenticationHandler: making COOKIE_MAX_AGE_SECONDS constant private, rearraning constants according to java coding style\n\n* simplify OidcAuthenticationHandler.extractCredentials (second round)\n\n* resolve potential NPE in UserInfoProcessorImpl due to null access token, move access-token-attribute name constant from impl to OAuthTokenStore\n\n* improve SlingLoginCookieManagerTest: fill in missing tests, remove empty tests for private methods, address minor sonar findings\n\n* extract RedirectTarget to avoid duplication and auth-handler depending on OAuthEntryPointServlet, minor improvements to tests\n\n* minor improvements: test coverage, nullability annotations, javadoc\n\n* minor improvements: tests\n\n* TokenStoreTest: run parametrized for better coverage of fastSeed false and true\n\n---------\n\nCo-authored-by: angela \u003canchela@adobe.com\u003e\nCo-authored-by: Robert Munteanu \u003crombert@apache.org\u003e\nCo-authored-by: Robert Munteanu \u003crobert.munteanu@gmail.com\u003e"
    },
    {
      "commit": "8acd62db4fb0934c16b2d2522baa4ccf9c53f3a0",
      "tree": "1a7165d2dfad96f5169dbc662c3c7fb73bff3148",
      "parents": [
        "012be3f38584178223725189a92dbbb068f5eb14",
        "5eaa2d2ff4464b1a99a2dfb5c859ea605bf9b9c6"
      ],
      "author": {
        "name": "anchela",
        "email": "angela@apache.org",
        "time": "Tue Mar 25 09:58:41 2025 +0100"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Tue Mar 25 09:58:41 2025 +0100"
      },
      "message": "chore: refactoring adding @NotNull annotations\n\n"
    },
    {
      "commit": "5eaa2d2ff4464b1a99a2dfb5c859ea605bf9b9c6",
      "tree": "1a7165d2dfad96f5169dbc662c3c7fb73bff3148",
      "parents": [
        "012be3f38584178223725189a92dbbb068f5eb14"
      ],
      "author": {
        "name": "Nicola Scendoni",
        "email": "nscendoni@adobe.com",
        "time": "Fri Mar 21 11:10:18 2025 +0100"
      },
      "committer": {
        "name": "Nicola Scendoni",
        "email": "nscendoni@adobe.com",
        "time": "Fri Mar 21 11:27:09 2025 +0100"
      },
      "message": "minor improvements: add nullable and notnull annotations, defense against NPE from @anchela\n"
    },
    {
      "commit": "012be3f38584178223725189a92dbbb068f5eb14",
      "tree": "a4ae15b5ec5b298c8c98e2dbd5834b35b9ea4eb2",
      "parents": [
        "cc6ad040631e0df8bb50f117fae7715b05a4d2b8"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Fri Jan 17 16:44:14 2025 +0100"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Fri Jan 17 16:44:14 2025 +0100"
      },
      "message": "chore: use released Sling Starter 13 (#12)\n\n"
    },
    {
      "commit": "cc6ad040631e0df8bb50f117fae7715b05a4d2b8",
      "tree": "75fb4bc73d2a7ed13af9344a90b834a623c3b0f5",
      "parents": [
        "7a905bedd804e5d848bfd099c86e2052ce928cba"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Fri Dec 20 16:34:03 2024 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Fri Dec 20 16:34:03 2024 +0100"
      },
      "message": "docs: remove stale TODO\n"
    },
    {
      "commit": "7a905bedd804e5d848bfd099c86e2052ce928cba",
      "tree": "290495c081957468b77d367e5a813021f7fda482",
      "parents": [
        "ce2a5911d01954b2796f5a450d3727e3f3096dff"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Fri Dec 20 16:15:07 2024 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Fri Dec 20 16:15:07 2024 +0100"
      },
      "message": "Revert \"chore: temporarily remove references to Sling Starter SNAPSHOT\"\n\nThis reverts commit 854d72cacd8d19fd748637153baf51473ccbb1a6.\n"
    },
    {
      "commit": "ce2a5911d01954b2796f5a450d3727e3f3096dff",
      "tree": "13fbdba4a093b9c39d0468922ec68a55c9a969fe",
      "parents": [
        "1968876cf1c0f86eed4361f5b63a10ab12e7aa2d"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Fri Dec 20 16:02:33 2024 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Fri Dec 20 16:02:33 2024 +0100"
      },
      "message": "[maven-release-plugin] prepare for next development iteration\n"
    },
    {
      "commit": "1968876cf1c0f86eed4361f5b63a10ab12e7aa2d",
      "tree": "3c6ec4150576b92864cac7d0441a84cf54c72caa",
      "parents": [
        "0cb3a196899ce2f4b32ea958deaa9a1ef95a7085"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Fri Dec 20 16:01:12 2024 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Fri Dec 20 16:01:12 2024 +0100"
      },
      "message": "[maven-release-plugin] prepare release org.apache.sling.auth.oauth-client-0.1.0\n"
    },
    {
      "commit": "0cb3a196899ce2f4b32ea958deaa9a1ef95a7085",
      "tree": "315eafea763b8cdb62a57734f7c7e906346b300b",
      "parents": [
        "9efd79abd47cc5bec8aa87bcc4bafbc729c22079"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Fri Dec 20 15:57:35 2024 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Fri Dec 20 15:57:55 2024 +0100"
      },
      "message": "chore: add SCM section\n"
    },
    {
      "commit": "9efd79abd47cc5bec8aa87bcc4bafbc729c22079",
      "tree": "858e1ff15ebcebbfc8810bc0d8ea4191310b437c",
      "parents": [
        "854d72cacd8d19fd748637153baf51473ccbb1a6"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Fri Dec 20 15:55:58 2024 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Fri Dec 20 15:55:58 2024 +0100"
      },
      "message": "chore: pom.xml tweaks\n"
    },
    {
      "commit": "854d72cacd8d19fd748637153baf51473ccbb1a6",
      "tree": "3b31497a90236b24ae9a226efbf0071ef8564afa",
      "parents": [
        "7c685e6782bf31c895b7f0d5f4a655572748c69d"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Fri Dec 20 15:54:53 2024 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Fri Dec 20 15:54:53 2024 +0100"
      },
      "message": "chore: temporarily remove references to Sling Starter SNAPSHOT\n\nWe need to make sure we don\u0027t have SNAPSHOT references when releasing.\n"
    },
    {
      "commit": "7c685e6782bf31c895b7f0d5f4a655572748c69d",
      "tree": "32f77995718ff59024394faa6e4458ad1bb78e94",
      "parents": [
        "086d6cf6c6c84d247e6eabca2bf74783f465ddf7"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Fri Dec 20 15:52:53 2024 +0100"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Fri Dec 20 15:52:53 2024 +0100"
      },
      "message": "chore(deps): update to the latest version of the Sling Testing Clients (#11)\n\n"
    },
    {
      "commit": "086d6cf6c6c84d247e6eabca2bf74783f465ddf7",
      "tree": "bfa6ea9d1126f4c91517ac6e63bd659e1ed6f861",
      "parents": [
        "188080a287ed1d95fb7ff35accaf461a4244d3cc"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Mon Dec 16 23:46:52 2024 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Mon Dec 16 23:46:52 2024 +0100"
      },
      "message": "chore: re-enable SonarQube\n"
    },
    {
      "commit": "188080a287ed1d95fb7ff35accaf461a4244d3cc",
      "tree": "5aa445b74e4fa8213e935a1eda6f3bf8d7ce68ce",
      "parents": [
        "9f7dc1a55939268d59baa961ce6573e8a0d542be"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Mon Dec 16 22:51:28 2024 +0100"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Mon Dec 16 22:51:28 2024 +0100"
      },
      "message": "SLING-12543 - JcrUserHomeOAuthTokenStore allows users to access their own tokens (#10)\n\nEncrypt access and refresh tokens."
    },
    {
      "commit": "9f7dc1a55939268d59baa961ce6573e8a0d542be",
      "tree": "a4851d008061a8cfd18956020254fe759652a9bb",
      "parents": [
        "f9000b425121f17984cf122c9cebfebd98bffdd6"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Mon Dec 16 17:19:49 2024 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Mon Dec 16 17:19:49 2024 +0100"
      },
      "message": "chore: update badges\n"
    },
    {
      "commit": "f9000b425121f17984cf122c9cebfebd98bffdd6",
      "tree": "c760edc5f064b09abbbf0780aa925e31c3b34027",
      "parents": [
        "3cad956b413142e8fa0c85c10c7c53f7a719c1e9"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Dec 12 17:22:32 2024 +0100"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Thu Dec 12 17:22:32 2024 +0100"
      },
      "message": "doc: clarify API situation"
    },
    {
      "commit": "3cad956b413142e8fa0c85c10c7c53f7a719c1e9",
      "tree": "0b56ad5706d8c64178918e9f6982994bcfb1436e",
      "parents": [
        "15e057546022930e8f870b756d1727d7f0217a5d"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Dec 12 17:21:26 2024 +0100"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Thu Dec 12 17:21:26 2024 +0100"
      },
      "message": "feat: add support for all methods in the OAuthEnabledSlingServlet (#9)\n\n"
    },
    {
      "commit": "15e057546022930e8f870b756d1727d7f0217a5d",
      "tree": "8f13d9384fabf25681904255e044b6b978c7c85f",
      "parents": [
        "8e854216f4743fab9d84752e876b0cc6b3ed58ac",
        "6cffd414f583e594e710e6b24a6f800340ea1c47"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Dec 12 16:57:54 2024 +0100"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Thu Dec 12 16:57:54 2024 +0100"
      },
      "message": "Merge pull request #8 from apache/chore/api-fixes\n\nMore API fixes"
    },
    {
      "commit": "6cffd414f583e594e710e6b24a6f800340ea1c47",
      "tree": "8f13d9384fabf25681904255e044b6b978c7c85f",
      "parents": [
        "03b23c1c81a86b799b53edcfa5cf35362e1ef00e"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Dec 12 16:33:37 2024 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Dec 12 16:33:37 2024 +0100"
      },
      "message": "chore: improve Javadoc for ClientConnection\n"
    },
    {
      "commit": "03b23c1c81a86b799b53edcfa5cf35362e1ef00e",
      "tree": "0c725d4d9ab774934ab2903e3179f1b2e8e0340e",
      "parents": [
        "8e854216f4743fab9d84752e876b0cc6b3ed58ac"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Dec 12 11:59:04 2024 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Dec 12 14:59:23 2024 +0100"
      },
      "message": "chore: remove references to OIDC from OAuthUris"
    },
    {
      "commit": "8e854216f4743fab9d84752e876b0cc6b3ed58ac",
      "tree": "df0b3b84d2f96937fc2c766ef5cf1e343cbc5356",
      "parents": [
        "7aa34017b7c9a8255192a8cf03e2e8eb7a1e54c8"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Dec 12 11:00:30 2024 +0100"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Thu Dec 12 11:00:30 2024 +0100"
      },
      "message": "chore: reduce API surface (#7)\n\nWith the OAuthTokenAccess service available all the other APIs can be moved to impl."
    },
    {
      "commit": "7aa34017b7c9a8255192a8cf03e2e8eb7a1e54c8",
      "tree": "a2a4d225f53d26c037ed22fc087df0feb7ed25a8",
      "parents": [
        "7808fdbeac0411aab4262f0dbbe61cfd5784c9e6"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Wed Dec 11 16:46:19 2024 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Wed Dec 11 16:46:19 2024 +0100"
      },
      "message": "docs: Adobe IMS is validated\n"
    },
    {
      "commit": "7808fdbeac0411aab4262f0dbbe61cfd5784c9e6",
      "tree": "09886f4918a66365e62ddcda97504189fdd930d4",
      "parents": [
        "be4045dac56d02d121795ed08afec231123a7077"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Tue Dec 10 15:18:37 2024 +0100"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Tue Dec 10 15:18:37 2024 +0100"
      },
      "message": "feat: introduce a high-level API for retrieving access tokens (#5)\n\n"
    },
    {
      "commit": "be4045dac56d02d121795ed08afec231123a7077",
      "tree": "de3e8fc7536e9c6e72531bbda69acb8219c8e12a",
      "parents": [
        "3846f3353a8a71820733054cfd33146663f7e314"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Tue Dec 10 13:27:22 2024 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Tue Dec 10 13:27:22 2024 +0100"
      },
      "message": "docs: record Microsoft OIDC as validated\n"
    },
    {
      "commit": "3846f3353a8a71820733054cfd33146663f7e314",
      "tree": "fbf61c7bb95f5f37081c0130f4875fdcb655319c",
      "parents": [
        "a420e50ed2b4228a800fed83fae6784a297ac533"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Mon Dec 09 15:50:21 2024 +0100"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Mon Dec 09 15:50:21 2024 +0100"
      },
      "message": "test: extract a test-only InMemoryOAuthTokenStore (#4)\n\n"
    },
    {
      "commit": "a420e50ed2b4228a800fed83fae6784a297ac533",
      "tree": "2e59e8d5556f9d2d7eb83b9261ea6111ef5d545c",
      "parents": [
        "5243ef6e80e77fb431717457004bfc8c840306e6"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Mon Dec 09 10:51:45 2024 +0100"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Mon Dec 09 10:51:45 2024 +0100"
      },
      "message": "feat: make Redis support optional at runtime (#3)\n\nThe Redis persistence is only one variant, let\u0027s make it optional. I expect most users to start\r\nwith the JCR persistence."
    },
    {
      "commit": "5243ef6e80e77fb431717457004bfc8c840306e6",
      "tree": "abc45e191ee32f869dea61646dd04498082e2679",
      "parents": [
        "70ae89dcd22f912c94e2b9a26120ff7eb0d5ab62"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Fri Dec 06 18:10:09 2024 +0100"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Fri Dec 06 18:10:09 2024 +0100"
      },
      "message": "chore: extend tests to cover the RedisOauthTokenStore (#2)\n\n"
    },
    {
      "commit": "70ae89dcd22f912c94e2b9a26120ff7eb0d5ab62",
      "tree": "2d9226e10204168a947c464e79460afb3e12fffa",
      "parents": [
        "16aa8fa9c6adbbfe943bed1742e83c40cc7a4876"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Dec 05 17:11:20 2024 +0100"
      },
      "committer": {
        "name": "GitHub",
        "email": "noreply@github.com",
        "time": "Thu Dec 05 17:11:20 2024 +0100"
      },
      "message": "chore(deps): update to Sling API version unaffected by CVE-2022-32549 (#1)\n\n"
    },
    {
      "commit": "16aa8fa9c6adbbfe943bed1742e83c40cc7a4876",
      "tree": "2fe95c4412decebbd65526c999ab2224891393ab",
      "parents": [
        "7ac69817f754a63fa7f0ccada94d3180c2e0606e"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Dec 05 16:52:46 2024 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Dec 05 16:52:46 2024 +0100"
      },
      "message": "fix(ci): disable windows and sonarqube\n\n- SonarQube is not yet active\n- Windows seem to fail for the feature-launcher-maven-plugin\n"
    },
    {
      "commit": "7ac69817f754a63fa7f0ccada94d3180c2e0606e",
      "tree": "f5d94b78a3b1bd26fad22eb0838c121ca1fa9344",
      "parents": [
        "675b2944b97f74bef968592d93ad909f1ed2ab9e"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Dec 05 16:38:24 2024 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Dec 05 16:38:24 2024 +0100"
      },
      "message": "fix: make sure the CI timeouts are passed to the launched application\n"
    },
    {
      "commit": "675b2944b97f74bef968592d93ad909f1ed2ab9e",
      "tree": "abdfa000f49ce9733dafe5c1dfed9a85b173750b",
      "parents": [
        "7b294da59ca6aaa01c3b8dd674cf59f12799d164"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Dec 05 16:24:18 2024 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Dec 05 16:24:18 2024 +0100"
      },
      "message": "fix: correct pass maven parameters for CI\n"
    },
    {
      "commit": "7b294da59ca6aaa01c3b8dd674cf59f12799d164",
      "tree": "dc617b28dce0f24f90d2541faf07d88f0073d4f2",
      "parents": [
        "5222bf3cbe0ec3bf2b4a73f4d90570cf6e627732"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Dec 05 15:52:19 2024 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Dec 05 15:52:19 2024 +0100"
      },
      "message": "fix: longer start timeout on CI\n"
    },
    {
      "commit": "5222bf3cbe0ec3bf2b4a73f4d90570cf6e627732",
      "tree": "8c776ec1c1deca63e0f797ff51d6147d02536faf",
      "parents": [
        "22ecd872e2c9e4506cdf0a7fbdc431d5f8e7ee6e"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Dec 05 15:40:22 2024 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Dec 05 15:40:22 2024 +0100"
      },
      "message": "chore: build on Java 17 and 21 only\n"
    },
    {
      "commit": "22ecd872e2c9e4506cdf0a7fbdc431d5f8e7ee6e",
      "tree": "9abad105cce3ce14ab69faeeea510ae92fffa556",
      "parents": [
        "edc532ed232e6ceb6035654e49fee1c6db7ca1dc"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Dec 05 15:38:11 2024 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Dec 05 15:38:11 2024 +0100"
      },
      "message": "chore: badges\n"
    },
    {
      "commit": "edc532ed232e6ceb6035654e49fee1c6db7ca1dc",
      "tree": "dc7f6b2731e0c0f2894b7add09c10247a813298f",
      "parents": [
        "12ab736e1fe2d052c7fa5ca481829ce5e1c6d478"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Dec 05 15:34:43 2024 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Dec 05 15:34:43 2024 +0100"
      },
      "message": "chore: .asf.yaml\n"
    },
    {
      "commit": "12ab736e1fe2d052c7fa5ca481829ce5e1c6d478",
      "tree": "0e8edac2771c549ace35f5dc1a0d28bc5dcc8a10",
      "parents": [
        "fea4ad992677bac5cfaecd56095879544ab92ef6"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Dec 05 15:31:43 2024 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Dec 05 15:31:43 2024 +0100"
      },
      "message": "chore: boilerplate files\n"
    },
    {
      "commit": "fea4ad992677bac5cfaecd56095879544ab92ef6",
      "tree": "d5d04f424dc494f783611cf9439dc411687fd1eb",
      "parents": [
        "53b095a5c54d99ac2bd2e992433f6159cc485c42"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Dec 05 14:16:32 2024 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Dec 05 14:17:32 2024 +0100"
      },
      "message": "chore: switch from \u0027extensions\u0027 to \u0027auth\u0027 in artifactId and package names\n\nSee related discussion at [1].\n\n[1]: https://lists.apache.org/thread/kt64brl7gt81rrw04d0fjwht0gxbsd1o\n"
    },
    {
      "commit": "53b095a5c54d99ac2bd2e992433f6159cc485c42",
      "tree": "b51f10a03415e867b663af82e7947ac933c5f371",
      "parents": [
        "7bc5c68af1b4c1604ee655f0e4515f797f456906"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Nov 14 14:52:54 2024 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Nov 14 14:53:44 2024 +0100"
      },
      "message": "chore(oidc-rp): mark APIs are ProviderType and note they are experimental"
    },
    {
      "commit": "7bc5c68af1b4c1604ee655f0e4515f797f456906",
      "tree": "22e324a20ba893b87f29368ee2234cf9348df068",
      "parents": [
        "b660ffc939007d31350b8b59901f0f313125bf11"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Nov 14 00:15:38 2024 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Nov 14 00:15:38 2024 +0100"
      },
      "message": "chore(oauth-client): no reason for OAuthUri to throw OAuthException\n"
    },
    {
      "commit": "b660ffc939007d31350b8b59901f0f313125bf11",
      "tree": "4a6ce799a85ccaaf1b65b5366ad7506a32f735ca",
      "parents": [
        "6cd9d15b727a03366fe338d00cd288afc0cd5adb"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Nov 14 00:15:16 2024 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Nov 14 00:15:16 2024 +0100"
      },
      "message": "feat(oauth-client): add high-level API for clearing access tokens and document it\n"
    },
    {
      "commit": "6cd9d15b727a03366fe338d00cd288afc0cd5adb",
      "tree": "fde60ab1ba621c74f0ac15fb3086e17d90c1e5c1",
      "parents": [
        "3a591e0c39f3207411d7528f9d441c3d53240713"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Nov 14 00:14:13 2024 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Nov 14 00:14:13 2024 +0100"
      },
      "message": "chore(oidc-rp): add tests for clearing access tokens\n"
    },
    {
      "commit": "3a591e0c39f3207411d7528f9d441c3d53240713",
      "tree": "730f8a21622807ae3f3847883203d70512f3b3d0",
      "parents": [
        "6204b075efb9f7fc9351134a092b72aa5ec8e25f"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Nov 07 00:01:05 2024 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Thu Nov 07 00:01:05 2024 +0100"
      },
      "message": "feat(oidc-rp): allow clearing access tokens\n"
    },
    {
      "commit": "6204b075efb9f7fc9351134a092b72aa5ec8e25f",
      "tree": "6a21d34c8d29b97f580077b4ae29c868fde82b98",
      "parents": [
        "e0aa6d362feb4560637ddb28f7807ef173b10eef"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Fri Nov 01 23:56:32 2024 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Fri Nov 01 23:56:32 2024 +0100"
      },
      "message": "docs(oidc-rp): error handling implemented as planned\n"
    },
    {
      "commit": "e0aa6d362feb4560637ddb28f7807ef173b10eef",
      "tree": "ca2938742aa87eadbe64410e26db34f3fd6939c2",
      "parents": [
        "8365f75f02f46c457823a6fb331a58339d84ef92"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Fri Nov 01 23:28:08 2024 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Fri Nov 01 23:35:41 2024 +0100"
      },
      "message": "fix(oidc-rp): Enhance OAuthCallbackServlet error handling and add unit tests"
    },
    {
      "commit": "8365f75f02f46c457823a6fb331a58339d84ef92",
      "tree": "7e7c7b984ca6e0d489b9cef20e3a6d3914548f3c",
      "parents": [
        "f8ceb23c7b213263090e4306d920db871fb5bd26"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Fri Nov 01 17:59:08 2024 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Fri Nov 01 17:59:08 2024 +0100"
      },
      "message": "chore(oidc-rp): add future plans\n"
    },
    {
      "commit": "f8ceb23c7b213263090e4306d920db871fb5bd26",
      "tree": "653a8295ebb742fd5f06eccb854d6599b842ffdc",
      "parents": [
        "e94ff62de4363c099a900a1a48bd8c1f269d695c"
      ],
      "author": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Fri Nov 01 17:54:05 2024 +0100"
      },
      "committer": {
        "name": "Robert Munteanu",
        "email": "rombert@apache.org",
        "time": "Fri Nov 01 17:54:56 2024 +0100"
      },
      "message": "feat(oidc-rp): switch back some error handling to simple status settting\n\nThis prevents log spam from easily-crafted requests.\n"
    }
  ],
  "next": "e94ff62de4363c099a900a1a48bd8c1f269d695c"
}
