Skip to content

chore: version packages - #355

Merged
cuibonobo merged 1 commit into
mainfrom
changeset-release/main
Sep 29, 2026
Merged

cuibonobo merged 1 commit into
mainfrom
changeset-release/main

Conversation

@cuibonobo

@cuibonobo cuibonobo commented Sep 25, 2026 •

Copy link
Copy Markdown
Member

This PR was opened by the Changesets release GitHub action. When you're ready to do a release, you can merge this and the packages will be published to npm automatically. If you're not ready to do a release yet, that's fine, whenever you add more changesets to main, this PR will be updated.

Releases

@haverstack/[email protected]

Minor Changes

  • Released for a breaking change in @haverstack/core, @haverstack/wire-types.

Patch Changes

@haverstack/[email protected]

Minor Changes

  • Released for a breaking change in @haverstack/core.

Patch Changes

@haverstack/[email protected]

Minor Changes

  • Released for a breaking change in @haverstack/blob-adapter-disk, @haverstack/core, @haverstack/record-adapter-sqlite.

Patch Changes

@haverstack/[email protected]

Minor Changes

  • Released for a breaking change in @haverstack/core.

Patch Changes

@haverstack/[email protected]

Minor Changes

  • Released for a breaking change in @haverstack/core.

Patch Changes

@haverstack/[email protected]

Minor Changes

  • Released for a breaking change in @haverstack/core.

Patch Changes

@haverstack/[email protected]

Minor Changes

  • #353 a431168 Thanks @cuibonobo! - The ./wire request parsers refuse input their endpoint does not define instead of ignoring it. parseQueryParams(), parseChangeParams() and parseJournalParams() throw StackBadRequestError for an unknown query param, a repeat of a param that names one value, or a boolean param other than true/false. parseQueryBody() does the same for an unknown key at any depth, a non-object body, a non-boolean includeDeleted/includeUnlisted or a non-string cursor. createOptionsFromWireRecord() refuses a key no wire record carries. The rule is specified in docs/spec/wire-format.md § Unrecognized input, and four new error fixtures cover it.

  • #356 4a3bc8e Thanks @cuibonobo! - @haverstack/core/wire adds a parser for every remaining endpoint core specifies, so a server no longer keeps its own list of their param and field names: parseAuthChallengeBody(), parseAuthTokenBody(), parseEntityPatchBody(), parseTypeBody(), parseMigrationBody(), parseDeleteParams(), parseDownloadParams() and parseAssociationParams(). Each refuses an unknown name or a malformed boolean with StackBadRequestError, and a known body field of the wrong type with StackValidationError. Two error fixtures pin a non-boolean purge and an unknown key on POST /auth/token.

    Stack refuses an association, permission or grant-target element carrying a key its kind does not define, at every depth, with StackBadRequestError. This applies on every write that takes an element, on a relatedTo filter target, and on grantType(), revokeType() and listTypeGrants(). A _grant record's grantee is held to the same keys and refused with StackValidationError. A new error fixture pins an unknown key on a permission grantee.

Patch Changes

@haverstack/[email protected]

Minor Changes

  • #353 a431168 Thanks @cuibonobo! - The ./wire request parsers refuse input their endpoint does not define instead of ignoring it. parseQueryParams(), parseChangeParams() and parseJournalParams() throw StackBadRequestError for an unknown query param, a repeat of a param that names one value, or a boolean param other than true/false. parseQueryBody() does the same for an unknown key at any depth, a non-object body, a non-boolean includeDeleted/includeUnlisted or a non-string cursor. createOptionsFromWireRecord() refuses a key no wire record carries. The rule is specified in docs/spec/wire-format.md § Unrecognized input, and four new error fixtures cover it.

  • #356 4a3bc8e Thanks @cuibonobo! - @haverstack/core/wire adds a parser for every remaining endpoint core specifies, so a server no longer keeps its own list of their param and field names: parseAuthChallengeBody(), parseAuthTokenBody(), parseEntityPatchBody(), parseTypeBody(), parseMigrationBody(), parseDeleteParams(), parseDownloadParams() and parseAssociationParams(). Each refuses an unknown name or a malformed boolean with StackBadRequestError, and a known body field of the wrong type with StackValidationError. Two error fixtures pin a non-boolean purge and an unknown key on POST /auth/token.

    Stack refuses an association, permission or grant-target element carrying a key its kind does not define, at every depth, with StackBadRequestError. This applies on every write that takes an element, on a relatedTo filter target, and on grantType(), revokeType() and listTypeGrants(). A _grant record's grantee is held to the same keys and refused with StackValidationError. A new error fixture pins an unknown key on a permission grantee.

@haverstack/[email protected]

Minor Changes

  • Released for a breaking change in @haverstack/core.

Patch Changes

@haverstack/[email protected]

Minor Changes

  • Released for a breaking change in @haverstack/core.

Patch Changes

@haverstack/[email protected]

Minor Changes

  • Released for a breaking change in @haverstack/core.

Patch Changes

@cuibonobo
cuibonobo force-pushed the changeset-release/main branch from c8dd984 to ad3a1df Compare September 26, 2026 12:21
@cuibonobo
cuibonobo merged commit c1cb873 into main Sep 29, 2026
9 checks passed
@cuibonobo
cuibonobo deleted the changeset-release/main branch September 29, 2026 01:37
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant