diff --git a/HISTORY.rst b/HISTORY.rst index 28516d3..9888aa6 100644 --- a/HISTORY.rst +++ b/HISTORY.rst @@ -3,12 +3,18 @@ History ------- -3.5 (XXXX-XX-XX) +3.5 (2023-11-24) ++++++++++++++++ -- String codec name is now 'idna2008' as overriding the system - codec 'idna' was not working. + +- Update to Unicode 15.1.0 +- String codec name is now "idna2008" as overriding the system codec + "idna" was not working. - Fix typing error for codec encoding -- Remove 'setup.py' to complete migration to pyproject.toml +- "setup.py" has been restored for this release due to some downstream + lack of adherence to PEP 517. Should be removed in a future release + so please prepare accordingly. +- Removed reliance on a symlink for the "idna-data" tool to comport + with PEP 517 and the Python Packaging User Guide for sdist archives. - Added security reporting protocol for project Thanks Jon Ribbens, Diogo Teles Sant'Anna, Wu Tingfeng for contributions diff --git a/LICENSE.md b/LICENSE.md index cc7d6ba..ce36701 100644 --- a/LICENSE.md +++ b/LICENSE.md @@ -1,6 +1,6 @@ BSD 3-Clause License -Copyright (c) 2013-2022, Kim Davies and contributors. +Copyright (c) 2013-2023, Kim Davies and contributors. All rights reserved. Redistribution and use in source and binary forms, with or without diff --git a/SECURITY.md b/SECURITY.md index 3d53a4a..9009ae9 100644 --- a/SECURITY.md +++ b/SECURITY.md @@ -1,11 +1,19 @@ # Security Policy ## Supported Versions + Security updates are applied only to the latest release. ## Reporting a Vulnerability -If you have discovered a security vulnerability in this project, please report it privately. **Do not disclose it as a public issue.** This gives us time to work with you to fix the issue before public exposure, reducing the chance that the exploit will be used before a patch is released. -Please disclose it at our [security advisory](https://github.com/kjd/idna/security/advisories/new). +If you have discovered a security vulnerability in this project, please +report it privately. **Do not disclose it as a public issue.** This gives +us time to work with you to fix the issue before public exposure, reducing +the chance that the exploit will be used before a patch is released. + +Please disclose your issue through Github's +[security advisory facility](https://github.com/kjd/idna/security/advisories/new). -This project is maintained by a team of volunteers on a reasonable-effort basis. As such, vulnerabilities will be disclosed in a best effort base. +We will endeavor to prioritize review, remediation and disclosure of +vulnerabilites. However, be mindful that this project is maintained by a +team of volunteers who work on a best effort basis. \ No newline at end of file diff --git a/idna/package_data.py b/idna/package_data.py index 8501893..2d2d651 100644 --- a/idna/package_data.py +++ b/idna/package_data.py @@ -1,2 +1,2 @@ -__version__ = '3.4' +__version__ = '3.5'