From e004fd2773fe316cacd666c34e7299a709f3583f Mon Sep 17 00:00:00 2001 From: Kim Davies Date: Wed, 22 Nov 2023 19:40:48 -0800 Subject: [PATCH 1/4] Improve security text grammar; wrap text --- SECURITY.md | 14 +++++++++++--- 1 file changed, 11 insertions(+), 3 deletions(-) diff --git a/SECURITY.md b/SECURITY.md index 3d53a4a..9009ae9 100644 --- a/SECURITY.md +++ b/SECURITY.md @@ -1,11 +1,19 @@ # Security Policy ## Supported Versions + Security updates are applied only to the latest release. ## Reporting a Vulnerability -If you have discovered a security vulnerability in this project, please report it privately. **Do not disclose it as a public issue.** This gives us time to work with you to fix the issue before public exposure, reducing the chance that the exploit will be used before a patch is released. -Please disclose it at our [security advisory](https://github.com/kjd/idna/security/advisories/new). +If you have discovered a security vulnerability in this project, please +report it privately. **Do not disclose it as a public issue.** This gives +us time to work with you to fix the issue before public exposure, reducing +the chance that the exploit will be used before a patch is released. + +Please disclose your issue through Github's +[security advisory facility](https://github.com/kjd/idna/security/advisories/new). -This project is maintained by a team of volunteers on a reasonable-effort basis. As such, vulnerabilities will be disclosed in a best effort base. +We will endeavor to prioritize review, remediation and disclosure of +vulnerabilites. However, be mindful that this project is maintained by a +team of volunteers who work on a best effort basis. \ No newline at end of file From aa97abe1d9f0d3601ef340f4e66758e23d72a958 Mon Sep 17 00:00:00 2001 From: Kim Davies Date: Wed, 22 Nov 2023 20:02:56 -0800 Subject: [PATCH 2/4] Update history for 3.5 changes --- HISTORY.rst | 13 +++++++++---- 1 file changed, 9 insertions(+), 4 deletions(-) diff --git a/HISTORY.rst b/HISTORY.rst index 28516d3..e3fabfc 100644 --- a/HISTORY.rst +++ b/HISTORY.rst @@ -3,12 +3,17 @@ History ------- -3.5 (XXXX-XX-XX) +3.5 (2023-11-XX) ++++++++++++++++ -- String codec name is now 'idna2008' as overriding the system - codec 'idna' was not working. + +- String codec name is now "idna2008" as overriding the system codec + "idna" was not working. - Fix typing error for codec encoding -- Remove 'setup.py' to complete migration to pyproject.toml +- "setup.py" has been restored for this release due to some downstream + lack of adherence to PEP 517. Should be removed in a future release + so please prepare accordingly. +- Removed reliance on a symlink for the "idna-data" tool to comport + with PEP 517 and the Python Packaging User Guide for sdist archives. - Added security reporting protocol for project Thanks Jon Ribbens, Diogo Teles Sant'Anna, Wu Tingfeng for contributions From 0166089a2e4ef3c4d26c9eff08f48d5276afd798 Mon Sep 17 00:00:00 2001 From: Kim Davies Date: Wed, 22 Nov 2023 20:04:40 -0800 Subject: [PATCH 3/4] Reflect Unicode 15.1 in history --- HISTORY.rst | 1 + 1 file changed, 1 insertion(+) diff --git a/HISTORY.rst b/HISTORY.rst index e3fabfc..bde07fe 100644 --- a/HISTORY.rst +++ b/HISTORY.rst @@ -6,6 +6,7 @@ History 3.5 (2023-11-XX) ++++++++++++++++ +- Update to Unicode 15.1.0 - String codec name is now "idna2008" as overriding the system codec "idna" was not working. - Fix typing error for codec encoding From 89cd0612146a50a720e5aef8f040ca8ed4c6274b Mon Sep 17 00:00:00 2001 From: Kim Davies Date: Fri, 24 Nov 2023 09:39:45 -0800 Subject: [PATCH 4/4] Release v3.5 --- HISTORY.rst | 2 +- LICENSE.md | 2 +- idna/package_data.py | 2 +- 3 files changed, 3 insertions(+), 3 deletions(-) diff --git a/HISTORY.rst b/HISTORY.rst index bde07fe..9888aa6 100644 --- a/HISTORY.rst +++ b/HISTORY.rst @@ -3,7 +3,7 @@ History ------- -3.5 (2023-11-XX) +3.5 (2023-11-24) ++++++++++++++++ - Update to Unicode 15.1.0 diff --git a/LICENSE.md b/LICENSE.md index cc7d6ba..ce36701 100644 --- a/LICENSE.md +++ b/LICENSE.md @@ -1,6 +1,6 @@ BSD 3-Clause License -Copyright (c) 2013-2022, Kim Davies and contributors. +Copyright (c) 2013-2023, Kim Davies and contributors. All rights reserved. Redistribution and use in source and binary forms, with or without diff --git a/idna/package_data.py b/idna/package_data.py index 8501893..2d2d651 100644 --- a/idna/package_data.py +++ b/idna/package_data.py @@ -1,2 +1,2 @@ -__version__ = '3.4' +__version__ = '3.5'