Burak Varlı
5caac47b38
Default to Rego v1 in regorus parse ( #407 )
...
Signed-off-by: Burak Varlı <burakvar@amazon.co.uk >
2025-05-14 09:28:18 -05:00
dependabot[bot]
2f6c39753c
build(deps): bump clap from 4.5.37 to 4.5.38 ( #406 )
...
Bumps [clap](https://github.com/clap-rs/clap ) from 4.5.37 to 4.5.38.
- [Release notes](https://github.com/clap-rs/clap/releases )
- [Changelog](https://github.com/clap-rs/clap/blob/master/CHANGELOG.md )
- [Commits](https://github.com/clap-rs/clap/compare/clap_complete-v4.5.37...clap_complete-v4.5.38 )
---
updated-dependencies:
- dependency-name: clap
dependency-version: 4.5.38
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-05-12 10:33:03 -05:00
Anand Krishnamoorthi
130f9685fd
feat: Updates for Policy Framework ( #405 )
...
- Documentation
- Regorus Engine is intended to be used from a single thread
- Clone the engine after adding policies and data to use from another thread
- Builtin errors strictness:
- default to less strict for OPA compatibility
- Provide API to change strictness
- Expose GetAstAsJson to C#,
This can allow writing policy validations in C#.
- Use spectre mitigated msvc crt libs (binskim compliance)
- Update dependencies
fixes #404
Signed-off-by: Anand Krishnamoorthi <anakrish@microsoft.com >
2025-04-30 15:33:40 -05:00
Anand Krishnamoorthi
b11007a1be
fix: Disallow else blocks for set rules ( #403 )
...
else blocks following contains and old-style sets will raise
a parse error. Consistent with OPA.
Signed-off-by: Anand Krishnamoorthi <anakrish@microsoft.com >
2025-04-29 11:14:37 -05:00
Anand Krishnamoorthi
6719456468
build: Update dependencies ( #401 )
...
Also bump up C# package version
Signed-off-by: Anand Krishnamoorthi <anakrish@microsoft.com >
2025-04-29 11:06:05 -05:00
Anthony Martin
962c0cc459
Add C# test examples ( #397 )
2025-04-23 08:01:51 -05:00
Anand Krishnamoorthi
9e43bd9878
fix!: Remove cryptographic builtins ( #396 )
...
Cryptographic builtins are removed due to various reasons like FIPS
compliance. Users needing crypto builtins are encouraged to use
extensions.
Deprecated functions are also removed.
Signed-off-by: Anand Krishnamoorthi <anakrish@microsoft.com >
2025-04-16 12:24:19 -07:00
dependabot[bot]
667cb0d90f
build(deps): bump clap from 4.5.35 to 4.5.36 ( #395 )
...
Bumps [clap](https://github.com/clap-rs/clap ) from 4.5.35 to 4.5.36.
- [Release notes](https://github.com/clap-rs/clap/releases )
- [Changelog](https://github.com/clap-rs/clap/blob/master/CHANGELOG.md )
- [Commits](https://github.com/clap-rs/clap/compare/clap_complete-v4.5.35...clap_complete-v4.5.36 )
---
updated-dependencies:
- dependency-name: clap
dependency-version: 4.5.36
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-04-15 08:33:41 -07:00
Anand Krishnamoorthi
f46ab5b697
fix!: Fix glob.match behavior in presence of : ( #390 )
...
glob.match("api://*/appId", null, "api://foo.com/appId") wasn't
being handled correctly. Switch to globset crate.
Signed-off-by: Anand Krishnamoorthi <anakrish@microsoft.com >
2025-04-09 11:11:57 -07:00
Anand Krishnamoorthi
757edcc8fb
build: Python binding portability ( #388 )
...
- Specify compatibility = linux in pyproject.toml to ensure
manylinux compatibility.
- Use abi-py310 pyo3 feature to ensure compatibility with python
3.10 and later.
Signed-off-by: Anand Krishnamoorthi <anakrish@microsoft.com >
2025-04-07 13:18:01 -07:00
dependabot[bot]
77cdac0fef
build(deps): bump clap from 4.5.34 to 4.5.35 ( #389 )
...
Bumps [clap](https://github.com/clap-rs/clap ) from 4.5.34 to 4.5.35.
- [Release notes](https://github.com/clap-rs/clap/releases )
- [Changelog](https://github.com/clap-rs/clap/blob/master/CHANGELOG.md )
- [Commits](https://github.com/clap-rs/clap/compare/clap_complete-v4.5.34...clap_complete-v4.5.35 )
---
updated-dependencies:
- dependency-name: clap
dependency-version: 4.5.35
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-04-06 21:14:33 -07:00
Anand Krishnamoorthi
ab93c07773
fix: C# EvalRule ( #387 )
...
- Fix EvalRule to call EvalRule instead of EvalQuery
- Also fix clippy errors
Signed-off-by: Anand Krishnamoorthi <anakrish@microsoft.com >
2025-04-04 15:44:16 -07:00
dependabot[bot]
2749e820c4
build(deps): bump pyo3 ( #386 )
...
Bumps the cargo group with 1 update in the /bindings/python directory: [pyo3](https://github.com/pyo3/pyo3 ).
Updates `pyo3` from 0.24.0 to 0.24.1
- [Release notes](https://github.com/pyo3/pyo3/releases )
- [Changelog](https://github.com/PyO3/pyo3/blob/v0.24.1/CHANGELOG.md )
- [Commits](https://github.com/pyo3/pyo3/compare/v0.24.0...v0.24.1 )
---
updated-dependencies:
- dependency-name: pyo3
dependency-type: direct:production
dependency-group: cargo
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-04-02 07:13:48 -07:00
Anand Krishnamoorthi
a164f342bf
build: Use VersionPrefix and VersionSuffix ( #385 )
...
The suffix can be customised during dotnet pack.
Signed-off-by: Anand Krishnamoorthi <anakrish@microsoft.com >
2025-03-31 18:24:59 -07:00
Anand Krishnamoorthi
c28bde3f56
build: Check-in Cargo.lock files and lockdown .net ( #384 )
...
Use frozen and locked builds
Signed-off-by: Anand Krishnamoorthi <anakrish@microsoft.com >
2025-03-31 07:55:47 -07:00
Anand Krishnamoorthi
2858b63cd4
feat: Regorus nuget package ( #383 )
...
Organize C# binding example into separate Regorus nuget package and
a test app.
The nuget package targets netstandard 2.0 and 2.1.
The test app is tested for netframework 8.0.
Implement IDisposable for Engine cleanup.
Also remove net40 example. Can be added back later if needed.
Signed-off-by: Anand Krishnamoorthi <anakrish@microsoft.com >
2025-03-25 11:31:13 -07:00
Anand Krishnamoorthi
c7bf460bc1
chore: release ( #382 )
...
Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com>
regorus-v0.4.0
2025-03-14 14:56:25 -07:00
Anand Krishnamoorthi
4d2b205ef4
fix!: Update ruby json dependency ( #381 )
...
Previous version has Out-of-bounds Read in Ruby JSON Parser
Signed-off-by: Anand Krishnamoorthi <anakrish@microsoft.com >
2025-03-14 13:31:12 -07:00
Anand Krishnamoorthi
4f7b9a4292
fix!: Remove ring dependency ( #380 )
...
Remove dependency on jsonwebtoken which brings in the ring crate.
Ring crate triggers governance violations.
Support for JWT will be implemented in future using a more governance
compliant crate.
BREAKING CHANGE
Prior to this PR, support for jwt builtins was minimially implemented.
Only io.jwt.decode and io.jwt.decode_verify was implemented.
With this PR, those builtins will no longer be available. They are
planned to be implemented in the future. In the meantime, they can be
brought back in via Engine::add_extension.
Signed-off-by: Anand Krishnamoorthi <anakrish@microsoft.com >
2025-03-14 10:49:57 -07:00
Anand Krishnamoorthi
4a2df93ae2
fix!: Remove sha1 dependency ( #379 )
...
Removed cryptographically insecure sha1. This existed only for OPA
compatibility.
Also exclude bindings from main workspace
Signed-off-by: Anand Krishnamoorthi <anakrish@microsoft.com >
2025-03-13 12:34:11 -07:00
Anand Krishnamoorthi
c6a5f1d852
build: Specify optimization flags ( #378 )
...
In release profile, enable lto and codgen-units = 1 to enable more
optimizations.
Signed-off-by: Anand Krishnamoorthi <anakrish@microsoft.com >
2025-03-10 17:50:31 -07:00
Anand Krishnamoorthi
2901481c51
chore: release ( #376 )
...
Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com>
regorus-v0.3.0
2025-03-10 12:33:59 -07:00
Anand Krishnamoorthi
c963e477a3
feat: Update to OPA v1.2.0 ( #373 )
...
Regorus now defaults to rego v1. `import rego.v1` is no longer needed.
Additionally, `future` keywords are automatically imported.
See
https://www.openpolicyagent.org/docs/latest/v0-upgrade/#changes-to-rego-in-opa-v10
to understand the differences between rego v1 and v0.
BREAKING CHANGE:
v0 style policies will error out by default. To enable v0 behavior, call engine.set_rego_v0(true) before
loading policies.
Signed-off-by: Anand Krishnamoorthi <anakrish@microsoft.com >
2025-03-10 11:56:01 -07:00
dependabot[bot]
cbd772623a
build(deps): update pyo3 requirement from 0.23.5 to 0.24.0 ( #375 )
...
Updates the requirements on [pyo3](https://github.com/pyo3/pyo3 ) to permit the latest version.
- [Release notes](https://github.com/pyo3/pyo3/releases )
- [Changelog](https://github.com/PyO3/pyo3/blob/main/CHANGELOG.md )
- [Commits](https://github.com/pyo3/pyo3/compare/v0.23.5...v0.24.0 )
---
updated-dependencies:
- dependency-name: pyo3
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-03-09 20:25:44 -07:00
thedavemarshall
a07beca983
Update ruby binding deps, ruby gem version 0.2.3 ( #374 )
...
* Update ruby binding deps, ruby gem version 0.2.3
* and gem version to 0.2.3
* specify bunlder and rubygems version for CI
2025-03-07 16:24:29 -08:00
Anand Krishnamoorthi
a3edb6c88c
build(deps): update pyo3 requirement from 0.22.0 to 0.23.5 ( #372 )
...
Signed-off-by: Anand Krishnamoorthi <anakrish@microsoft.com >
2025-03-04 15:44:24 -08:00
Anand Krishnamoorthi
a1777fb7d3
build(deps): update rand requirement from 0.8.5 to 0.9.0 ( #370 )
...
Signed-off-by: Anand Krishnamoorthi <anakrish@microsoft.com >
2025-03-04 07:06:43 -08:00
dependabot[bot]
11aaa555aa
build(deps): update cbindgen requirement from 0.27.0 to 0.28.0 ( #361 )
...
Updates the requirements on [cbindgen](https://github.com/mozilla/cbindgen ) to permit the latest version.
- [Release notes](https://github.com/mozilla/cbindgen/releases )
- [Changelog](https://github.com/mozilla/cbindgen/blob/master/CHANGES )
- [Commits](https://github.com/mozilla/cbindgen/compare/v0.27.0...0.28.0 )
---
updated-dependencies:
- dependency-name: cbindgen
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-03-03 16:23:44 -08:00
Amaury Chamayou
f1580a55a3
Fix typo in README.md ( #366 )
...
Force merging since it is only a typo fix.
Signed-off-by: Amaury Chamayou <amaury@xargs.fr >
2025-03-03 15:58:31 -08:00
Anand Krishnamoorthi
6174af1781
Update dependencies ( #369 )
...
Specify `js` feature for `uuid` when building wasm by
specifying it as a non-optional dependency in wasm binding's Cargo.toml.
Signed-off-by: Anand Krishnamoorthi <anakrish@microsoft.com >
2025-03-03 15:53:47 -08:00
thedavemarshall
5fa55d7274
Fix clippy warning for result? ( #362 )
2025-01-21 08:37:54 -08:00
dependabot[bot]
748c11cfa1
build(deps): update itertools requirement from 0.13.0 to 0.14.0 ( #357 )
...
Updates the requirements on [itertools](https://github.com/rust-itertools/itertools ) to permit the latest version.
- [Changelog](https://github.com/rust-itertools/itertools/blob/master/CHANGELOG.md )
- [Commits](https://github.com/rust-itertools/itertools/compare/v0.13.0...v0.14.0 )
---
updated-dependencies:
- dependency-name: itertools
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-06 10:35:00 -08:00
dependabot[bot]
fb035d3d93
build(deps): update jsonschema requirement from 0.26.1 to 0.28.1 ( #356 )
...
Updates the requirements on [jsonschema](https://github.com/Stranger6667/jsonschema ) to permit the latest version.
- [Release notes](https://github.com/Stranger6667/jsonschema/releases )
- [Changelog](https://github.com/Stranger6667/jsonschema/blob/master/CHANGELOG.md )
- [Commits](https://github.com/Stranger6667/jsonschema/compare/rust-v0.26.1...rust-v0.28.1 )
---
updated-dependencies:
- dependency-name: jsonschema
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-06 10:01:06 -08:00
thedavemarshall
ba3a128e84
resolve anyhow compile errors ( #355 )
2025-01-06 09:13:01 -08:00
dependabot[bot]
d955ae10a5
build(deps): update prettydiff requirement from 0.7.0 to 0.8.0 ( #348 )
...
---
updated-dependencies:
- dependency-name: prettydiff
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-25 09:39:27 -08:00
Anand Krishnamoorthi
cabd086619
chore: release ( #344 )
...
Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com>
regorus-v0.2.8
2024-11-06 13:28:25 -08:00
Anand Krishnamoorthi
4ec25f37a1
build(deps): update jsonschema requirement from 0.24.0 to 0.26.1 ( #343 )
...
Signed-off-by: Anand Krishnamoorthi <anakrish@microsoft.com >
2024-11-06 13:05:48 -08:00
Anand Krishnamoorthi
c281d28474
chore: Update to OPA v0.70.0 ( #341 )
...
Signed-off-by: Anand Krishnamoorthi <anakrish@microsoft.com >
2024-11-06 12:20:11 -08:00
Anand Krishnamoorthi
1bfe38f9af
fix: Lock wasm-bindgen version to 0.2.94 ( #342 )
...
v0.2.95 causes a crash with wasm tests in CI
Signed-off-by: Anand Krishnamoorthi <anakrish@microsoft.com >
2024-11-06 12:04:59 -08:00
dependabot[bot]
5bf7cd7cc8
build(deps): bump rexml ( #337 )
...
Bumps the bundler group with 1 update in the /bindings/ruby directory: [rexml](https://github.com/ruby/rexml ).
Updates `rexml` from 3.3.6 to 3.3.9
- [Release notes](https://github.com/ruby/rexml/releases )
- [Changelog](https://github.com/ruby/rexml/blob/master/NEWS.md )
- [Commits](https://github.com/ruby/rexml/compare/v3.3.6...v3.3.9 )
---
updated-dependencies:
- dependency-name: rexml
dependency-type: indirect
dependency-group: bundler
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-04 08:53:08 -08:00
Anand Krishnamoorthi
c56da34843
chore: release ( #335 )
...
Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com>
regorus-v0.2.7
2024-10-22 14:05:26 -07:00
Anand Krishnamoorthi
61f82d1b34
fix: docs failing to build ( #334 )
...
Added #![cfg_attr(docsrs, feature(doc_cfg))]
fixes #333
Signed-off-by: Anand Krishnamoorthi <anakrish@microsoft.com >
2024-10-22 13:37:31 -07:00
dependabot[bot]
00f45c70fe
build(deps): update jsonschema requirement from 0.23.0 to 0.24.0 ( #332 )
...
Updates the requirements on [jsonschema](https://github.com/Stranger6667/jsonschema-rs ) to permit the latest version.
- [Release notes](https://github.com/Stranger6667/jsonschema-rs/releases )
- [Changelog](https://github.com/Stranger6667/jsonschema-rs/blob/master/CHANGELOG.md )
- [Commits](https://github.com/Stranger6667/jsonschema-rs/compare/rust-v0.23.0...rust-v0.24.0 )
---
updated-dependencies:
- dependency-name: jsonschema
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-10-21 07:30:12 -07:00
Anand Krishnamoorthi
df73b20192
build(deps): update jsonschema requirement from 0.22.3 to 0.23.0 ( #331 )
2024-10-15 10:29:41 -07:00
Anand Krishnamoorthi
992b202f60
chore: release ( #329 )
...
Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com>
regorus-v0.2.6
2024-10-09 12:52:25 -07:00
Anand Krishnamoorthi
ce6ecd6fd6
feat: integer conversion functions for Value ( #328 )
...
closes #324
Signed-off-by: Anand Krishnamoorthi <anakrish@microsoft.com >
2024-10-09 12:19:54 -07:00
Anand Krishnamoorthi
37262ccf8f
chore: update to OPA v0.69.0 ( #327 )
...
Also fix CRLF vs LF related test failures in two doc tests on Windows
Signed-off-by: Anand Krishnamoorthi <anakrish@microsoft.com >
2024-10-09 10:57:09 -07:00
dependabot[bot]
dcd040cf40
build(deps): update jsonschema requirement from 0.21.0 to 0.22.3 ( #326 )
...
Updates the requirements on [jsonschema](https://github.com/Stranger6667/jsonschema-rs ) to permit the latest version.
- [Release notes](https://github.com/Stranger6667/jsonschema-rs/releases )
- [Changelog](https://github.com/Stranger6667/jsonschema-rs/blob/master/CHANGELOG.md )
- [Commits](https://github.com/Stranger6667/jsonschema-rs/compare/rust-v0.21.0...rust-v0.22.3 )
---
updated-dependencies:
- dependency-name: jsonschema
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-10-07 13:30:05 -07:00
dependabot[bot]
f0a3cf26a0
build(deps): update jsonschema requirement from 0.20.0 to 0.21.0 ( #325 )
...
Updates the requirements on [jsonschema](https://github.com/Stranger6667/jsonschema-rs ) to permit the latest version.
- [Release notes](https://github.com/Stranger6667/jsonschema-rs/releases )
- [Changelog](https://github.com/Stranger6667/jsonschema-rs/blob/master/CHANGELOG.md )
- [Commits](https://github.com/Stranger6667/jsonschema-rs/compare/rust-v0.20.0...rust-v0.21.0 )
---
updated-dependencies:
- dependency-name: jsonschema
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-30 08:34:48 -07:00
Anand Krishnamoorthi
13d8289a58
chore: update to jsonschema 0.20.0 ( #323 )
2024-09-23 13:01:24 -07:00