Skip to content

chore(deps): update dependency social-auth-core to v4.8.7#4468

Merged
nijel merged 1 commit into
mainfrom
renovate/social-auth-core-4.x
Apr 23, 2026
Merged

chore(deps): update dependency social-auth-core to v4.8.7#4468
nijel merged 1 commit into
mainfrom
renovate/social-auth-core-4.x

Conversation

@renovate

@renovate renovate Bot commented Apr 23, 2026

Copy link
Copy Markdown
Contributor

This PR contains the following updates:

Package Change Age Confidence
social-auth-core (changelog) ==4.8.6==4.8.7 age confidence

Release Notes

python-social-auth/social-core (social-auth-core)

v4.8.7

Compare Source

Added
  • OpenID Connect backends can now opt in to PKCE support
Changed
  • PKCE defaults now match RFC 7636 requirements
Security
  • Tightened redirect URL validation
  • Tightened OAuth state handling for Clever, Eventbrite, GoClio, MailChimp, SurveyMonkey and Untappd backends
  • SAML authentication now restores saved sessions only after response validation

Configuration

📅 Schedule: (UTC)

  • Branch creation
    • At any time (no schedule defined)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Enabled.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate renovate Bot added the dependencies Third-party library dependencies. label Apr 23, 2026
@renovate renovate Bot enabled auto-merge (squash) April 23, 2026 13:36
@nijel nijel disabled auto-merge April 23, 2026 15:58
@nijel nijel merged commit 14836e9 into main Apr 23, 2026
43 of 46 checks passed
@nijel nijel deleted the renovate/social-auth-core-4.x branch April 23, 2026 15:58
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Third-party library dependencies.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant