Bump oauth2 from 2.0.18 to 2.0.20
Open
Number: #64
Type: Pull Request
State: Open
Type: Pull Request
State: Open
Author:
dependabot[bot]
Association: Unknown
Comments: 2
Association: Unknown
Comments: 2
Created:
May 21, 2026 at 01:11 AM UTC
(29 days ago)
(29 days ago)
Updated:
May 21, 2026 at 01:12 AM UTC
(29 days ago)
(29 days ago)
Labels:
dependencies ruby
dependencies ruby
Description:
Bumps oauth2 from 2.0.18 to 2.0.20.
Release notes
Sourced from oauth2's releases.
v2.0.20
2.0.20 - 2026-05-20
- TAG: v2.0.20
- COVERAGE: 99.62% -- 525/527 lines in 15 files
- BRANCH COVERAGE: 98.88% -- 176/178 branches in 15 files
- 88.35% documented
Added
- OAuth2::VERSION (Traditional Constant Location)
Changed
- auth-sanitizer v0.1.3
Fixed
- gh!721 Load
auth-sanitizerthrough an internal isolated loader so requiringoauth2does not add top-levelAuthorAuthSanitizerconstants that may collide with downstream applications by@pbolingSecurity
Official Discord 👉️ [![Live Chat on Discord][✉️discord-invite-img]][✉️discord-invite]
Many paths lead to being a sponsor or a backer of this project. Are you on such a path?
... (truncated)
Changelog
Sourced from oauth2's changelog.
[2.0.20] - 2026-05-20
- TAG: [v2.0.20][2.0.20t]
- COVERAGE: 99.62% -- 525/527 lines in 15 files
- BRANCH COVERAGE: 98.88% -- 176/178 branches in 15 files
- 88.35% documented
Added
- OAuth2::VERSION (Traditional Constant Location)
Changed
- auth-sanitizer v0.1.3
Fixed
- gh!721 Load
auth-sanitizerthrough an internal isolated loader so requiringoauth2does not add top-levelAuthorAuthSanitizerconstants that may collide with downstream applications by@pbolingSecurity
[2.0.19] - 2026-05-15
- TAG: [v2.0.19][2.0.19t]
- COVERAGE: 100.00% -- 515/515 lines in 14 files
- BRANCH COVERAGE: 100.00% -- 174/174 branches in 14 files
- 89.11% documented
Added
- gh!707 Add
OAuth2.config[:filtered_label]to configure the placeholder used for filtered sensitive values in inspected objects and debug logging output by@pboling- gh!707 Add
OAuth2.config[:filtered_debug_keys]to configure which key names have their values redacted from debug logging output by@pbolingChanged
- gh!707 Make inspect-time and debug-log filters snapshot their configuration at initialization time rather than tracking later config changes by
@pboling- [gh!714][gh!714]Refactor sensitive-value filtering to use
auth-sanitizerwhile preservingOAuth2::FilteredAttributesas a permanent API alias by@pbolingRemoved
- Remove the internal
OAuth2::ThingFilterandOAuth2::SanitizedLoggerimplementations now provided byauth-sanitizerby@pbolingSecurity
... (truncated)
Commits
e2d5097🔧 :nocov: for unreachable error states30650b2🔖 Prepare release v2.0.2023f2855Merge pull request #721 from ruby-oauth/fix/top-level-namespace-pollution5e4c988Fix RuboCop Gradual offenses89397f6Constrain auth-sanitizer loader lookup8e71e19📝 CHANGELOG.md6082a21⬆️ snaky_hash, faraday-net_http, zeitwerk, bundler-audit350da42Avoid auth-sanitizer top-level namespaces0bc1903Merge pull request #719 from step-security-bot/chore/GHA-182236-stepsecurity-...148d716Switch pre-commit hook to rubocop_gradual- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
Package Dependencies
Technical Details
| ID: | 15867660 |
| UUID: | 4490928045 |
| Node ID: | PR_kwDOR-g9jc7dwA1J |
| Host: | GitHub |
| Repository: | ruby-benchmark/errbit |