0.1.135 (2026-04-22)
- Leverage ValidatedPolicy in simulation to avoid re-running validation on policies that are already validated. (3ddf33a)
0.1.134 (2026-04-16)
- Correctly handle whitepace in Action/NotAction strings (ad60903)
0.1.133 (2026-04-16)
0.1.132 (2026-04-11)
0.1.131 (2026-04-07)
- Correctly interpret partial ARNs (116c679)
0.1.130 (2026-04-04)
0.1.129 (2026-03-28)
0.1.128 (2026-03-22)
- Fix wildcard resource ARNs are required for wildcard only actions (6a43074)
0.1.127 (2026-03-22)
0.1.126 (2026-03-20)
0.1.125 (2026-03-09)
0.1.124 (2026-03-09)
0.1.123 (2026-03-07)
0.1.122 (2026-03-04)
- Allow commas in action strings because AWS does (23506cb)
0.1.121 (2026-03-04)
- Only return error collections that are populated (906d9ea)
0.1.120 (2026-03-04)
- When a resource policy allows a wildcard principal in the same account; ignore implicit deny from a permission boundary (ffa61a5)
0.1.119 (2026-03-03)
0.1.118 (2026-03-03)
- Include grant details for all policy types (32b1903)
0.1.117 (2026-03-03)
- Update new service specific OIDC Keys (f4771fb)
0.1.116 (2026-03-02)
0.1.115 (2026-02-25)
0.1.114 (2026-02-25)
- Don't return resource type for wildcard only actions (05e0394)
0.1.113 (2026-02-24)
- Add resource type to single resource simulation result (238473b)
0.1.112 (2026-02-24)
0.1.111 (2026-02-24)
0.1.110 (2026-02-24)
- Allow getting grant details from an analysis (64eaae2)
0.1.109 (2026-02-23)
0.1.108 (2026-02-23)
- Determine if access would be granted if not blocked by guardrails. If access is granted in core policies but blocked by guardrails, report those guardrails. (57a8894)
0.1.107 (2026-02-23)
0.1.106 (2026-02-22)
0.1.105 (2026-02-21)
0.1.104 (2026-02-20)
- Add the ability to simulate patterns and find possible matches. (748f549)
0.1.103 (2026-02-14)
0.1.102 (2026-01-19)
0.1.101 (2026-01-11)
0.1.100 (2026-01-04)
- Add analysis for why a request is denied (a08d0bf)
0.1.99 (2026-01-03)
0.1.98 (2025-12-27)
0.1.97 (2025-12-23)
- Validate if session policies are allowed based on the principal type (6d0da09)
0.1.96 (2025-12-22)
- Support session policies in simulation engine (224f372)
0.1.95 (2025-12-20)
0.1.94 (2025-12-13)
0.1.93 (2025-12-06)
0.1.92 (2025-12-04)
- Allow patterns for strict context keys (9849f49)
0.1.91 (2025-11-30)
0.1.90 (2025-11-23)
- Support new S3 Bucket ABAC bucket keys (107fbc6)
0.1.89 (2025-11-22)
0.1.88 (2025-11-22)
0.1.87 (2025-11-15)
0.1.86 (2025-11-09)
- Remove GuardDog package scan (9375892)
0.1.85 (2025-11-08)
0.1.84 (2025-11-01)
0.1.83 (2025-10-25)
0.1.82 (2025-10-22)
- Fix syntax error in README example (030d6bb)
0.1.81 (2025-10-18)
0.1.80 (2025-10-17)
- Add missing property to example docs (a965682)
0.1.79 (2025-10-11)
0.1.78 (2025-10-11)
0.1.77 (2025-10-04)
0.1.76 (2025-09-28)
0.1.75 (2025-09-20)
0.1.74 (2025-09-15)
0.1.73 (2025-09-07)
0.1.72 (2025-08-30)
- Refactor global keys to pull from iam-data (03ab4ea)
0.1.71 (2025-08-29)
- Upgrade iam-data to new minor version (34a3212)
0.1.70 (2025-08-29)
- Remove code for hard coded partitions (7d774a5)
0.1.69 (2025-08-29)
0.1.68 (2025-08-26)
- Fix using condition keys without a service or 'aws' prefix. (aecef85)
0.1.67 (2025-08-25)
- Upgrade iam-data (1a84ca6)
0.1.66 (2025-08-25)
- Upgrade iam-data (64881af)
0.1.65 (2025-08-23)
0.1.64 (2025-08-16)
0.1.63 (2025-08-09)
0.1.62 (2025-08-03)
0.1.61 (2025-07-26)
0.1.60 (2025-07-19)
0.1.59 (2025-07-12)
0.1.58 (2025-07-08)
0.1.57 (2025-07-01)
0.1.56 (2025-07-01)
0.1.55 (2025-07-01)
- Support evaluating VPC endpoint policies (98cc9cd)
0.1.54 (2025-06-29)
- Add policy id to analyses (68dc2d4)
0.1.53 (2025-06-28)
- Indicate of role session name in a deny statement could be ignored (df3537e)
0.1.52 (2025-06-22)
- Only show ignored conditions if they are consequential to the simulation (4c4ce06)
0.1.51 (2025-06-21)
0.1.50 (2025-06-21)
- Fix handling of IPs without IP Mask for IpAddress and NotIpAddress (80c3ac1)
- Add new discovery mode to simulator (9c1f67f)
0.1.49 (2025-06-21)
0.1.48 (2025-06-20)
- When a condition set operator is used on a context key that has a single value, treat it like a multi value context key. (d871729)
0.1.47 (2025-06-17)
0.1.46 (2025-06-14)
- Deny change actions to AWS managed policies (b8d74fb)
- Implicitly deny modification of aws reserved roles (ae280b9)
0.1.45 (2025-06-08)
0.1.44 (2025-05-31)
0.1.43 (2025-05-27)
0.1.42 (2025-05-26)
- Properly support service principals in resource policies (02164b9)
- sts:GetCallerIdentity is always allowed (be26ed8)
0.1.41 (2025-05-26)
0.1.40 (2025-05-25)
- Ignore an empty array of permission boundaries. (02e557c)
0.1.39 (2025-05-25)
- Remove bad node:test import (7195ffc)
0.1.38 (2025-05-25)
- Refactor to use iam-utils package (71ca650)