Releases¶
Release notes and upgrade guidance for HOG.
- HOG v2.2.0 — an
IdPcan declareverificationOnly, so an instance that only verifies access tokens someone else issued needs neither a client secret nor a redirect URL. - HOG v2.1.1 — applies
bearer.signingAlgson every verifier path, refusesforwardIdentitywithout an assertion issuer, replaces a working signing seed in the example configuration, and repairs the repository links the module rename broke. - HOG v2.1.0 — access tokens from a dedicated key set, a configurable subject claim, group prefix strip, an authorization deny-redirect, an identity assertion between HOG instances, and a shipped Valkey session store.
- HOG v2.0.0 — the clean-room, native-Go rewrite. HOG is no longer a fork of KrakenD.
- Migrating from v1 — what changed, the v1 deprecation timeline, and how to move a v1 deployment to v2.