NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
Packagist · #5596 most downloaded on Packagist
Oauth module
Last release 24 days ago
14 Sep 2026
Release timing varies
gaps range from 2 weeks to 1.1 years
Some releases are documented
notes for 12 of 38 stable releases
Nothing withdrawn
no release was ever pulled
8 years old
38 releases · first in 2018
Included commits: 2.14.0...2.15.0
Included commits: 2.14.0...2.15.0
league/oauth2-server dependency constraint to ^8.4.0.int return type to OauthTokenConsole::execute().Included commits: 2.13.0...2.14.0
Included commits: 2.13.0...2.14.0
UserRefreshTokenOauthRequestGrantTypeConfigurationProviderPlugin that enables the refresh_token grant for requests of the Backend API application.RefreshTokenGrantType to accept the scopes of the refreshed token as they are, so user type scopes that no scope finder registers survive a refresh.One column per quarter.
Included commits: 2.12.0...2.13.0
Included commits: 2.11.1...2.12.0
Included commits: 2.11.0...2.11.1
Included commits: 2.11.0...2.11.1
OauthFacade::processAccessTokenRequest() so now it resolves the default oAuth client properly.Included commits: 2.10.0...2.11.0
Included commits: 2.10.0...2.11.0
OauthClientInstallerPlugin::install() so it saves actual Oauth client credentials instead of keeping outdated ones.Deprecated OauthConstants::OAUTH_CLIENT_IDENTIFIER , OauthConstants::OAUTH_CLIENT_SECRET .
Included commits: 2.9.2...2.10.0
OauthConstants::OAUTH_CLIENT_CONFIGURATION.OauthConfig::getClientConfiguration().OauthClientInstallerPlugin so now it populates the database with OAuth client data for multiple clients.OauthConstants::OAUTH_CLIENT_IDENTIFIER, OauthConstants::OAUTH_CLIENT_SECRET.OauthConfig::getClientSecret(), OauthConfig::getClientId().Included commits: 2.9.1...2.9.2
Included commits: 2.9.1...2.9.2
OauthService::extractAccessTokenData() to convert data to Integer explicitly.Included commits: 2.9.0...2.9.1
Included commits: 2.8.0...2.9.0
Included commits: 2.8.0...2.9.0
OauthFacadeInterface::processAccessTokenRequest() method in order to issue new access token instead of existing for same issuer.Included commits: 2.7.3...2.8.0
Included commits: 2.7.3...2.8.0
OauthClient::validateOauthAccessToken() so it executes an AccessTokenValidatorPluginInterface plugin stack.OauthService::extractAccessTokenData() so it extracts oauthIssuedAt from an access JWT token.OauthAccessTokenData.oauthIssuedAt transfer property.spryker/transfer dependency.spryker/oauth-extension dependency.Included commits: 2.7.2...2.7.3
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Your coding agent can read these notes before it upgrades. Set up the MCP server →