NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
NuGet · #2521 most downloaded on NuGet
Interface for higher level API for confidential client applications.
Last release 5 days ago
01 Oct 2026
Release timing varies
gaps range from 8 days to 2 months
Most releases are documented
notes for 44 of the last 60 stable releases
1 version withdrawn
withdrawn after publishing
127 years old
85 releases · first in 1900
Updated to Microsoft.Identity.Abstractions 5.3.0
- Updated to MSAL 4.59.1.
One column per quarter.
Fix assertions being removed from dict before callback is executed in TokenAcquisition. See issue #2734 for details.
dict before callback is executed in TokenAcquisition. See issue #2734 for details.Updated to Microsoft.IdentityModel.* 7.5.0
Added support for CIAM custom user domains. You can now use an Open ID connect authority in the "Authority" property of the configuration instead of u
Updated to Microsoft.IdentityModel.* 7.4.0
ServiceDescriptor for containers which have keyed services present. This can be an issue on .NET 8.0. See issue #2676 for details.ConfidentialClientApplicationBuilderExtension.WithClientCredentials are fully async. See issue #2566 for details.Updated to Microsoft.IdentityModel.* 7.3.1 and MSAL.NET 4.59.0
AddTokenAcquisition(useSingleton:true) to use token acquisition as a singleton, if you use .AddMicrosoftGraph and/or .AddDownstreamApi after this call,
the GraphServiceClient and IDownstreamApis are now registered as a singleton service. For details see PR #2645Update Microsoft.Identity.Abstractions 5.1.0 and Microsoft.IdentityModel.* 7.1.2
Leverage IdentityModel 7.x on all .NET core frameworks.
Update to Microsoft.Graph 5.34.0
Update to IdentityModel 7.0.0-preview2 on .NET 8.
IWebHostEnvironment is not present in the collection. If you want the ASP.NET Core host, you would need to use the WebApplication.CreateBuilder().Services instead
of instantiating a simple service collection.GetAuthenticationResultForUserAsync tries to find the inbound token from user.Identity.BootstrapContext first (if not null), and then from the token acquisition host. This will help for non-asp.NET Core Azure functions for instance.
See issue #2371 for details.Fix bug found in usage of AzureAD key issuer validator, see issue #2323.
Support new AzureAD key issuer validator in AddMicrosoftIdentityWebApi by default in Owin. See #2323 for details.
Update to Wilson 6.32.0 and Microsoft.Identity.Abstractions 4.0.0
Support new AzureAD key issuer validator in AddMicrosoftIdentityWebApi by default. See #2323 for details.
fix for CVE-2023-29331 in System.Security.Cryptography.Pkcs
System.Security.Cryptography.PkcsNothing published for this version
Id Web now supports the MS Graph v5 SDK, see issue #2097 for details.
Fix bug with signed assertion for AKS, see issue #2252 for details.
Id Web now supports [trimming](https://learn.microsoft.com/dotnet/core/deploying/trimming/trim-self-contained). See #2210
Microsoft.Identity.Web now provides more logging in DownstreamAPI, see #2148 for details.
Update to Wilson 6.29.0 and MSAL.NET 4.53.0
ID Web works with Authority in place of Tenant ID and Domain. See #2160
`MicrosoftIdentityAppCallsWebApiAuthenticationBuilder` is now available on netstandard2.0
MicrosoftIdentityAppCallsWebApiAuthenticationBuilder is now available on netstandard2.0GetClientAssertion protected.Update to Wilson 6.27.0 and MSAL.NET 4.51.0
GetClientAssertion is now public, which enables inheritance of ClientAssertionProviderBase. See PR for details.TryAdd instead of Add in the InMemory and Distributed caches, this is to not overwrite previously added caches. See issue for details.ResponseType == "code". See issue #2096 for details.Make ClientAssertion public, see for details.
Your coding agent can read these notes before it upgrades. Set up the MCP server →