Version 2.0.0 (released 2025-05-20)
- See also the migration guide: doc/Migration_1-2.adoc.
- Python 3.10 or later is now required.
- WebAuthn dataclasses have been updated to align with the WebAuthn Level 3
Working Draft. Constructors now require keyword arguments (kwargs_only=True),
and serialization to/from dictionaries is compatible with standardized JSON
formats. - The
features.webauthn_json_mappingflag has been removed, as its
behavior (standardized JSON mapping) is now default. Fido2ClientandWindowsClientconstructors now accept a
ClientDataCollectorinstance instead oforiginandverifyparameters.WindowsClienthas been relocated tofido2.client.windows. Importing this
class on non-Windows platforms will now raise anImportError.Fido2Clientmethods now returnRegistrationResponseand
AuthenticationResponseobjects, instead of raw attestation/assertion data.- CTAP2/WebAuthn extension handling has been redesigned.
Fido2Clientnow
expects a list ofCtap2Extensioninstances. Default behavior includes
extensions commonly supported by browsers. - The
fido2.cbormodule'sload_xanddump_xfunctions have been made
private (renamed with a leading underscore) and should not be used directly. - Previously deprecated functions and APIs have been removed.
- The
__version__attribute infido2/__init__.pyhas been removed. Use
importlib.metadata.version('fido2')to get the package version. - Add support for Persistent PinUvAuthToken and encIdentifier.
- Add support for
hmac-secret-mcandthirdPartyPaymentsexensions. - Add new GetInfo fields based on CTAP 2.2
- Update COSE algorithnm types.
- Building the library now requires Poetry version 2.0 or later.