Skip to content

Develop - #36

Open
kneckinator wants to merge 1169 commits into
idpass:developfrom
inji:develop
Open

Develop#36
kneckinator wants to merge 1169 commits into
idpass:developfrom
inji:develop

Conversation

@kneckinator

Copy link
Copy Markdown
Collaborator

No description provided.

@kneckinator
kneckinator requested a review from uocnb July 20, 2022 10:18

@uocnb uocnb left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM, thank you!

PuBHARGAVI and others added 28 commits June 3, 2025 14:47
…only if the request is sent with correct walletId after unlocking the wallet and update some messages in swagger annotation to keep it consistent with api json file

Signed-off-by: PuBHARGAVI <46226958+PuBHARGAVI@users.noreply.github.com>
Changing pom to migrage to maven central
Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com>
* Changing pom to remove execution block

Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com>

* Changing distributionmanagement

Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com>

---------

Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com>
[INJIWEB-1533] update the logic of delete wallet api to reset wallet correctly in different scenarios
Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com>
Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com>
Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com>
Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com>
…ive data

Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com>
[INJIWEB-1563] modify oAuth success redirect url
Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com>
[INJIWEB-1563] move auth success redirect config to default profile
Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com>
Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com>
Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com>
dsd-8184 fixing docker properties
injiweb-1522 adding google Oauth2 integration document
… if user already exist

Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com>
injiweb-1572 for automation removing need for having picture and name if user already exist
Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com>
[INJIWEB-1572] fixing the issue when update flow come
Signed-off-by: SradhaMohanty5899 <mohantysradha10@gmail.com>
Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com>
Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com>
Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com>
Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com>
Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com>
Rudhhi-Shah-14 and others added 30 commits April 7, 2026 12:12
* [INJIWEB-1891] Added logic to derive token_endpoint field internally in mimoto

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

* [INJIWEB-1891] Addressed review comments and amended the readMe

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

* [INJIWEB-1891] Removed extra values from mimoto-issuer-config json

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

---------

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>
… 13 and v1 versions ref #555 (#1074)

* feat(openid4vci): Add implementation for parsing well known for both versions part of #555

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* refactor: Fix validation, serialization, and test coverage for well-known response DTOs and parsers part of #555

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* Decouple version-specific well-known DTOs into draft13/v1 packages ref #555, use objectmapper for map

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* feat(openid4vci): Add internal classes for Logo and Background Image

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* feat(openid4vci): Remove redundant null checks and update test case

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* feat(openid4vci): add version to CredentialIssuerWellKnownResponse

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

---------

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>
…part of #555 (#1076)

* feat(openid4vci): Add factory implementation for downloading credential from issuer and support draft 13 part of #555

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

* feat(openid4vci): Addressed comments, removed CredentialRequestService Interface, updated tests

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

* feat(openid4vci): remove private method description from Draft13VCDownloadHandler

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

* rebased, addressed comments, added tests

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

* feat(openid4vci): Refactor get Credential Well Known response, update test cases

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* feat(openid4vci): update Credentialmetadata object with claims and update credentialdefinition to null

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* feat(openid4vci): update credentialdefinition to unassigned

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

---------

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>
Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>
Co-authored-by: Durgesh Konga <kongadurgesh20@gmail.com>
Signed-off-by: Sradha Mohanty <mohantysradha10@gmail.com>
… hostname and port (#1071) (#1080)

Signed-off-by: jackjain <jackjain1995@gmail.com>
Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>
Co-authored-by: Jack <jackjain1995@gmail.com>
…nID4VP (#1073)

* INJIWEB-1887 added error execption for Invalid transaction data in OpenID4VP

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Added payload error exception

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* removed call name to keep existing parameter

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Added test cases to cover toOpenId4VpException method

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Refactor OpenID4VPService: rename toOpenId4VpException to openId4VPErrorException and make it private

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

---------

Signed-off-by: Madhuravas reddy <madhu@mosip.io>
…inji-web #568 (#1079)

* feat(openid4vci): add implementation for v1 spec vc download

Add test cases

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* fix V1 credential request: add proofs JSON mapping, guard blank nonce endpoint on retry

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* feat(openid4vci): Split wellknown validator into Draft13 and V1 variants with version-specific ldp_vc validation and List<Map> claims type

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* feat(openid4vci): Add Error Response handling for Credential Endpoint

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* feat(openid4vci): remove temporary code for mock service part of inji-web #568

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* feat(openid4vci): remove unuse imports inji-web #568

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* feat(openid4vci): remove unuse imports inji-web #568

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* feat(openid4vci): update logs inji-web #568

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

---------

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>
* docs(mimoto) Updated the documentation to have error codes and added details in google integration doc

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

* docs(mimoto) Addressed code rabbit formatting changes

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

---------

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>
Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>
…#1090)

* [INJIWEB-1856] - Add Logic for sd-jwt ovp credential matching



* [INJIWEB-1856] - Add Logic for Algorithm Check



* [INJIWEB-1856] - Add logic to resolve publicClaims and sdClaims in api response



* [INJIWEB-1856] - Remove metadata keys from public claims



* [INJIWEB-1856] - Add null handling scenarios, claims generation logic



* [INJIWEB-1856] - Add logic to handle nested sdClaims



# Conflicts:
#	src/main/java/io/mosip/mimoto/service/impl/VcSdJwtCredentialFormatHandler.java

* [INJIWEB-1856] - Add Junit Test cases



* [INJIWEB-1856] - Update description for claims attribute
Update logic for sdClaims
update Test cases for sdClaims



* [INJIWEB-1856] - Refactor Matches Format logic
Remove hardcoded testdata



* [INJIWEB-1856] - Code refactoring and update test cases



* [INJIWEB-1856] - Update to Constructor Injection replacing Autowired



---------

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>
Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>
…rt in Inji web wallet (#1075)

* docs(vci): add design document for OpenID4VCI 1.0 specification support in Inji web wallet

Signed-off-by: jackjain <jackjain1995@gmail.com>

* docs(vci): fix lint error on markdown, add placeholders instead of actual credential data, fix interface texts

Signed-off-by: jackjain <jackjain1995@gmail.com>

* docs(vci): update v1 VCDownloadHandler class

Signed-off-by: jackjain <jackjain1995@gmail.com>

* docs(vci): update the design to process only first credential received from the issuer since wallet supports only single proof

Signed-off-by: jackjain <jackjain1995@gmail.com>

* docs(vci): fix grammar issues

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

---------

Signed-off-by: jackjain <jackjain1995@gmail.com>
Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>
Co-authored-by: Durgesh Konga <kongadurgesh20@gmail.com>
Signed-off-by: Abhi <abhishek.shankarcs@gmail.com>
[MOSIP-37808] Updated DB attributes for mimoto
* feat: add spec_version to Verifier

- This field indicates the specification version currently followed by the Verifier.
- The default value for this field will be v1

Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com>

* docs: udpate docs for /verifier api

Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com>

---------

Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com>
…#1089)

* injiweb-1855-sd-jwt-ovp add SD-JWT OVP credential presentation with selective disclosure support and fix misleading missingClaims response

Signed-off-by: cyber-titan <saiabhi2309@gmail.com>

* injiweb-1855-sd-jwt-ovp address CR comments — per-format signers, input mutation, typo fix, and test correctness

Signed-off-by: cyber-titan <saiabhi2309@gmail.com>

* injiweb-1855-sd-jwt-ovp address CR comments — alg advertisement, containsKey guard, unchecked cast

Signed-off-by: cyber-titan <saiabhi2309@gmail.com>

* feat(openid4vp): support dc+sd-jwt, per-credential SD-JWT signing, & share no disclosures when selectedSdClaims empty

Signed-off-by: cyber-titan <saiabhi2309@gmail.com>

* docs(openid4vp): harden presentation rejection request schema in API spec

Signed-off-by: cyber-titan <saiabhi2309@gmail.com>

* refactor(openid4vp): sign each VP token format with its own signer

Signed-off-by: cyber-titan <saiabhi2309@gmail.com>

---------

Signed-off-by: cyber-titan <saiabhi2309@gmail.com>
* feat(dpop): add v2 token endpoint that passes the AS error through as-is

Add POST /v2/get-token/{issuer} so the wallet's DPoP (RFC 9449) token
exchange via the mimoto proxy receives the authorization server response
untouched:

- Accept an optional DPoP request header and forward it to the AS token
  endpoint.
- Return the AS response as a raw ResponseEntity<String>, passing the
  status, body and headers (including DPoP-Nonce and WWW-Authenticate)
  through as-is on both success and error, so a use_dpop_nonce challenge
  reaches the wallet for the nonce retry.
- The existing v1 endpoint behaviour is unchanged.

Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>

* fix: add NoArgsConstructor to CredentialIssuerConfiguration and explicit PathVariable name in IdpController to fix failing tests

Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>

* fix: strip Transfer-Encoding header in getTokenV2 response

Copying upstream response headers including Transfer-Encoding: chunked
caused double chunked encoding when Tomcat also applied its own chunked
encoding, resulting in HTTP 502 from reverse proxies.

Filter out Transfer-Encoding from forwarded headers to fix this.

Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>

* fix: strip all hop-by-hop headers in getTokenV2 response

Per RFC 7230, hop-by-hop headers (Transfer-Encoding, Connection,
Keep-Alive, TE, Trailer, Upgrade, Proxy-Authenticate,
Proxy-Authorization) must not be forwarded by proxies.

Previously only Transfer-Encoding was stripped. Now all hop-by-hop
headers are filtered to be fully RFC-compliant.

Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>

* revert: restore mosip.mimoto.database.hostname property name

Revert inji.mimoto.database.hostname back to mosip.mimoto.database.hostname
to avoid breaking existing production deployments.

Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>

* refactor: extract token response header filtering

Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>

* fix: preserve configured issuer token endpoints

Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>

* fix: keep default config changes scoped to v2 token endpoint

Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>

* fix: address v2 token review comments

Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>

* chore(api-test): bump up api test version to 1.6.0

Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>

---------

Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>
* Added ovp 1.0, dcql support

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Remove selectedSdClaims from SubmitPresentationResponse

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* pass trusted verifiers into WalletConfig using library defaults

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* resolved claim_sets issue

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* restore method comments in WalletPresentationServiceImpl

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* test: expand unit tests for DCQL, wallet presentation, session, and OpenID4VP services

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Resolved code rabbit reviews

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Updated the postman collection

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Resolved code rabbit review comments

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* fix: update WalletConfig and VPTokenSigningResult for inji-openid4vp

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* build: upgrade apitest-commons dependency from 1.5.0-SNAPSHOT to 1.6.0

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* refactor: align DCQL matching with inji-openid4vp and OpenID4VP 1.0

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* disclose only queried SD claims in DCQL VP response

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* refactor: detect DCQL VP requests from dcql_query in authorization request

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Fixed build failure issue

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Removed OVP-0.8.0-Mimoto-Changes.md file

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* refactor(openid4vp): address PR review feedback for OVP 1.0 support

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* refactor: use StringUtils.isBlank in credential matching validation

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

---------

Signed-off-by: Madhuravas reddy <madhu@mosip.io>
…1105)

Signed-off-by: Mahesh-Binayak <Mahesh-Binayak@users.noreply.github.com>
Co-authored-by: Mahesh-Binayak <Mahesh-Binayak@users.noreply.github.com>
* Pass GPG_PRIVATE_KEY to maven-build and ignore .github/keys

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* changed to gpgupdate-masterj21 branch for kattu

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* changed to gpgupdate-masterj21 branch for kattu

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Added maven-sonar-analysis-new.yml

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* updated push-trigger.yml

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* updated push-trigger.yml

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

---------

Signed-off-by: Madhuravas reddy <madhu@mosip.io>
* fix: align Maven and CI license metadata with Apache 2.0

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* fix: align Maven and CI license metadata with Apache 2.0

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* fix: align Maven and CI license metadata with Apache 2.0

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

---------

Signed-off-by: Madhuravas reddy <madhu@mosip.io>
* MOSIP-44432:Mimoto -Update the test case descriptions to improve clarity and readability

Signed-off-by: Mrudula <mrudula.c@cyberpwn.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* MOSIP-44432:Mimoto -Update the test case descriptions to improve clarity and readability

Signed-off-by: Mrudula <mrudula.c@cyberpwn.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* MOSIP-44432:Mimoto -Update the test case descriptions to improve clarity and readability

Signed-off-by: Mrudula <mrudula.c@cyberpwn.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* MOSIP-44432:Mimoto -Update the test case descriptions to improve clarity and readability

Signed-off-by: Mrudula <mrudula.c@cyberpwn.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* MOSIP-44432:Mimoto -Update the test case descriptions to improve clarity and readability

Signed-off-by: Mrudula <mrudula.c@cyberpwn.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* [INJIWEB-1865] Modified the formatValue function (#1041)

* [INJIWEB-1865] Modified the formatValue function to enable Multilang support

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

* [INJIWEB-1865] updated the existing tests

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

* [INJIWEB-1865] Added the constants to seperate file

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

* [INJIWEB-1865] Update the constants for older tests

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

* [INJWEB-1865] Keeping the language compatibility for sd-jwts as well

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

* [INJIWEB-1865] removed the unused direction constants

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

---------

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* INJIWEB-1863 - add logic for multi-language support (#1043)

* test: update CredentialPDFGeneratorService unit tests for changed logic

Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local>

* fix: apply selected locale for PDF title and add tests

Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local>

* INJIWEB-1863 - Update attribute names
revert pom.xml

Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local>

* INJIWEB-1863 removed displaylist

Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local>

---------

Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local>
Co-authored-by: Roopa S <roopas@Roopas-MacBook-Pro.local>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* [INJIEB-1870] - Sync release to develop  (#1049)

* [INJIWEB-1823] Add docs for SVG Rendering and Claim169 QR Code support (#1034)

* [INJIWEB-1823] Add integration guide doc for svg rendering

Signed-off-by: jackjain <jackjain1995@gmail.com>

* [INJIWEB-1823] Add Claim169 support documentation

Signed-off-by: jackjain <jackjain1995@gmail.com>

* [INJIWEB-1823] Fix issues with SVG rendering documentation

Signed-off-by: jackjain <jackjain1995@gmail.com>

* [INJIWEB-1823] Fix typos and add additional clarification for ambiguous steps

Signed-off-by: jackjain <jackjain1995@gmail.com>

* [INJIWEB-1823] fix issues with sequence diagrams and flow explanations

Signed-off-by: jackjain <jackjain1995@gmail.com>

* [INJIWEB-1823] Rephrase the inji-vc-render PDF conversion flow text

Signed-off-by: jackjain <jackjain1995@gmail.com>

---------

Signed-off-by: jackjain <jackjain1995@gmail.com>
Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

* [INJIWEB-1823] Remove unused constants, org changes in pom.xml and remove unnecessary handling of context field as string (#1030)

* [INJIWEB-1841] update org name from mosip to inji in repo URLs and artifact ID

Signed-off-by: jackjain <jackjain1995@gmail.com>

* [INJIWEB-1841] Remove unused AES constant field and replace private constructor with lombok annotation

Signed-off-by: jackjain <jackjain1995@gmail.com>

* [INJIWEB-1841] Remove handling for context as string during ldp_vc v2 context check

Signed-off-by: jackjain <jackjain1995@gmail.com>

---------

Signed-off-by: jackjain <jackjain1995@gmail.com>
Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

* [INJIWEB-1819] - Add claim169 extraction logic (#1003) (#1017)

* [INJIWEB-1819] - Add claim169 extraction logic (#1003)

* [INJIWEB-1819] - Add claim169 extraction logic
Add test cases for possible scenarios of claim 169

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* [INJIWEB-1819] - Rename variable and remove unnecessary string initialization

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* [INJIWEB-1819] - Replace multiple test cases into single parameterised test case

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

---------

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* [INJIWEB-1819] - Remove identityqr hardcode, update test case

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

---------

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>
Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

* [INJIWEB-1831] - Add DB upgrade and rollback scripts, Update ovp jar version (#1007)

* [INJIWEB-1831] - Add placeholder upgrade and rollback scripts
Update ovp jar version

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* [INJIWEB-1831] - Update ovp jar version

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* [INJIWEB-1831] - Update ovp jar version

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* [INJIWEB-1831] - Update ovp jar version

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* [INJIWEB-1831] - Fix Script Name

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

---------

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>
Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

* [INJIWEB-1870] Upgrade the mimoto version to 0.22.0-SNAPSHOT

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

* [INJIWEB-1823] removed the corresponding test of handling for context as string during ldp_vc v2 context check

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

* [INJIWEB-1823] updated inji-vc-renderer jar to 0.2.0

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

* [INJIWEB-1870] test file conflict resolution error fixed

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

---------

Signed-off-by: jackjain <jackjain1995@gmail.com>
Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>
Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>
Co-authored-by: Jack <jackjain1995@gmail.com>
Co-authored-by: Durgesh Konga <kongadurgesh20@gmail.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* [INJIWEB-1861] Fixing SonarCloud reliability issues in mimoto  (#1053)

* [INJIWEB-1861] Field injection to constructor injection and removal of unsused imports - trial files

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

* [INJWEB-1861] Access modifier change

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

---------

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* [INJIWEB-1861] Fixing SonarCloud reliability issues in mimoto  (#1056)

* [INJIWEB-1861] Added constructor injection for the CONTROLLER files

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

* [INJIWEB-1861] Added constructor injection for the SERVICE files

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

* [INJIWEB-1861] reused SecureRandom instance as a static final field

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

* [INJIWEB-1861] removed the redundant word 'image' from alt attribute

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

* [INJIWEB-1861] Addressed code rabbit comments

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

* [INJIWEB-1861] Used static string for alt attribute in credential template

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

---------

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* injiweb-1871-mimoto-coverage added coverage for above 80% (#1054)

* injiweb-1871-mimoto-coverage added coverage for above 80%

Signed-off-by: cyber-titan <saiabhi2309@gmail.com>

* injiweb-1871-mimoto-coverage fixed code rabbit comments

Signed-off-by: cyber-titan <saiabhi2309@gmail.com>

* injiweb-1871-mimoto-coverage fixed code rabbit comments

Signed-off-by: cyber-titan <saiabhi2309@gmail.com>

* injiweb-1871-mimoto-coverage fixed credentialShare & pdfGen tests

Signed-off-by: cyber-titan <saiabhi2309@gmail.com>

* injiweb-1871-mimoto-coverage changed context to list type

Signed-off-by: cyber-titan <saiabhi2309@gmail.com>

* injiweb-1871-mimoto-coverage rebased changes

Signed-off-by: cyber-titan <saiabhi2309@gmail.com>

---------

Signed-off-by: cyber-titan <saiabhi2309@gmail.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* MOSIP-41353: Remove unused config files and properties in MIMOTO module. (#1044)

* MOSIP-41353

Signed-off-by: Sradha Mohanty <mohantysradha10@gmail.com>

* MOSIP-41353

Signed-off-by: Sradha Mohanty <mohantysradha10@gmail.com>

* MOSIP-41353

Signed-off-by: Sradha Mohanty <mohantysradha10@gmail.com>

* MOSIP-41353

Signed-off-by: Sradha Mohanty <mohantysradha10@gmail.com>

* MOSIP-41353

Signed-off-by: Sradha Mohanty <mohantysradha10@gmail.com>

* MOSIP-41353

Signed-off-by: Sradha Mohanty <mohantysradha10@gmail.com>

---------

Signed-off-by: Sradha Mohanty <mohantysradha10@gmail.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* [INJIWEB-1861] Refactored reflection tests to use mocking (#1057)

* [INJIWEB-1861] Refactored reflection tests and addressed review comments

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

* [INJIWEB-1861] addressed nitpick test comments

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

---------

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* MOSIP-44720 New Get Isssuer V2 API automation (#1061)

* MOSIP-44720 New Get Isssuer V2 API automation

Signed-off-by: Nitin Hegde <nitin.k@cyberpwn.com>

* MOSIP-44720 New Get Isssuer V2 API automation

Signed-off-by: Nitin Hegde <nitin.k@cyberpwn.com>

* MOSIP-44720 New Get Isssuer V2 API automation

Signed-off-by: Nitin Hegde <nitin.k@cyberpwn.com>

* MOSIP-44720 New Get Isssuer V2 API automation

Signed-off-by: Nitin Hegde <nitin.k@cyberpwn.com>

---------

Signed-off-by: Nitin Hegde <nitin.k@cyberpwn.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* [INJIWEB-1873] - Update Verifier Validation parameters to client id and response uris (#1055)

* [INJIWEB-1873] - Update Verifier Validation parameters to client id and response uris
update logic to consider redirect_uri from post api response
update test cases

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* [INJIWEB-1873] - Add redirect uri fallback and update test cases

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

---------

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* MOSIP-44432:resloved the coderabbit comments

Signed-off-by: Mrudula <mrudula.c@cyberpwn.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* INJIWEB-1890 Update docker image tag and add missing config (#1062)

Signed-off-by: Madhuravas reddy <madhu@mosip.io>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* [INJIWEB-1888] - update LogoDTO properties (#1063)

Add Test cases in IssuersController

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* [INJIWEB-1873] - Add Conditional Validation for verifier, bring back fall back redirect logic in case of response_mode is not direct_post (#1064)

* [INJIWEB-1873] - Add conditional validation for verifer

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* [INJIWEB-1873] - bring back fallback logic  for building direct uri incase of response mode is not direct_post

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* [INJIWEB-1873] - Add Optional logic for responseUris and redirecturis

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

---------

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* [INJIWEB-1435] - Add fallback logic to use Credential issuer host as authorization server (#1058)

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* [INJIWEB-1891] - Removed unused config from issuers config (#1066)

* [INJIWEB-1891] - Removed unused config from issuers config

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* [INJIWEB-1891] - Replace Config with Mock ID usecase

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* [INJIWEB-1891] - Update Token endpoint

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* [INJIWEB-1891] - Update Token endpoint in local setup

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

---------

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* [INJIWEB-1883] - Update library versions to inji in pom xml (#1067)

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* [INJIWEB-1891] Derive token_endpoint field internally in mimoto (#1065)

* [INJIWEB-1891] Added logic to derive token_endpoint field internally in mimoto

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

* [INJIWEB-1891] Addressed review comments and amended the readMe

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

* [INJIWEB-1891] Removed extra values from mimoto-issuer-config json

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

---------

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* feat(openid4vci): Add implementation for parsing well known for draft 13 and v1 versions ref #555 (#1074)

* feat(openid4vci): Add implementation for parsing well known for both versions part of #555

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* refactor: Fix validation, serialization, and test coverage for well-known response DTOs and parsers part of #555

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* Decouple version-specific well-known DTOs into draft13/v1 packages ref #555, use objectmapper for map

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* feat(openid4vci): Add internal classes for Logo and Background Image

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* feat(openid4vci): Remove redundant null checks and update test case

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* feat(openid4vci): add version to CredentialIssuerWellKnownResponse

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

---------

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* feat(openid4vci): Add factory implementation for credential download part of #555 (#1076)

* feat(openid4vci): Add factory implementation for downloading credential from issuer and support draft 13 part of #555

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

* feat(openid4vci): Addressed comments, removed CredentialRequestService Interface, updated tests

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

* feat(openid4vci): remove private method description from Draft13VCDownloadHandler

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

* rebased, addressed comments, added tests

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

* feat(openid4vci): Refactor get Credential Well Known response, update test cases

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* feat(openid4vci): update Credentialmetadata object with claims and update credentialdefinition to null

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* feat(openid4vci): update credentialdefinition to unassigned

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

---------

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>
Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>
Co-authored-by: Durgesh Konga <kongadurgesh20@gmail.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* MOSIP-44709 (#1069)

Signed-off-by: Sradha Mohanty <mohantysradha10@gmail.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* [INJIWEB-1883] Update the deployment variables used to fetch database hostname and port (#1071) (#1080)

Signed-off-by: jackjain <jackjain1995@gmail.com>
Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>
Co-authored-by: Jack <jackjain1995@gmail.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* fix(inji-web): add error handling for invalid transaction data in OpenID4VP (#1073)

* INJIWEB-1887 added error execption for Invalid transaction data in OpenID4VP

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Added payload error exception

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* removed call name to keep existing parameter

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Added test cases to cover toOpenId4VpException method

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Refactor OpenID4VPService: rename toOpenId4VpException to openId4VPErrorException and make it private

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

---------

Signed-off-by: Madhuravas reddy <madhu@mosip.io>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* feat(openid4vci): add implementation for v1 spec vc download part of inji-web #568 (#1079)

* feat(openid4vci): add implementation for v1 spec vc download

Add test cases

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* fix V1 credential request: add proofs JSON mapping, guard blank nonce endpoint on retry

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* feat(openid4vci): Split wellknown validator into Draft13 and V1 variants with version-specific ldp_vc validation and List<Map> claims type

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* feat(openid4vci): Add Error Response handling for Credential Endpoint

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* feat(openid4vci): remove temporary code for mock service part of inji-web #568

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* feat(openid4vci): remove unuse imports inji-web #568

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* feat(openid4vci): remove unuse imports inji-web #568

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

* feat(openid4vci): update logs inji-web #568

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

---------

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* docs(mimoto) - technical design documentation update (#1081)

* docs(mimoto) Updated the documentation to have error codes and added details in google integration doc

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

* docs(mimoto) Addressed code rabbit formatting changes

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>

---------

Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* fix(issuers-config): Revert Issuers V1 Endpoint attributes (#1085)

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* [INJIWEB-1856] - Add Logic for sd-jwt ovp credential matching (#1038) (#1090)

* [INJIWEB-1856] - Add Logic for sd-jwt ovp credential matching

* [INJIWEB-1856] - Add Logic for Algorithm Check

* [INJIWEB-1856] - Add logic to resolve publicClaims and sdClaims in api response

* [INJIWEB-1856] - Remove metadata keys from public claims

* [INJIWEB-1856] - Add null handling scenarios, claims generation logic

* [INJIWEB-1856] - Add logic to handle nested sdClaims

# Conflicts:
#	src/main/java/io/mosip/mimoto/service/impl/VcSdJwtCredentialFormatHandler.java

* [INJIWEB-1856] - Add Junit Test cases

* [INJIWEB-1856] - Update description for claims attribute
Update logic for sdClaims
update Test cases for sdClaims

* [INJIWEB-1856] - Refactor Matches Format logic
Remove hardcoded testdata

* [INJIWEB-1856] - Code refactoring and update test cases

* [INJIWEB-1856] - Update to Constructor Injection replacing Autowired

---------

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* fix(openid4vci): update get credential for v1 vcresponse (#1091)

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* docs(vci): add design document for OpenID4VCI 1.0 specification support in Inji web wallet (#1075)

* docs(vci): add design document for OpenID4VCI 1.0 specification support in Inji web wallet

Signed-off-by: jackjain <jackjain1995@gmail.com>

* docs(vci): fix lint error on markdown, add placeholders instead of actual credential data, fix interface texts

Signed-off-by: jackjain <jackjain1995@gmail.com>

* docs(vci): update v1 VCDownloadHandler class

Signed-off-by: jackjain <jackjain1995@gmail.com>

* docs(vci): update the design to process only first credential received from the issuer since wallet supports only single proof

Signed-off-by: jackjain <jackjain1995@gmail.com>

* docs(vci): fix grammar issues

Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>

---------

Signed-off-by: jackjain <jackjain1995@gmail.com>
Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>
Co-authored-by: Durgesh Konga <kongadurgesh20@gmail.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* [MOSIP-37808] Updated DB attributes for mimoto

Signed-off-by: Abhi <abhishek.shankarcs@gmail.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* feat: add spec_version to Verifier (#1093)

* feat: add spec_version to Verifier

- This field indicates the specification version currently followed by the Verifier.
- The default value for this field will be v1

Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com>

* docs: udpate docs for /verifier api

Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com>

---------

Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* feat(openid4vp): present SD-JWT credentials with selective disclosure (#1089)

* injiweb-1855-sd-jwt-ovp add SD-JWT OVP credential presentation with selective disclosure support and fix misleading missingClaims response

Signed-off-by: cyber-titan <saiabhi2309@gmail.com>

* injiweb-1855-sd-jwt-ovp address CR comments — per-format signers, input mutation, typo fix, and test correctness

Signed-off-by: cyber-titan <saiabhi2309@gmail.com>

* injiweb-1855-sd-jwt-ovp address CR comments — alg advertisement, containsKey guard, unchecked cast

Signed-off-by: cyber-titan <saiabhi2309@gmail.com>

* feat(openid4vp): support dc+sd-jwt, per-credential SD-JWT signing, & share no disclosures when selectedSdClaims empty

Signed-off-by: cyber-titan <saiabhi2309@gmail.com>

* docs(openid4vp): harden presentation rejection request schema in API spec

Signed-off-by: cyber-titan <saiabhi2309@gmail.com>

* refactor(openid4vp): sign each VP token format with its own signer

Signed-off-by: cyber-titan <saiabhi2309@gmail.com>

---------

Signed-off-by: cyber-titan <saiabhi2309@gmail.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* feat(dpop): add v2 token endpoint with DPoP header passthrough (#1097)

* feat(dpop): add v2 token endpoint that passes the AS error through as-is

Add POST /v2/get-token/{issuer} so the wallet's DPoP (RFC 9449) token
exchange via the mimoto proxy receives the authorization server response
untouched:

- Accept an optional DPoP request header and forward it to the AS token
  endpoint.
- Return the AS response as a raw ResponseEntity<String>, passing the
  status, body and headers (including DPoP-Nonce and WWW-Authenticate)
  through as-is on both success and error, so a use_dpop_nonce challenge
  reaches the wallet for the nonce retry.
- The existing v1 endpoint behaviour is unchanged.

Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>

* fix: add NoArgsConstructor to CredentialIssuerConfiguration and explicit PathVariable name in IdpController to fix failing tests

Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>

* fix: strip Transfer-Encoding header in getTokenV2 response

Copying upstream response headers including Transfer-Encoding: chunked
caused double chunked encoding when Tomcat also applied its own chunked
encoding, resulting in HTTP 502 from reverse proxies.

Filter out Transfer-Encoding from forwarded headers to fix this.

Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>

* fix: strip all hop-by-hop headers in getTokenV2 response

Per RFC 7230, hop-by-hop headers (Transfer-Encoding, Connection,
Keep-Alive, TE, Trailer, Upgrade, Proxy-Authenticate,
Proxy-Authorization) must not be forwarded by proxies.

Previously only Transfer-Encoding was stripped. Now all hop-by-hop
headers are filtered to be fully RFC-compliant.

Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>

* revert: restore mosip.mimoto.database.hostname property name

Revert inji.mimoto.database.hostname back to mosip.mimoto.database.hostname
to avoid breaking existing production deployments.

Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>

* refactor: extract token response header filtering

Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>

* fix: preserve configured issuer token endpoints

Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>

* fix: keep default config changes scoped to v2 token endpoint

Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>

* fix: address v2 token review comments

Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>

* chore(api-test): bump up api test version to 1.6.0

Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>

---------

Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* feat(openid4vp): add OVP 1.0 DCQL wallet presentation support (#1096)

* Added ovp 1.0, dcql support

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Remove selectedSdClaims from SubmitPresentationResponse

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* pass trusted verifiers into WalletConfig using library defaults

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* resolved claim_sets issue

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* restore method comments in WalletPresentationServiceImpl

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* test: expand unit tests for DCQL, wallet presentation, session, and OpenID4VP services

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Resolved code rabbit reviews

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Updated the postman collection

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Resolved code rabbit review comments

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* fix: update WalletConfig and VPTokenSigningResult for inji-openid4vp

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* build: upgrade apitest-commons dependency from 1.5.0-SNAPSHOT to 1.6.0

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* refactor: align DCQL matching with inji-openid4vp and OpenID4VP 1.0

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* disclose only queried SD claims in DCQL VP response

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* refactor: detect DCQL VP requests from dcql_query in authorization request

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Fixed build failure issue

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Removed OVP-0.8.0-Mimoto-Changes.md file

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* refactor(openid4vp): address PR review feedback for OVP 1.0 support

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* refactor: use StringUtils.isBlank in credential matching validation

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

---------

Signed-off-by: Madhuravas reddy <madhu@mosip.io>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* [inji/inji-wallet#2539] Replace MPL License with Apache License 2.0 (#1105)

Signed-off-by: Mahesh-Binayak <Mahesh-Binayak@users.noreply.github.com>
Co-authored-by: Mahesh-Binayak <Mahesh-Binayak@users.noreply.github.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* Pass GPG_PRIVATE_KEY to maven-build and ignore .github/keys (#1107)

* Pass GPG_PRIVATE_KEY to maven-build and ignore .github/keys

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* changed to gpgupdate-masterj21 branch for kattu

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* changed to gpgupdate-masterj21 branch for kattu

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Added maven-sonar-analysis-new.yml

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* updated push-trigger.yml

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* updated push-trigger.yml

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

---------

Signed-off-by: Madhuravas reddy <madhu@mosip.io>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* fix: align Maven and CI license metadata with Apache 2.0 (#1110)

* fix: align Maven and CI license metadata with Apache 2.0

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* fix: align Maven and CI license metadata with Apache 2.0

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* fix: align Maven and CI license metadata with Apache 2.0

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

---------

Signed-off-by: Madhuravas reddy <madhu@mosip.io>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* Update InjiVerifyVpRequest test case

Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* Add acceptVPWithoutHolderProof to InjiVerifyVpRequest template

Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* Update InjiVerify VP request to match dev-int-inji dcqlQuery body

Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

* Restore clientId input in yml and use {{clientId}} placeholder in hbs

Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>

---------

Signed-off-by: Mrudula <mrudula.c@cyberpwn.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>
Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>
Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local>
Signed-off-by: jackjain <jackjain1995@gmail.com>
Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>
Signed-off-by: cyber-titan <saiabhi2309@gmail.com>
Signed-off-by: Sradha Mohanty <mohantysradha10@gmail.com>
Signed-off-by: Nitin Hegde <nitin.k@cyberpwn.com>
Signed-off-by: Madhuravas reddy <madhu@mosip.io>
Signed-off-by: Abhi <abhishek.shankarcs@gmail.com>
Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com>
Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>
Signed-off-by: Mahesh-Binayak <Mahesh-Binayak@users.noreply.github.com>
Signed-off-by: Mrudu-ch <mrudula.c@cyberpwn.com>
Co-authored-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>
Co-authored-by: Roopa Srinivas <roopa.s@thoughtworks.com>
Co-authored-by: Roopa S <roopas@Roopas-MacBook-Pro.local>
Co-authored-by: Jack <jackjain1995@gmail.com>
Co-authored-by: Durgesh Konga <kongadurgesh20@gmail.com>
Co-authored-by: cyber-titan <saiabhi2309@gmail.com>
Co-authored-by: Sradha Mohanty <mohantysradha10@gmail.com>
Co-authored-by: Nitin Hegde <165893206+hegdenitin@users.noreply.github.com>
Co-authored-by: Madhuravas reddy <madhu@mosip.io>
Co-authored-by: Madhuravas reddy <madhu@inji.io>
Co-authored-by: Abhi <abhishek.shankarcs@gmail.com>
Co-authored-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com>
Co-authored-by: abhip2565 <paul.apaul.abhishek.AP@gmail.com>
Co-authored-by: Mahesh-Binayak <76687012+Mahesh-Binayak@users.noreply.github.com>
Co-authored-by: Mahesh-Binayak <Mahesh-Binayak@users.noreply.github.com>
* feat(datashare): support DCQL alongside PD in Online Sharing OVP flow (#1114)

* feat(datashare): support DCQL alongside PD in Online Sharing OVP flow

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* refactor(presentation): simplify DCQL authorize path after review

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Resolved failed test cases issue

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

---------

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* fix(datashare): align DCQL direct_post vp_token with Inji Verify v2 (#1115)

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* fix(datashare): submit unbound VC for DCQL when holder binding is not required (#1116)

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* resolved code rabbit reviews

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* resolved code rabbit reviews

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

---------

Signed-off-by: Madhuravas reddy <madhu@mosip.io>
* feat(openid4vci): add mso_mdoc credential format support for issuance

Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com>

* feat(openid4vci): add mso_mdoc credential format support for draft-13 issuance and unit tests

Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com>

* fix tests

Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com>

* fixed code rabbit comments

Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com>

---------

Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com>
* chore: bump up mimoto version to 1.0.0-alpha.1-SNAPSHOT (#1099)

* chore: bump up mimoto version to 1.0.0-alpha.1-SNAPSHOT

Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com>

* refactor: update apitest-commons version to 1.6.0

Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com>

* refactor: udpate version in Charts.ym;

Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com>

* refactor: update version in Chart.yaml

Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com>

Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com>

* refactor: udpate docker image namespace to injistackqa

Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com>

---------

Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com>

* [inji/inji-wallet#2539] Replace MPL License with Apache License 2.0 (#1106)

Signed-off-by: Mahesh-Binayak <Mahesh-Binayak@users.noreply.github.com>
Co-authored-by: Mahesh-Binayak <Mahesh-Binayak@users.noreply.github.com>

* feat(openid4vp): backport OVP 1.0 DCQL support and GPG build fix to release-1.0.x (#1108)

* feat(openid4vp): add OVP 1.0 DCQL wallet presentation support (#1096)

* Added ovp 1.0, dcql support

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Remove selectedSdClaims from SubmitPresentationResponse

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* pass trusted verifiers into WalletConfig using library defaults

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* resolved claim_sets issue

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* restore method comments in WalletPresentationServiceImpl

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* test: expand unit tests for DCQL, wallet presentation, session, and OpenID4VP services

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Resolved code rabbit reviews

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Updated the postman collection

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Resolved code rabbit review comments

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* fix: update WalletConfig and VPTokenSigningResult for inji-openid4vp

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* build: upgrade apitest-commons dependency from 1.5.0-SNAPSHOT to 1.6.0

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* refactor: align DCQL matching with inji-openid4vp and OpenID4VP 1.0

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* disclose only queried SD claims in DCQL VP response

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* refactor: detect DCQL VP requests from dcql_query in authorization request

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Fixed build failure issue

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Removed OVP-0.8.0-Mimoto-Changes.md file

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* refactor(openid4vp): address PR review feedback for OVP 1.0 support

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* refactor: use StringUtils.isBlank in credential matching validation

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

---------

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Pass GPG_PRIVATE_KEY to maven-build and ignore .github/keys (#1107)

* Pass GPG_PRIVATE_KEY to maven-build and ignore .github/keys

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* changed to gpgupdate-masterj21 branch for kattu

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* changed to gpgupdate-masterj21 branch for kattu

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Added maven-sonar-analysis-new.yml

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* updated push-trigger.yml

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* updated push-trigger.yml

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

---------

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Handled code rabbit reviews

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Handled code rabbit reviews

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

---------

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Unify VP token signing for LDP_VC and SD-JWT (#1109)

* feat(openid4vp): add OVP 1.0 DCQL wallet presentation support (#1096)

* Added ovp 1.0, dcql support

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Remove selectedSdClaims from SubmitPresentationResponse

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* pass trusted verifiers into WalletConfig using library defaults

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* resolved claim_sets issue

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* restore method comments in WalletPresentationServiceImpl

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* test: expand unit tests for DCQL, wallet presentation, session, and OpenID4VP services

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Resolved code rabbit reviews

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Updated the postman collection

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Resolved code rabbit review comments

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* fix: update WalletConfig and VPTokenSigningResult for inji-openid4vp

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* build: upgrade apitest-commons dependency from 1.5.0-SNAPSHOT to 1.6.0

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* refactor: align DCQL matching with inji-openid4vp and OpenID4VP 1.0

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* disclose only queried SD claims in DCQL VP response

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* refactor: detect DCQL VP requests from dcql_query in authorization request

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Fixed build failure issue

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Removed OVP-0.8.0-Mimoto-Changes.md file

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* refactor(openid4vp): address PR review feedback for OVP 1.0 support

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* refactor: use StringUtils.isBlank in credential matching validation

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

---------

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Pass GPG_PRIVATE_KEY to maven-build and ignore .github/keys (#1107)

* Pass GPG_PRIVATE_KEY to maven-build and ignore .github/keys

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* changed to gpgupdate-masterj21 branch for kattu

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* changed to gpgupdate-masterj21 branch for kattu

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Added maven-sonar-analysis-new.yml

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* updated push-trigger.yml

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* updated push-trigger.yml

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

---------

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Handled code rabbit reviews

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Handled code rabbit reviews

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* fix: recognize EdDSA alias in SigningAlgorithm

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Unify VP token signing for LDP_VC and SD-JWT

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* removed EDDSA

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Resolved build failuer issue

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

---------

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* fix: align Maven and CI license metadata with Apache 2.0 (#1110) (#1111)

* fix: align Maven and CI license metadata with Apache 2.0



* fix: align Maven and CI license metadata with Apache 2.0



* fix: align Maven and CI license metadata with Apache 2.0



---------

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Data share with dcql (#1118)

* feat(datashare): support DCQL alongside PD in Online Sharing OVP flow (#1114)

* feat(datashare): support DCQL alongside PD in Online Sharing OVP flow

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* refactor(presentation): simplify DCQL authorize path after review

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Resolved failed test cases issue

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

---------

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* fix(datashare): align DCQL direct_post vp_token with Inji Verify v2 (#1115)

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* fix(datashare): submit unbound VC for DCQL when holder binding is not required (#1116)

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* resolved code rabbit reviews

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* resolved code rabbit reviews

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

---------

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Feature/inji verify vp request test (#1113) (#1119)

* MOSIP-44432:Mimoto -Update the test case descriptions to improve clarity and readability




* MOSIP-44432:Mimoto -Update the test case descriptions to improve clarity and readability




* MOSIP-44432:Mimoto -Update the test case descriptions to improve clarity and readability




* MOSIP-44432:Mimoto -Update the test case descriptions to improve clarity and readability




* MOSIP-44432:Mimoto -Update the test case descriptions to improve clarity and readability




* [INJIWEB-1865] Modified the formatValue function (#1041)

* [INJIWEB-1865] Modified the formatValue function to enable Multilang support



* [INJIWEB-1865] updated the existing tests



* [INJIWEB-1865] Added the constants to seperate file



* [INJIWEB-1865] Update the constants for older tests



* [INJWEB-1865] Keeping the language compatibility for sd-jwts as well



* [INJIWEB-1865] removed the unused direction constants



---------




* INJIWEB-1863 - add logic for multi-language support (#1043)

* test: update CredentialPDFGeneratorService unit tests for changed logic



* fix: apply selected locale for PDF title and add tests



* INJIWEB-1863 - Update attribute names
revert pom.xml



* INJIWEB-1863 removed displaylist



---------





* [INJIEB-1870] - Sync release to develop  (#1049)

* [INJIWEB-1823] Add docs for SVG Rendering and Claim169 QR Code support (#1034)

* [INJIWEB-1823] Add integration guide doc for svg rendering



* [INJIWEB-1823] Add Claim169 support documentation



* [INJIWEB-1823] Fix issues with SVG rendering documentation



* [INJIWEB-1823] Fix typos and add additional clarification for ambiguous steps



* [INJIWEB-1823] fix issues with sequence diagrams and flow explanations



* [INJIWEB-1823] Rephrase the inji-vc-render PDF conversion flow text



---------




* [INJIWEB-1823] Remove unused constants, org changes in pom.xml and remove unnecessary handling of context field as string (#1030)

* [INJIWEB-1841] update org name from mosip to inji in repo URLs and artifact ID



* [INJIWEB-1841] Remove unused AES constant field and replace private constructor with lombok annotation



* [INJIWEB-1841] Remove handling for context as string during ldp_vc v2 context check



---------




* [INJIWEB-1819] - Add claim169 extraction logic (#1003) (#1017)

* [INJIWEB-1819] - Add claim169 extraction logic (#1003)

* [INJIWEB-1819] - Add claim169 extraction logic
Add test cases for possible scenarios of claim 169



* [INJIWEB-1819] - Rename variable and remove unnecessary string initialization



* [INJIWEB-1819] - Replace multiple test cases into single parameterised test case



---------



* [INJIWEB-1819] - Remove identityqr hardcode, update test case



---------




* [INJIWEB-1831] - Add DB upgrade and rollback scripts, Update ovp jar version (#1007)

* [INJIWEB-1831] - Add placeholder upgrade and rollback scripts
Update ovp jar version



* [INJIWEB-1831] - Update ovp jar version



* [INJIWEB-1831] - Update ovp jar version



* [INJIWEB-1831] - Update ovp jar version



* [INJIWEB-1831] - Fix Script Name



---------




* [INJIWEB-1870] Upgrade the mimoto version to 0.22.0-SNAPSHOT



* [INJIWEB-1823] removed the corresponding test of handling for context as string during ldp_vc v2 context check



* [INJIWEB-1823] updated inji-vc-renderer jar to 0.2.0



* [INJIWEB-1870] test file conflict resolution error fixed



---------








* [INJIWEB-1861] Fixing SonarCloud reliability issues in mimoto  (#1053)

* [INJIWEB-1861] Field injection to constructor injection and removal of unsused imports - trial files



* [INJWEB-1861] Access modifier change



---------




* [INJIWEB-1861] Fixing SonarCloud reliability issues in mimoto  (#1056)

* [INJIWEB-1861] Added constructor injection for the CONTROLLER files



* [INJIWEB-1861] Added constructor injection for the SERVICE files



* [INJIWEB-1861] reused SecureRandom instance as a static final field



* [INJIWEB-1861] removed the redundant word 'image' from alt attribute



* [INJIWEB-1861] Addressed code rabbit comments



* [INJIWEB-1861] Used static string for alt attribute in credential template



---------




* injiweb-1871-mimoto-coverage added coverage for above 80% (#1054)

* injiweb-1871-mimoto-coverage added coverage for above 80%



* injiweb-1871-mimoto-coverage fixed code rabbit comments



* injiweb-1871-mimoto-coverage fixed code rabbit comments



* injiweb-1871-mimoto-coverage fixed credentialShare & pdfGen tests



* injiweb-1871-mimoto-coverage changed context to list type



* injiweb-1871-mimoto-coverage rebased changes



---------




* MOSIP-41353: Remove unused config files and properties in MIMOTO module. (#1044)

* MOSIP-41353



* MOSIP-41353



* MOSIP-41353



* MOSIP-41353



* MOSIP-41353



* MOSIP-41353



---------




* [INJIWEB-1861] Refactored reflection tests to use mocking (#1057)

* [INJIWEB-1861] Refactored reflection tests and addressed review comments



* [INJIWEB-1861] addressed nitpick test comments



---------




* MOSIP-44720 New Get Isssuer V2 API automation (#1061)

* MOSIP-44720 New Get Isssuer V2 API automation



* MOSIP-44720 New Get Isssuer V2 API automation



* MOSIP-44720 New Get Isssuer V2 API automation



* MOSIP-44720 New Get Isssuer V2 API automation



---------




* [INJIWEB-1873] - Update Verifier Validation parameters to client id and response uris (#1055)

* [INJIWEB-1873] - Update Verifier Validation parameters to client id and response uris
update logic to consider redirect_uri from post api response
update test cases



* [INJIWEB-1873] - Add redirect uri fallback and update test cases



---------




* MOSIP-44432:resloved the coderabbit comments




* INJIWEB-1890 Update docker image tag and add missing config (#1062)




* [INJIWEB-1888] - update LogoDTO properties (#1063)

Add Test cases in IssuersController




* [INJIWEB-1873] - Add Conditional Validation for verifier, bring back fall back redirect logic in case of response_mode is not direct_post (#1064)

* [INJIWEB-1873] - Add conditional validation for verifer



* [INJIWEB-1873] - bring back fallback logic  for building direct uri incase of response mode is not direct_post



* [INJIWEB-1873] - Add Optional logic for responseUris and redirecturis



---------




* [INJIWEB-1435] - Add fallback logic to use Credential issuer host as authorization server (#1058)




* [INJIWEB-1891] - Removed unused config from issuers config (#1066)

* [INJIWEB-1891] - Removed unused config from issuers config



* [INJIWEB-1891] - Replace Config with Mock ID usecase



* [INJIWEB-1891] - Update Token endpoint



* [INJIWEB-1891] - Update Token endpoint in local setup



---------




* [INJIWEB-1883] - Update library versions to inji in pom xml (#1067)




* [INJIWEB-1891] Derive token_endpoint field internally in mimoto (#1065)

* [INJIWEB-1891] Added logic to derive token_endpoint field internally in mimoto



* [INJIWEB-1891] Addressed review comments and amended the readMe



* [INJIWEB-1891] Removed extra values from mimoto-issuer-config json



---------




* feat(openid4vci): Add implementation for parsing well known for draft 13 and v1 versions ref #555 (#1074)

* feat(openid4vci): Add implementation for parsing well known for both versions part of #555



* refactor: Fix validation, serialization, and test coverage for well-known response DTOs and parsers part of #555



* Decouple version-specific well-known DTOs into draft13/v1 packages ref #555, use objectmapper for map



* feat(openid4vci): Add internal classes for Logo and Background Image



* feat(openid4vci): Remove redundant null checks and update test case



* feat(openid4vci): add version to CredentialIssuerWellKnownResponse



---------




* feat(openid4vci): Add factory implementation for credential download part of #555 (#1076)

* feat(openid4vci): Add factory implementation for downloading credential from issuer and support draft 13 part of #555



* feat(openid4vci): Addressed comments, removed CredentialRequestService Interface, updated tests



* feat(openid4vci): remove private method description from Draft13VCDownloadHandler



* rebased, addressed comments, added tests



* feat(openid4vci): Refactor get Credential Well Known response, update test cases



* feat(openid4vci): update Credentialmetadata object with claims and update credentialdefinition to null



* feat(openid4vci): update credentialdefinition to unassigned



---------






* MOSIP-44709 (#1069)




* [INJIWEB-1883] Update the deployment variables used to fetch database hostname and port (#1071) (#1080)






* fix(inji-web): add error handling for invalid transaction data in OpenID4VP (#1073)

* INJIWEB-1887 added error execption for Invalid transaction data in OpenID4VP



* Added payload error exception



* removed call name to keep existing parameter



* Added test cases to cover toOpenId4VpException method



* Refactor OpenID4VPService: rename toOpenId4VpException to openId4VPErrorException and make it private



---------




* feat(openid4vci): add implementation for v1 spec vc download part of inji-web #568 (#1079)

* feat(openid4vci): add implementation for v1 spec vc download

Add test cases



* fix V1 credential request: add proofs JSON mapping, guard blank nonce endpoint on retry



* feat(openid4vci): Split wellknown validator into Draft13 and V1 variants with version-specific ldp_vc validation and List<Map> claims type



* feat(openid4vci): Add Error Response handling for Credential Endpoint



* feat(openid4vci): remove temporary code for mock service part of inji-web #568



* feat(openid4vci): remove unuse imports inji-web #568



* feat(openid4vci): remove unuse imports inji-web #568



* feat(openid4vci): update logs inji-web #568



---------




* docs(mimoto) - technical design documentation update (#1081)

* docs(mimoto) Updated the documentation to have error codes and added details in google integration doc



* docs(mimoto) Addressed code rabbit formatting changes



---------




* fix(issuers-config): Revert Issuers V1 Endpoint attributes (#1085)




* [INJIWEB-1856] - Add Logic for sd-jwt ovp credential matching (#1038) (#1090)

* [INJIWEB-1856] - Add Logic for sd-jwt ovp credential matching

* [INJIWEB-1856] - Add Logic for Algorithm Check

* [INJIWEB-1856] - Add logic to resolve publicClaims and sdClaims in api response

* [INJIWEB-1856] - Remove metadata keys from public claims

* [INJIWEB-1856] - Add null handling scenarios, claims generation logic

* [INJIWEB-1856] - Add logic to handle nested sdClaims

# Conflicts:
#	src/main/java/io/mosip/mimoto/service/impl/VcSdJwtCredentialFormatHandler.java

* [INJIWEB-1856] - Add Junit Test cases

* [INJIWEB-1856] - Update description for claims attribute
Update logic for sdClaims
update Test cases for sdClaims

* [INJIWEB-1856] - Refactor Matches Format logic
Remove hardcoded testdata

* [INJIWEB-1856] - Code refactoring and update test cases

* [INJIWEB-1856] - Update to Constructor Injection replacing Autowired

---------




* fix(openid4vci): update get credential for v1 vcresponse (#1091)




* docs(vci): add design document for OpenID4VCI 1.0 specification support in Inji web wallet (#1075)

* docs(vci): add design document for OpenID4VCI 1.0 specification support in Inji web wallet



* docs(vci): fix lint error on markdown, add placeholders instead of actual credential data, fix interface texts



* docs(vci): update v1 VCDownloadHandler class



* docs(vci): update the design to process only first credential received from the issuer since wallet supports only single proof



* docs(vci): fix grammar issues



---------






* [MOSIP-37808] Updated DB attributes for mimoto




* feat: add spec_version to Verifier (#1093)

* feat: add spec_version to Verifier

- This field indicates the specification version currently followed by the Verifier.
- The default value for this field will be v1



* docs: udpate docs for /verifier api



---------




* feat(openid4vp): present SD-JWT credentials with selective disclosure (#1089)

* injiweb-1855-sd-jwt-ovp add SD-JWT OVP credential presentation with selective disclosure support and fix misleading missingClaims response



* injiweb-1855-sd-jwt-ovp address CR comments — per-format signers, input mutation, typo fix, and test correctness



* injiweb-1855-sd-jwt-ovp address CR comments — alg advertisement, containsKey guard, unchecked cast



* feat(openid4vp): support dc+sd-jwt, per-credential SD-JWT signing, & share no disclosures when selectedSdClaims empty



* docs(openid4vp): harden presentation rejection request schema in API spec



* refactor(openid4vp): sign each VP token format with its own signer



---------




* feat(dpop): add v2 token endpoint with DPoP header passthrough (#1097)

* feat(dpop): add v2 token endpoint that passes the AS error through as-is

Add POST /v2/get-token/{issuer} so the wallet's DPoP (RFC 9449) token
exchange via the mimoto proxy receives the authorization server response
untouched:

- Accept an optional DPoP request header and forward it to the AS token
  endpoint.
- Return the AS response as a raw ResponseEntity<String>, passing the
  status, body and headers (including DPoP-Nonce and WWW-Authenticate)
  through as-is on both success and error, so a use_dpop_nonce challenge
  reaches the wallet for the nonce retry.
- The existing v1 endpoint behaviour is unchanged.



* fix: add NoArgsConstructor to CredentialIssuerConfiguration and explicit PathVariable name in IdpController to fix failing tests



* fix: strip Transfer-Encoding header in getTokenV2 response

Copying upstream response headers including Transfer-Encoding: chunked
caused double chunked encoding when Tomcat also applied its own chunked
encoding, resulting in HTTP 502 from reverse proxies.

Filter out Transfer-Encoding from forwarded headers to fix this.



* fix: strip all hop-by-hop headers in getTokenV2 response

Per RFC 7230, hop-by-hop headers (Transfer-Encoding, Connection,
Keep-Alive, TE, Trailer, Upgrade, Proxy-Authenticate,
Proxy-Authorization) must not be forwarded by proxies.

Previously only Transfer-Encoding was stripped. Now all hop-by-hop
headers are filtered to be fully RFC-compliant.



* revert: restore mosip.mimoto.database.hostname property name

Revert inji.mimoto.database.hostname back to mosip.mimoto.database.hostname
to avoid breaking existing production deployments.



* refactor: extract token response header filtering



* fix: preserve configured issuer token endpoints



* fix: keep default config changes scoped to v2 token endpoint



* fix: address v2 token review comments



* chore(api-test): bump up api test version to 1.6.0



---------




* feat(openid4vp): add OVP 1.0 DCQL wallet presentation support (#1096)

* Added ovp 1.0, dcql support



* Remove selectedSdClaims from SubmitPresentationResponse



* pass trusted verifiers into WalletConfig using library defaults



* resolved claim_sets issue



* restore method comments in WalletPresentationServiceImpl



* test: expand unit tests for DCQL, wallet presentation, session, and OpenID4VP services



* Resolved code rabbit reviews



* Updated the postman collection



* Resolved code rabbit review comments



* fix: update WalletConfig and VPTokenSigningResult for inji-openid4vp



* build: upgrade apitest-commons dependency from 1.5.0-SNAPSHOT to 1.6.0



* refactor: align DCQL matching with inji-openid4vp and OpenID4VP 1.0



* disclose only queried SD claims in DCQL VP response



* refactor: detect DCQL VP requests from dcql_query in authorization request



* Fixed build failure issue



* Removed OVP-0.8.0-Mimoto-Changes.md file



* refactor(openid4vp): address PR review feedback for OVP 1.0 support



* refactor: use StringUtils.isBlank in credential matching validation



---------




* [inji/inji-wallet#2539] Replace MPL License with Apache License 2.0 (#1105)





* Pass GPG_PRIVATE_KEY to maven-build and ignore .github/keys (#1107)

* Pass GPG_PRIVATE_KEY to maven-build and ignore .github/keys



* changed to gpgupdate-masterj21 branch for kattu



* changed to gpgupdate-masterj21 branch for kattu



* Added maven-sonar-analysis-new.yml



* updated push-trigger.yml



* updated push-trigger.yml



---------




* fix: align Maven and CI license metadata with Apache 2.0 (#1110)

* fix: align Maven and CI license metadata with Apache 2.0



* fix: align Maven and CI license metadata with Apache 2.0



* fix: align Maven and CI license metadata with Apache 2.0



---------




* Update InjiVerifyVpRequest test case



* Add acceptVPWithoutHolderProof to InjiVerifyVpRequest template



* Update InjiVerify VP request to match dev-int-inji dcqlQuery body



* Restore clientId input in yml and use {{clientId}} placeholder in hbs



---------

Signed-off-by: Mrudula <mrudula.c@cyberpwn.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>
Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>
Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local>
Signed-off-by: jackjain <jackjain1995@gmail.com>
Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>
Signed-off-by: cyber-titan <saiabhi2309@gmail.com>
Signed-off-by: Sradha Mohanty <mohantysradha10@gmail.com>
Signed-off-by: Nitin Hegde <nitin.k@cyberpwn.com>
Signed-off-by: Madhuravas reddy <madhu@mosip.io>
Signed-off-by: Abhi <abhishek.shankarcs@gmail.com>
Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com>
Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>
Signed-off-by: Mahesh-Binayak <Mahesh-Binayak@users.noreply.github.com>
Signed-off-by: Mrudu-ch <mrudula.c@cyberpwn.com>
Co-authored-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>
Co-authored-by: Roopa Srinivas <roopa.s@thoughtworks.com>
Co-authored-by: Roopa S <roopas@Roopas-MacBook-Pro.local>
Co-authored-by: Jack <jackjain1995@gmail.com>
Co-authored-by: Durgesh Konga <kongadurgesh20@gmail.com>
Co-authored-by: cyber-titan <saiabhi2309@gmail.com>
Co-authored-by: Sradha Mohanty <mohantysradha10@gmail.com>
Co-authored-by: Nitin Hegde <165893206+hegdenitin@users.noreply.github.com>
Co-authored-by: Madhuravas reddy <madhu@mosip.io>
Co-authored-by: Madhuravas reddy <madhu@inji.io>
Co-authored-by: Abhi <abhishek.shankarcs@gmail.com>
Co-authored-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com>
Co-authored-by: abhip2565 <paul.apaul.abhishek.AP@gmail.com>
Co-authored-by: Mahesh-Binayak <76687012+Mahesh-Binayak@users.noreply.github.com>
Co-authored-by: Mahesh-Binayak <Mahesh-Binayak@users.noreply.github.com>

* Fixes: mosip#373 - Updated push-trigger.yml, chart-lint-publish.yml and clear-artifacts.yml files. (#1120)

Signed-off-by: Mohanraj209 <mohan1715@gmail.com>
Co-authored-by: Mohanraj209 <mohanraj209@users.noreply.github.com>

* Updated workflows with new tags (#1122)

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* Add missing 0.21.0-to-0.22.0 and 0.22.0-to-1.0.0 DB upgrade and rollback scripts (#1125)

Signed-off-by: Madhuravas reddy <madhu@mosip.io>

* [DSD-10669] Make required changes for release. (#1126)

Signed-off-by: Swapnil <swapnil.mohanty@technoforte.co.in>

* [DSD-10676] inji-web 1.0.0-alpha.1 post release (#1127)

Signed-off-by: Prafulrakhade <prafulrakhade02@gmail.com>

* Fix compile time error after merge conflicts

Signed-off-by: Swati Goel <swati@inji.io>

---------

Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com>
Signed-off-by: Mahesh-Binayak <Mahesh-Binayak@users.noreply.github.com>
Signed-off-by: Madhuravas reddy <madhu@mosip.io>
Signed-off-by: Mrudula <mrudula.c@cyberpwn.com>
Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com>
Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>
Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local>
Signed-off-by: jackjain <jackjain1995@gmail.com>
Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>
Signed-off-by: cyber-titan <saiabhi2309@gmail.com>
Signed-off-by: Sradha Mohanty <mohantysradha10@gmail.com>
Signed-off-by: Nitin Hegde <nitin.k@cyberpwn.com>
Signed-off-by: Abhi <abhishek.shankarcs@gmail.com>
Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>
Signed-off-by: Mrudu-ch <mrudula.c@cyberpwn.com>
Signed-off-by: Mohanraj209 <mohan1715@gmail.com>
Signed-off-by: Swapnil <swapnil.mohanty@technoforte.co.in>
Signed-off-by: Prafulrakhade <prafulrakhade02@gmail.com>
Signed-off-by: Swati Goel <swati@inji.io>
Co-authored-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com>
Co-authored-by: Mahesh-Binayak <76687012+Mahesh-Binayak@users.noreply.github.com>
Co-authored-by: Mahesh-Binayak <Mahesh-Binayak@users.noreply.github.com>
Co-authored-by: Madhuravas reddy <madhu@mosip.io>
Co-authored-by: Mrudu-ch <mrudula.c@cyberpwn.com>
Co-authored-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>
Co-authored-by: Roopa Srinivas <roopa.s@thoughtworks.com>
Co-authored-by: Roopa S <roopas@Roopas-MacBook-Pro.local>
Co-authored-by: Jack <jackjain1995@gmail.com>
Co-authored-by: Durgesh Konga <kongadurgesh20@gmail.com>
Co-authored-by: cyber-titan <saiabhi2309@gmail.com>
Co-authored-by: Sradha Mohanty <mohantysradha10@gmail.com>
Co-authored-by: Nitin Hegde <165893206+hegdenitin@users.noreply.github.com>
Co-authored-by: Madhuravas reddy <madhu@inji.io>
Co-authored-by: Abhi <abhishek.shankarcs@gmail.com>
Co-authored-by: abhip2565 <paul.apaul.abhishek.AP@gmail.com>
Co-authored-by: Mohan E <mohanraj1715@gmail.com>
Co-authored-by: Mohanraj209 <mohanraj209@users.noreply.github.com>
Co-authored-by: Swapnil <swapnil.mohanty@technoforte.co.in>
Co-authored-by: Praful Rakhade <prafulrakhade02@gmail.com>
Co-authored-by: Swati Goel <swati@inji.io>
…on (#1124)

* feat(openid4vp): add mso_mdoc for 1.0

Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com>

* update mdoc util & building MobileDocument to store

Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com>

* update to store issuerSigned in db

Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com>

* added missing util call

Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com>

* add testcases

Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com>

* add mdcoUtil tests

Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com>

* refactor(openid4vp): use inji-openid4vp alpha.2 with native mso_mdoc support

Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com>

* address code rabbit comment

Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com>

* resync with upstream/develop

Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com>

* update jar versions

Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com>

* fix(mdoc): address review comments on signVPTokens and MsoMdocCredentialFormatHandler

Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com>

---------

Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com>
Signed-off-by: Madhuravas reddy <madhu@mosip.io>
Signed-off-by: Madhuravas reddy <madhu@mosip.io>
…s, indentation, and correct ordering (#1133)

* fix(mdoc): render driving_privileges as indented list items with title case labels and move to end of PDF

Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com>

* refactor(mdoc): move CBOR rendering to template and handle both snake_case and camelCase field names

Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com>

* remove complex field ordering logic from display properties

Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com>

---------

Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com>
…1129)

* docs: enhance Mimoto API documentation with field-level descriptions and structured schemas

Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local>

* docs(mimoto) enhance Mimoto API documentation with field-level descriptions and structured schemas

Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local>

* docs(mimoto) enhance API documnetation by adding schema and detailed field discriptions

Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local>

* fix(mimoto): resolve review comments, add validations, and clean logging

Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local>

* fix: resolve validation issue in CredentialShareController and update tests

Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local>

* chore: remove tracked keystore files

Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local>

* Revert "chore: remove tracked keystore files"

This reverts commit 9b06dd3.

Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local>

* docs(mimoto): revert unintended gitignore changes

Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local>

* docs(mimoto): add field-level descriptions and structured schemas to OpenAPI documentatio

Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com>

* resolve invalid  and missing security scheme errors

Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com>

* refactor(dto): remove redundant Lombok boilerplate across DTOs and models

Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com>

* fix(docs): fix tag definitions, rename tags, and remove invalid endpoints in OpenAPI spec

Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com>

* fix(controller): remove redundant logger field and use imported annotations

Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com>

---------

Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local>
Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com>
Co-authored-by: Roopa S <roopas@Roopas-MacBook-Pro.local>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.