All notable changes to this project will be documented in this file.
The format is based on Keep a Changelog, and this project aims to follow Semantic Versioning.
- Updated
httpartyto>= 0.24, < 0.25to address the SSRF and API-key leakage vulnerability in CVE-2025-68696. - Required
addressable >= 2.9, < 3.0for development to address the URI-template ReDoS vulnerability in CVE-2026-35611.
- Raised the minimum supported Ruby version from 2.1 to 2.7, matching the requirement of the fixed
httpartyrelease line. - Updated development dependency floors for
minitest,rake, andwebmock.
- Added
messages.fetch_message_summaryforGET /api/v2/domains/{domain}/messages/{messageId}/summary. - Added
messages.fetch_message_textforGET /api/v2/domains/{domain}/messages/{messageId}/text. - Added
messages.fetch_message_textplainforGET /api/v2/domains/{domain}/messages/{messageId}/textplain. - Added
messages.fetch_message_texthtmlforGET /api/v2/domains/{domain}/messages/{messageId}/texthtml. - Added
messages.fetch_message_headersforGET /api/v2/domains/{domain}/messages/{messageId}/headers. - Added
messages.stream_domain_messagesforGET /api/v2/domains/{domain}/stream. - Added
messages.stream_inbox_messagesforGET /api/v2/domains/{domain}/stream/{inbox}. - Removed
waitquery parameter frommessages.fetch_sms_messagebecause the endpoint does not support it. - Removed
waitquery parameter frommessages.fetch_inbox. - Fixed
webhooks.private_webhookto include the webhook payload in the request body. - Debugging and test updates.
- Made attachment download tests derive attachment IDs from the attachments list, removing the need for
MAILINATOR_TEST_ATTACHMENT_ID. - Documented that
GET /domains/{domain}/inboxesis covered bymessages.fetch_inboxwithinbox: "*".
- Optional
deletequery parameter support tomessages.fetch_inbox_message. - Inbox-list query parameters to
messages.fetch_sms_message(skip,limit,sort,decode_subject,cursor,full,delete). .env.examplewith Mailinator integration test variables.- Resource-scoped integration test files:
test/authenticators_api_test.rbtest/domains_api_test.rbtest/messages_api_test.rbtest/rules_api_test.rbtest/stats_api_test.rbtest/webhooks_api_test.rb
- Focused query-parameter regression tests in
test/messages_query_params_test.rb.
- Marked all Rules endpoints as deprecated:
client.rules.create_ruleclient.rules.enable_ruleclient.rules.disable_ruleclient.rules.get_all_rulesclient.rules.get_ruleclient.rules.delete_rule
- Marked Domain mutation endpoints as deprecated:
client.domains.create_domainclient.domains.delete_domain
- Added deprecation markers in code (
lib/mailinator_client/rules.rb) and deprecation notices in docs (docs/rules.md,README.md).
- Updated dependency constraints:
- Runtime:
httpartyto>= 0.21, < 0.22(Ruby 2.6-compatible) - Development:
minitest >= 5.25, < 7.0,rake >= 13.0, < 14.0,webmock >= 3.26, < 4.0
- Runtime:
- Updated integration testing structure by splitting the previous monolithic
test/mailinator_client_api_test.rb. - Added
.envloading support intest/test_helper.rb. - Hardened API error handling for non-JSON/empty error responses:
MailinatorClient::ResponseErrornow handlesnilparsed responses safely.Client#requestnow passes raw response body intoResponseError.