Skip to content

Releases: MinBZK/nl-wallet

Wallet 0.5.0

Wallet 0.5.0 Pre-release
Pre-release

Choose a tag to compare

@peterpaul peterpaul released this 27 Mar 16:01

Release date: 27th of March, 2026

We have the following artifacts as a part of this release:

  • wallet-sbom_v0.5.0_generic.zip: The software-bill-of-materials for this
    release.
  • wallet-issuance-server_v0.5.0_x86_64-linux-glibc.zip: The wallet issuance
    server for issuers with migrations binary, for glibc-based Linux systems
    built with Debian trixie.
  • wallet-issuance-server_v0.5.0_x86_64-linux-musl.zip: The wallet issuance
    server for issuers with migrations binary using statically linked musl.
  • wallet-verification-server_v0.5.0_x86_64-linux-glibc.zip: The wallet
    verification server for relying parties with migrations binary, for
    glibc-based Linux systems built with Debian trixie.
  • wallet-verification-server_v0.5.0_x86_64-linux-musl.zip: The wallet
    verification server for relying parties with migrations binary using
    statically linked musl.
  • wallet-web_v0.5.0_generic.zip: The javascript helper library for issuers
    and relying parties, to assist with integrating issuers and relying party
    applications with the wallet platform.

Notes

This is currently a pre-release; as such it may contain issues we're not aware of and might not
contain full documentation for any introduced changes. A pre-release is intended
for testing purposes and is not production ready, use at your discretion.

Changes

See: https://github.com/MinBZK/nl-wallet/blob/v0.5.0/wallet_docs/release-notes/v0.5.0.md

Wallet 0.4.1

Wallet 0.4.1 Pre-release
Pre-release

Choose a tag to compare

@middagj middagj released this 04 Feb 10:16

Release date: 4th of February, 2026

We have the following artifacts as a part of this release:

  • wallet-sbom_v0.4.1_generic.zip: The software-bill-of-materials for this
    release.
  • wallet-issuance-server_v0.4.1_x86_64-linux-glibc.zip: The wallet issuance
    server for issuers with migrations binary, for glibc-based Linux systems
    built with Debian trixie.
  • wallet-issuance-server_v0.4.1_x86_64-linux-musl.zip: The wallet issuance
    server for issuers with migrations binary using statically linked musl.
  • wallet-verification-server_v0.4.1_x86_64-linux-glibc.zip: The wallet
    verification server for relying parties with migrations binary, for
    glibc-based Linux systems built with Debian trixie.
  • wallet-verification-server_v0.4.1_x86_64-linux-musl.zip: The wallet
    verification server for relying parties with migrations binary using
    statically linked musl.
  • wallet-web_v0.4.1_generic.zip: The javascript helper library for issuers
    and relying parties, to assist with integrating issuers and relying party
    applications with the wallet platform.

Notes

This is currently a pre-release; as such it may contain issues we're not aware
of and might not contain full documentation for any introduced changes. A pre-
release is intended for testing purposes and is not production ready, use at
your discretion.

Changes

See: https://github.com/MinBZK/nl-wallet/blob/v0.4.1/wallet_docs/release-notes/v0.4.1.md

Wallet 0.4.0

Wallet 0.4.0 Pre-release
Pre-release

Choose a tag to compare

@middagj middagj released this 17 Dec 19:29

Release date: 17th of December, 2025

We have the following artifacts as a part of this release:

  • wallet-sbom_v0.4.0_generic.zip: The software-bill-of-materials for this
    release.
  • wallet-issuance-server_v0.4.0_x86_64-linux-glibc.zip: The wallet issuance
    server for issuers, for glibc-based Linux systems built with Debian
    trixie.
  • wallet-issuance-server_v0.4.0_x86_64-linux-musl.zip: The wallet issuance
    server for issuers using statically linked musl.
  • wallet-verification-server_v0.4.0_x86_64-linux-glibc.zip: The wallet
    verification server for relying parties, for glibc-based Linux systems
    built with Debian trixie.
  • wallet-verification-server_v0.4.0_x86_64-linux-musl.zip: The wallet
    verification server for relying parties using statically linked musl.
  • wallet-web_v0.4.0_generic.zip: The javascript helper library for issuers
    and relying parties, to assist with integrating issuers and relying party
    applications with the wallet platform.

Notes

This is currently a pre-release; as such it may contain issues we're not aware
of and might not contain full documentation for any introduced changes. A
pre-release is intended for testing purposes and is not production ready, use at
your discretion.

Changes

See: https://github.com/MinBZK/nl-wallet/blob/v0.4.0/wallet_docs/release-notes/v0.4.0.md

Wallet 0.3.0

Wallet 0.3.0 Pre-release
Pre-release

Choose a tag to compare

@middagj middagj released this 26 Jun 14:12

Release date: 26th of June, 2025

We have the following artifacts as a part of this release:

  • wallet-sbom_v0.3.0_generic.zip: The software-bill-of-materials for this
    release.
  • wallet-issuance-server_v0.3.0_x86_64-linux-glibc.zip: The wallet issuance
    server for issuers, for glibc-based Linux systems built with Debian
    bookworm.
  • wallet-issuance-server_v0.3.0_x86_64-linux-musl.zip: The wallet issuance
    server for issuers using statically linked musl.
  • wallet-verification-server_v0.3.0_x86_64-linux-glibc.zip: The wallet
    verification server for relying parties, for glibc-based Linux systems
    built with Debian bookworm.
  • wallet-verification-server_v0.3.0_x86_64-linux-musl.zip: The wallet
    verification server for relying parties using statically linked musl.
  • wallet-web_v0.3.0_generic.zip: The javascript helper library for issuers
    and relying parties, to assist with integrating issuers and relying party
    applications with the wallet platform.

Notes

This is currently a pre-release; as such it may contain issues we're not aware
of and might not contain full documentation for any introduced changes. A
pre-release is intended for testing purposes and is not production ready, use at
your discretion.

Changes

See: https://github.com/MinBZK/nl-wallet/blob/v0.3.0/documentation/release-notes/v0.3.0.md

Wallet 0.2.3

Wallet 0.2.3 Pre-release
Pre-release

Choose a tag to compare

@rubin55 rubin55 released this 09 Dec 14:42

Edit date: 19th of December, 2024

Errata

The docs of wallet_web contain an error in the calculation of the hash of the style.css file. It should've been:

HASH_OF_STYLE_CSS=`cat style.css | tr -d "\n" | openssl sha256 -binary | openssl base64`

Release date: 9th of December, 2024

We have the following artifacts as a part of this release:

  • wallet-sbom_v0.2.3_generic.zip: The software-bill-of-materials for this release
  • wallet-verification-server_v0.2.3_x86_64-linux-glibc.zip: The wallet verification server for relying parties, for glibc-based Linux systems
  • wallet-verification-server_v0.2.3_x86_64-linux-musl.zip: The wallet verification server for relying parties, for musl-libc based Linux systems
  • wallet-web_v0.2.3_generic.zip: The javascript helper library for relying parties, to assist with integrating relying party applications with the wallet platform

Notes

Note that this is a pre-release version. Whilst this version is unit and integration tested, end-to-end tested and validated on our demo environment, it did not yet pass acceptance and pre-production testing. Use at your own discretion!

Known issues

  • On Android, biometric unlock is not disabled after an x amount of failed attempts
  • On Android, biometric unlock cannot be enabled when only face-unlock is configured
  • iOS users with on-demand VPN can get a network connection error on first use of the Wallet app if VPN is not yet connected
  • When a Wallet Provider registration key cannot be created (due to old hardware or emulator), the app reports "something went wrong"
  • Sending the app to the background before initial registration causes the app to crash

Changes

  • Implemented certificate pinning for wallet_provider
  • Store build and version information, log version and listeners
  • Added version number to wallet_web
  • Requesting data from GBA-V according to current autorisatiebesluit
  • Fix for CVE-2024-49761 (ReXML in Ruby)
  • Updated privacy policy
  • Fix for DigiD HTTP trust anchors in issueance given as list
  • Fix for DigiD hoog web2app flow when using Chrome

Wallet 0.2.2

Wallet 0.2.2 Pre-release
Pre-release

Choose a tag to compare

@peterpaul peterpaul released this 25 Oct 16:24

Release date: 25th of October, 2024

We have the following artifacts as a part of this release:

  • wallet-sbom_v0.2.2_generic.zip: The software-bill-of-materials for this release
  • wallet-verification-server_v0.2.2_x86_64-linux-glibc.zip: The wallet verification server for relying parties, for glibc-based Linux systems
  • wallet-verification-server_v0.2.2_x86_64-linux-musl.zip: The wallet verification server for relying parties, for musl-libc based Linux systems
  • wallet-web_v0.2.2_generic.zip: The javascript helper library for relying parties, to assist with integrating relying party applications with the wallet platform

Upgrade Instructions

  • verification_server.toml: The verifier.trust_anchors setting is moved one level up and renamed to issuer_trust_anchors
  • verification_server.toml: Sentry support is removed from the verification_server, so the [sentry] configuration setting is removed
  • verification_server.toml: A new configuration setting reader_trust_anchors has been added, which should contain the trusted CAs that issue reader certificates

Changes

  • Implement change_pin flow in wallet
  • Implement e2e tests for (e2e) testable AC's
  • Support simultaneous reading and writing of encrypted preloaded data
  • Add test data for demo BSNs
  • Add job for encrypting example GBA-V data
  • Focus op onzichtbare elementen
  • Markering kopteksten
  • Add Elf-proef to Bsn
  • Add option to delete single and all preloaded data
  • [App] Kleurcontrast hyperlink
  • Update CI to add RP url to profile Android build
  • Implement web frontend for gba_fetch
  • Once GBA-V fixes their TLS negotiation, remove max_tls_version constraint in gba-hc-converter
  • alerts/vulnerabilities uit OWASP ZAP scans
  • Root/Jailbreak screen is always scrollable
  • Privacy Policy and Terms&Conditions
  • Implement Proof of Association (PoA) during issuance in wallet and WP
  • Add configurable Origin to verification_server
  • Add performance_test to main pipeline
  • Live preloading of BRP data
  • Implement PIN change in wallet core and wallet provider
  • Issue WTE using WP instruction and OpenID4VCI
  • Validate RP and issuer keypairs on wallet server startup
  • Mock relying party Docker image doesn't get release tag
  • Warning in pipeline stage(s) if there are vulnerabilities
  • unexpected errors capture error in panic message
  • Improve Sentry sensitive data handling
  • Improve Sentry sensitive data handling in Flutter
  • Update Ruby to 3.x in CI images
  • Document how we handle logging of possibly privacy-sensitive data to Sentry
  • Minimum requirements in README.md
  • [Improvement] Login - See details button
  • Execute manual e2e tests for release v0.2.2
  • Execute manual performance tests for release v0.2.2
  • Fix e2e introduction privacy & conditions tests
  • Figure out if our served CSP is really a wildcard directive and fix, if needed
  • Fix wallet_web vulnerability in rollup:4.22.1
  • Yanked package futures-util op wallet_core verhelpen
  • Sync Lokalise & update English privacy texts
  • Publication of release v0.2.2
  • Documentatie mbt genereren certificaten niet correct waardoor RPs niet kunnen aansluiten
  • Support Rustls 0.23.10 and up
  • Update mapping documentation
  • Fix UX 3.1 "Personalize" e2e tests after PID content update
  • Update Figma links for v0.2.2
  • Automate wallet web e2e/acceptance test

Wallet 0.2.1

Wallet 0.2.1 Pre-release
Pre-release

Choose a tag to compare

@rubin55 rubin55 released this 25 Sep 15:55

Release date: 23rd of September, 2024

We have the following artifacts as a part of this release:

  • wallet-sbom_v0.2.1_generic.zip: The software-bill-of-materials for this release
  • wallet-verification-server_v0.2.1_x86_64-linux-glibc.zip: The wallet verification server for relying parties, for glibc-based Linux systems
  • wallet-verification-server_v0.2.1_x86_64-linux-musl.zip: The wallet verification server for relying parties, for musl-libc based Linux systems
  • wallet-web_v0.2.1_generic.zip: The javascript helper library for relying parties, to assist with integrating relying party applications with the wallet platform

Note: this release fixes a security issue we discovered in our wallet_web client helper library, which causes the build step to include a copy of the running environment into the target javascript files. You are advised to upgrade to at least v0.2.1 as soon as possible. The issue and the fix can be seen in this diff.

Changes

  • Fix for process.env exposure issue in vite.config.ts
  • Privacy policy messaging updates
  • Corrected request_origin_base_url in RP docs
  • Upgrade to Vite.js 4.22.1
  • Fixes for CVE-2024-45811 and CVE-2024-45812
  • Run e2e tests on JDK 17
  • Split e2e test suites into separate jobs
  • Update root illustration
  • Update sentry_flutter to 8.9.0
  • Fix iOS 16 build
  • Update icon color
  • Fix for scanner orientation bug
  • Shared attributes outline fix
  • Support for generic ECDSA keys in OpenID4VCI
  • Initial implementation of Apple attestation
  • Extract UI automation CI logic to file
  • Documented wallet_web
  • Update to Flutter 3.24.2
  • Initial implementation of change pin
  • Root/Jailbreak detection enabled
  • Do not use JWT for requesting challenges from WP
  • Use UTC instead of Local time internally
  • Added back button
  • Refreshed goldens
  • Handle RUSTSEC-2024-0373
  • Exclude generated code directories from Sonar analysis
  • Update DigID loading states
  • Updated progress-bar
  • Animation play/pause fixes
  • Various biometric improvements
  • Fix duplicate card title announcement
  • Support JWT attestation format
  • Refactor OpenID4VCI to support other attestation formats
  • Fix version setting by release tag for docker image builds

Wallet 0.2.0

Wallet 0.2.0 Pre-release
Pre-release

Choose a tag to compare

@rubin55 rubin55 released this 02 Sep 17:33

Release date: 2nd of September, 2024

This is the first release that also contains release artifacts that are not just the automatically generated source code tarballs. Specifically, we have the following artifacts as a part of this release:

  • wallet-sbom_v0.2.0_generic.zip: The software-bill-of-materials for this release
  • wallet-verification-server_v0.2.0_x86_64-linux-glibc.zip: The wallet verification server for relying parties, for glibc-based Linux systems
  • wallet-verification-server_v0.2.0_x86_64-linux-musl.zip: The wallet verification server for relying parties, for musl-libc based Linux systems
  • wallet-web_v0.2.0_generic.zip: The javascript helper library for relying parties, to assist with integrating relying party applications with the wallet platform

Changes

  • First release with binary artifacts (see below)
  • Synchronized versioning for all components: wallet_core, wallet_app and wallet_web
  • Cleaned up git tags, synchronized version tags in private and public repositories
  • Archived ISO disclosure protocol
  • Various work related to CI/CD and deployment
  • Remove MdocsMap type from mdoc crate
  • Place MdocKeyType::Software behind feature
  • Move SingleKeyRing behind test feature
  • Remove unused method from KeyRing trait
  • Use public version of RDO max
  • Handle DigiD app2app errors
  • Hashes in MRP docker images
  • Update to Flutter 3.24.0
  • Announce when scanner is active
  • Update android-flutter-rust app builder
  • Strip CBOR specifics from JSON serialized attributes
  • Use serde_with for serializing CBOR values into JSON
  • Updated OpenAPI documentation
  • Improve verifier API integration tests
  • Removed unnecessary entries in Cargo.toml
  • Use base64 with padding for encoding CBOR bytes
  • Add issuer CA to disclosed attributes
  • Downgrade activesupport gem to 7.1.4
  • Various accessibility improvements
  • Issuance logging improvements
  • Fix CVE-2024-6783 by upgrading to axios 1.7.5
  • Use local time for WalletEvents
  • Various tiny CSS fixes
  • Do not start challenge transaction before retrieving wallet_user
  • Fix wallet provider transaction bug
  • Performance test stability improvements
  • Reintroduce crisp-edges as fallback for older Firefoxen
  • Fix missing Rust dependencies in SBOM
  • Add wallet_web dependencies to SBOM
  • Binary creation in separate job(s) from Docker image creation
  • Support biometric unlock
  • Add help link to error and confirm stop sections
  • Fix disclosure universal link path
  • Updated Figma links in README.md
  • Fix for Android camera resolution issue

Wallet 0.1.32

Wallet 0.1.32 Pre-release
Pre-release

Choose a tag to compare

@sietseringers sietseringers released this 15 Aug 08:29

Release date: 13th of August 2024

All commits in this release: v0.1.31...v0.1.32

Features

  • Flutter:​
    • UI implementation of 'change pin' flow​
    • Update golden test images​
    • Fix pre-audit accessibility feedback​
    • Update to Flutter 3.24.0 (WIP)​
  • Documentation wallet_server for verification/receiving provisioning​
  • First pre-release verification_server, documentation and wallet_web​
  • English language included in demo RP​

UI tweaks

  • Fix (camera) permission not being requested​
  • Bump Flutter SDK version to 3.22.3​​
  • Update golden tests​​
  • Slow down dashboard transition​​

Other tweaks

  • Update bytes to v1.6.1 and openssl to v0.10.66​
  • Add Cache-Control: 'no-store' to all wallet server endpoints​
  • Check if there already has been a pid issuance when starting a pid issuance​
  • Added frontend requirements, also added extra + updated existing API call examples and responses​
  • Configure sentry for backend services​
  • handle return URL on failure​
  • Remove allow(clippy::map_clone)
  • Revert use of memory-serve crate in MRP​
  • Cargo clippy 1.80.0 fixes​
  • Add status to verifier disclosed_attribute endpoint HTTP error bodies​
  • Send cancelled session error from verifier to Flutter​
  • Fix style mijn_amsterdam demo​
  • Cleanup origins that have been removed in the meantime ​
  • Replace once_cell and lazy_static dependency ​
  • Add configurable structured logging to remaining web servers​​
  • Do not use partner information in PID​​
  • API documentation additions​​
  • Tag docker images with git tag or latest; divide gitlab pipline definition into smaller files​​
  • derive error category​​
  • Step openssl and bytes versions​​
  • Add new app identifiers​​
  • Downgrade bundler ffi dependency​​
  • Add additional logging on wallet config updates​​
  • Re-enable rijksoverheid semantics​​
  • Add missing rules to GitLab CI GBA preload job​​
  • Generate wallet .env file for builds in CI​​
  • Update bundler dependencies​

Wallet 0.1.31

Wallet 0.1.31 Pre-release
Pre-release

Choose a tag to compare

@sietseringers sietseringers released this 15 Aug 08:14

Release date: 23rd of July, 2024

All commits in this release: v0.1.30...v0.1.31

Features

  • Create and use ErrorCategory macro to categorize and send error reports​
  • Add OpenID4VP unit and integation tests​
  • Make session cancelable from web frontend​
  • Add translations to web frontend​
  • Add specialized error screens in app for session expiration​
  • Open return URL in app in case of cancellation or error​
  • Improve e2e tests stability​
  • Improvements and fixes to deployment of PID issuer & GBA attributes converter​

Core​

  • Make verifier status endpoint return UL optionally​
  • IncorrectPin error does not need to be stored in history​
  • Update bytes crate to 1.6.1​
  • Send empty Vec on callbacks on Wallet reset​
  • Parse error bodies from verifier more consistently​

App UI​

  • Update copy & attributes section​
  • Accessibility tweaks​
  • Accessibility feedback​
  • Fix duplicate PID issuance (wallet_app)​
  • Render CancelledSession​
  • Update WalletEventStatus mapper​
  • Update UI of about org CTA​

Web frontend​

  • Remove web-vue and web-svelte​
  • Accessibility wallet web​
  • Explain timed out requests​
  • Fix build order frontend lib​
  • Fix img and font src and CSP hashes​

Tests​

  • Fix issuer name typo in e2e test​
  • Fix test to match updated PID issuer 'displayName'​
  • UC 9.4 e2e tests​
  • UC 3.1 e2e tests​
  • GBA-V to PID integration tests​
  • Handle AddrInUse ErrorKind permissively.​
  • Improve dart test code coverage​
  • Increase dart unit test coverage​

PID issuance​

  • Encode locator designator as resident_house_number​
  • Fix name attributes in PID​