diff --git a/.changeset/backend-delete-invitation.md b/.changeset/backend-delete-invitation.md
deleted file mode 100644
index d2cf179c16b..00000000000
--- a/.changeset/backend-delete-invitation.md
+++ /dev/null
@@ -1,5 +0,0 @@
----
-'@clerk/backend': minor
----
-
-Add `clerkClient.invitations.deleteInvitation(invitationId)`, which permanently deletes an instance invitation and the stored copies of its invitation email. Unlike `revokeInvitation`, this removes the invitation record itself, so it can be used to honor a data erasure request from someone who was invited but never signed up.
diff --git a/.changeset/bright-enterprise-accounts.md b/.changeset/bright-enterprise-accounts.md
deleted file mode 100644
index a845151cc84..00000000000
--- a/.changeset/bright-enterprise-accounts.md
+++ /dev/null
@@ -1,2 +0,0 @@
----
----
diff --git a/.changeset/combined-flow-sso-callback-sign-in-steps.md b/.changeset/combined-flow-sso-callback-sign-in-steps.md
deleted file mode 100644
index 62177f545ba..00000000000
--- a/.changeset/combined-flow-sso-callback-sign-in-steps.md
+++ /dev/null
@@ -1,5 +0,0 @@
----
-'@clerk/ui': patch
----
-
-Fixed `` in the combined sign-in-or-up flow sending users back to the start after an OAuth or SAML redirect when the sign-in still needed a step, such as a Clerk Protect check, a second factor, or a password reset. Sign-ups created from an OAuth sign-in, including after a Protect check, now continue to their remaining steps inside the component.
diff --git a/.changeset/expo-bump-clerk-ios-1-5-8.md b/.changeset/expo-bump-clerk-ios-1-5-8.md
deleted file mode 100644
index 2ae003c36f7..00000000000
--- a/.changeset/expo-bump-clerk-ios-1-5-8.md
+++ /dev/null
@@ -1,5 +0,0 @@
----
-'@clerk/expo': patch
----
-
-Bump the bundled `clerk-ios` SDK from `1.5.7` to `1.5.8`. See the Clerk iOS release: https://github.com/clerk/clerk-ios/releases/tag/1.5.8.
diff --git a/.changeset/fapi-saml-idp-certificates.md b/.changeset/fapi-saml-idp-certificates.md
deleted file mode 100644
index 3d77824f7c7..00000000000
--- a/.changeset/fapi-saml-idp-certificates.md
+++ /dev/null
@@ -1,6 +0,0 @@
----
-'@clerk/shared': minor
-'@clerk/clerk-js': minor
----
-
-SAML enterprise connections can trust several Identity Provider signing certificates at once. `EnterpriseConnection.samlConnection` now includes `idpCertificates`, every trusted certificate with its validity window, and `organization.createEnterpriseConnection()` and `organization.updateEnterpriseConnection()` accept `saml.idpCertificates`, an array that replaces the connection's whole set. The single `saml.idpCertificate` input is deprecated in favor of the array; it keeps working and still replaces the whole set.
diff --git a/.changeset/mosaic-anchored-toast-hidden-anchor.md b/.changeset/mosaic-anchored-toast-hidden-anchor.md
deleted file mode 100644
index a845151cc84..00000000000
--- a/.changeset/mosaic-anchored-toast-hidden-anchor.md
+++ /dev/null
@@ -1,2 +0,0 @@
----
----
diff --git a/.changeset/mosaic-api-keys-search-flake.md b/.changeset/mosaic-api-keys-search-flake.md
deleted file mode 100644
index a845151cc84..00000000000
--- a/.changeset/mosaic-api-keys-search-flake.md
+++ /dev/null
@@ -1,2 +0,0 @@
----
----
diff --git a/.changeset/mosaic-api-keys-table.md b/.changeset/mosaic-api-keys-table.md
deleted file mode 100644
index a845151cc84..00000000000
--- a/.changeset/mosaic-api-keys-table.md
+++ /dev/null
@@ -1,2 +0,0 @@
----
----
diff --git a/.changeset/mosaic-card-banner.md b/.changeset/mosaic-card-banner.md
deleted file mode 100644
index a845151cc84..00000000000
--- a/.changeset/mosaic-card-banner.md
+++ /dev/null
@@ -1,2 +0,0 @@
----
----
diff --git a/.changeset/mosaic-connected-accounts-wire-up.md b/.changeset/mosaic-connected-accounts-wire-up.md
deleted file mode 100644
index a845151cc84..00000000000
--- a/.changeset/mosaic-connected-accounts-wire-up.md
+++ /dev/null
@@ -1,2 +0,0 @@
----
----
diff --git a/.changeset/mosaic-field-horizontal-checkbox.md b/.changeset/mosaic-field-horizontal-checkbox.md
deleted file mode 100644
index a845151cc84..00000000000
--- a/.changeset/mosaic-field-horizontal-checkbox.md
+++ /dev/null
@@ -1,2 +0,0 @@
----
----
diff --git a/.changeset/mosaic-inline-message-motion.md b/.changeset/mosaic-inline-message-motion.md
deleted file mode 100644
index a845151cc84..00000000000
--- a/.changeset/mosaic-inline-message-motion.md
+++ /dev/null
@@ -1,2 +0,0 @@
----
----
diff --git a/.changeset/mosaic-mounted-feedback-messages.md b/.changeset/mosaic-mounted-feedback-messages.md
deleted file mode 100644
index a845151cc84..00000000000
--- a/.changeset/mosaic-mounted-feedback-messages.md
+++ /dev/null
@@ -1,2 +0,0 @@
----
----
diff --git a/.changeset/mosaic-password-checkbox-field.md b/.changeset/mosaic-password-checkbox-field.md
deleted file mode 100644
index a845151cc84..00000000000
--- a/.changeset/mosaic-password-checkbox-field.md
+++ /dev/null
@@ -1,2 +0,0 @@
----
----
diff --git a/.changeset/mosaic-user-button-combined-settings.md b/.changeset/mosaic-user-button-combined-settings.md
deleted file mode 100644
index 14ab61f911e..00000000000
--- a/.changeset/mosaic-user-button-combined-settings.md
+++ /dev/null
@@ -1,5 +0,0 @@
----
-'@clerk/mosaic': patch
----
-
-Update `UserButton` to the latest designs. Combined mode always leads with the account, and the `modePriority` prop is removed. **Settings** opens organization and profile settings, and **Sign out of all accounts** moves into the **Switch account** menu.
diff --git a/.changeset/mosaic-user-profile-account-wireup.md b/.changeset/mosaic-user-profile-account-wireup.md
deleted file mode 100644
index a845151cc84..00000000000
--- a/.changeset/mosaic-user-profile-account-wireup.md
+++ /dev/null
@@ -1,2 +0,0 @@
----
----
diff --git a/.changeset/mosaic-user-profile-api-keys-wire-up.md b/.changeset/mosaic-user-profile-api-keys-wire-up.md
deleted file mode 100644
index a845151cc84..00000000000
--- a/.changeset/mosaic-user-profile-api-keys-wire-up.md
+++ /dev/null
@@ -1,2 +0,0 @@
----
----
diff --git a/.changeset/oauth-token-actor-chain.md b/.changeset/oauth-token-actor-chain.md
deleted file mode 100644
index fad12140721..00000000000
--- a/.changeset/oauth-token-actor-chain.md
+++ /dev/null
@@ -1,5 +0,0 @@
----
-'@clerk/backend': minor
----
-
-Verified OAuth access tokens now expose `act`, the RFC 8693 actor chain, when the token was issued by an OAuth 2.0 Token Exchange. It is available on the `IdPOAuthAccessToken` returned for both opaque and JWT access tokens.
diff --git a/.changeset/olive-rings-repeat.md b/.changeset/olive-rings-repeat.md
deleted file mode 100644
index 891a7760cba..00000000000
--- a/.changeset/olive-rings-repeat.md
+++ /dev/null
@@ -1,5 +0,0 @@
----
-'@clerk/nextjs': patch
----
-
-Remove `https://images.clerkstage.dev` from the default `connect-src` Content Security Policy directive. It is a Clerk-internal storage host that no application connects to. Organization logos are served from `https://img.clerk.com`, which stays in the default.
diff --git a/.changeset/organize-mosaic-internals.md b/.changeset/organize-mosaic-internals.md
deleted file mode 100644
index a845151cc84..00000000000
--- a/.changeset/organize-mosaic-internals.md
+++ /dev/null
@@ -1,2 +0,0 @@
----
----
diff --git a/.changeset/panel-full-width.md b/.changeset/panel-full-width.md
deleted file mode 100644
index a845151cc84..00000000000
--- a/.changeset/panel-full-width.md
+++ /dev/null
@@ -1,2 +0,0 @@
----
----
diff --git a/.changeset/profile-tab-responsiveness.md b/.changeset/profile-tab-responsiveness.md
deleted file mode 100644
index a845151cc84..00000000000
--- a/.changeset/profile-tab-responsiveness.md
+++ /dev/null
@@ -1,2 +0,0 @@
----
----
diff --git a/.changeset/profile-title-picker.md b/.changeset/profile-title-picker.md
deleted file mode 100644
index a845151cc84..00000000000
--- a/.changeset/profile-title-picker.md
+++ /dev/null
@@ -1,2 +0,0 @@
----
----
diff --git a/.changeset/quiet-managed-password.md b/.changeset/quiet-managed-password.md
deleted file mode 100644
index a845151cc84..00000000000
--- a/.changeset/quiet-managed-password.md
+++ /dev/null
@@ -1,2 +0,0 @@
----
----
diff --git a/.changeset/section-chaos-truncation.md b/.changeset/section-chaos-truncation.md
deleted file mode 100644
index a845151cc84..00000000000
--- a/.changeset/section-chaos-truncation.md
+++ /dev/null
@@ -1,2 +0,0 @@
----
----
diff --git a/.changeset/ui-saml-idp-certificates.md b/.changeset/ui-saml-idp-certificates.md
deleted file mode 100644
index 5a71c64118b..00000000000
--- a/.changeset/ui-saml-idp-certificates.md
+++ /dev/null
@@ -1,6 +0,0 @@
----
-'@clerk/ui': minor
-'@clerk/localizations': minor
----
-
-The self-serve SSO configuration (`` enterprise connection page and the `ConfigureSSO` SAML steps) now shows every IdP signing certificate a SAML connection trusts, with its expiry, and lets an admin add certificates from a file (a PEM bundle adds several) or remove one, so an IdP key rotation no longer needs a replacement timed with the IdP. Saving sends the whole list and only when it changed. The list holds at most five certificates. New `configureSSOCertificateList*` and `configureSSOCertificatePrimaryBadge` appearance element descriptors cover the list, and new `configureSSO.signingCertificates.*` localization keys hold its strings.
diff --git a/.changeset/user-button-design-tweaks.md b/.changeset/user-button-design-tweaks.md
deleted file mode 100644
index a845151cc84..00000000000
--- a/.changeset/user-button-design-tweaks.md
+++ /dev/null
@@ -1,2 +0,0 @@
----
----
diff --git a/packages/astro/CHANGELOG.md b/packages/astro/CHANGELOG.md
index 5b279a11fb7..7e82a3c6b52 100644
--- a/packages/astro/CHANGELOG.md
+++ b/packages/astro/CHANGELOG.md
@@ -1,5 +1,13 @@
# @clerk/astro
+## 4.1.10
+
+### Patch Changes
+
+- Updated dependencies [[`2302140`](https://github.com/clerk/javascript/commit/23021401d3ab66bf920ba07be1d7500c4d98a5a9), [`2654caa`](https://github.com/clerk/javascript/commit/2654caaecb9f59d3bd4103a1e12425bc04760260), [`dee649c`](https://github.com/clerk/javascript/commit/dee649c2d6cad6ba543a2433e65707a0d93686df)]:
+ - @clerk/backend@3.23.0
+ - @clerk/shared@4.39.0
+
## 4.1.9
### Patch Changes
diff --git a/packages/astro/package.json b/packages/astro/package.json
index 231996a52f4..002bbe1ab13 100644
--- a/packages/astro/package.json
+++ b/packages/astro/package.json
@@ -1,6 +1,6 @@
{
"name": "@clerk/astro",
- "version": "4.1.9",
+ "version": "4.1.10",
"description": "Clerk SDK for Astro",
"keywords": [
"auth",
diff --git a/packages/backend/CHANGELOG.md b/packages/backend/CHANGELOG.md
index d852f7cf0a9..e174504c8b0 100644
--- a/packages/backend/CHANGELOG.md
+++ b/packages/backend/CHANGELOG.md
@@ -1,5 +1,18 @@
# Change Log
+## 3.23.0
+
+### Minor Changes
+
+- Add `clerkClient.invitations.deleteInvitation(invitationId)`, which permanently deletes an instance invitation and the stored copies of its invitation email. Unlike `revokeInvitation`, this removes the invitation record itself, so it can be used to honor a data erasure request from someone who was invited but never signed up. ([#10034](https://github.com/clerk/javascript/pull/10034)) by [@dominic-clerk](https://github.com/dominic-clerk)
+
+- Verified OAuth access tokens now expose `act`, the RFC 8693 actor chain, when the token was issued by an OAuth 2.0 Token Exchange. It is available on the `IdPOAuthAccessToken` returned for both opaque and JWT access tokens. ([#9929](https://github.com/clerk/javascript/pull/9929)) by [@wyattjoh](https://github.com/wyattjoh)
+
+### Patch Changes
+
+- Updated dependencies [[`2654caa`](https://github.com/clerk/javascript/commit/2654caaecb9f59d3bd4103a1e12425bc04760260)]:
+ - @clerk/shared@4.39.0
+
## 3.22.0
### Minor Changes
diff --git a/packages/backend/package.json b/packages/backend/package.json
index e2db41721e5..6866f6630d9 100644
--- a/packages/backend/package.json
+++ b/packages/backend/package.json
@@ -1,6 +1,6 @@
{
"name": "@clerk/backend",
- "version": "3.22.0",
+ "version": "3.23.0",
"description": "Clerk Backend SDK - REST Client for Backend API & JWT verification utilities",
"homepage": "https://clerk.com/",
"bugs": {
diff --git a/packages/chrome-extension/CHANGELOG.md b/packages/chrome-extension/CHANGELOG.md
index 6fa3a60765b..427497b36cf 100644
--- a/packages/chrome-extension/CHANGELOG.md
+++ b/packages/chrome-extension/CHANGELOG.md
@@ -1,5 +1,15 @@
# Change Log
+## 3.1.91
+
+### Patch Changes
+
+- Updated dependencies [[`7412289`](https://github.com/clerk/javascript/commit/741228949b4b11a593bfd4333ca0c97e0abb60ca), [`2654caa`](https://github.com/clerk/javascript/commit/2654caaecb9f59d3bd4103a1e12425bc04760260), [`a989859`](https://github.com/clerk/javascript/commit/a989859201b5b5dbdbda083740c516090b23e759)]:
+ - @clerk/ui@1.39.0
+ - @clerk/shared@4.39.0
+ - @clerk/clerk-js@6.38.0
+ - @clerk/react@6.17.6
+
## 3.1.90
### Patch Changes
diff --git a/packages/chrome-extension/package.json b/packages/chrome-extension/package.json
index 1a3cde64d63..a92d4fd7777 100644
--- a/packages/chrome-extension/package.json
+++ b/packages/chrome-extension/package.json
@@ -1,6 +1,6 @@
{
"name": "@clerk/chrome-extension",
- "version": "3.1.90",
+ "version": "3.1.91",
"description": "Clerk SDK for Chrome extensions",
"keywords": [
"auth",
diff --git a/packages/clerk-js/CHANGELOG.md b/packages/clerk-js/CHANGELOG.md
index cfb1c496fad..4ac07949759 100644
--- a/packages/clerk-js/CHANGELOG.md
+++ b/packages/clerk-js/CHANGELOG.md
@@ -1,5 +1,16 @@
# Change Log
+## 6.38.0
+
+### Minor Changes
+
+- SAML enterprise connections can trust several Identity Provider signing certificates at once. `EnterpriseConnection.samlConnection` now includes `idpCertificates`, every trusted certificate with its validity window, and `organization.createEnterpriseConnection()` and `organization.updateEnterpriseConnection()` accept `saml.idpCertificates`, an array that replaces the connection's whole set. The single `saml.idpCertificate` input is deprecated in favor of the array; it keeps working and still replaces the whole set. ([#9996](https://github.com/clerk/javascript/pull/9996)) by [@mauricioabreu](https://github.com/mauricioabreu)
+
+### Patch Changes
+
+- Updated dependencies [[`2654caa`](https://github.com/clerk/javascript/commit/2654caaecb9f59d3bd4103a1e12425bc04760260)]:
+ - @clerk/shared@4.39.0
+
## 6.37.0
### Minor Changes
diff --git a/packages/clerk-js/package.json b/packages/clerk-js/package.json
index 743bc593e1c..2e4cb2784de 100644
--- a/packages/clerk-js/package.json
+++ b/packages/clerk-js/package.json
@@ -1,6 +1,6 @@
{
"name": "@clerk/clerk-js",
- "version": "6.37.0",
+ "version": "6.38.0",
"description": "Clerk JS library",
"keywords": [
"clerk",
diff --git a/packages/electron/CHANGELOG.md b/packages/electron/CHANGELOG.md
index 75c0db2cd7c..48a41a27b3f 100644
--- a/packages/electron/CHANGELOG.md
+++ b/packages/electron/CHANGELOG.md
@@ -1,5 +1,14 @@
# @clerk/electron
+## 0.0.51
+
+### Patch Changes
+
+- Updated dependencies [[`2654caa`](https://github.com/clerk/javascript/commit/2654caaecb9f59d3bd4103a1e12425bc04760260)]:
+ - @clerk/shared@4.39.0
+ - @clerk/clerk-js@6.38.0
+ - @clerk/react@6.17.6
+
## 0.0.50
### Patch Changes
diff --git a/packages/electron/package.json b/packages/electron/package.json
index d7e5c06e75c..0d6b9ef0ccc 100644
--- a/packages/electron/package.json
+++ b/packages/electron/package.json
@@ -1,6 +1,6 @@
{
"name": "@clerk/electron",
- "version": "0.0.50",
+ "version": "0.0.51",
"description": "Clerk SDK for Electron",
"keywords": [
"clerk",
diff --git a/packages/expo-passkeys/CHANGELOG.md b/packages/expo-passkeys/CHANGELOG.md
index 27a8261417d..e13cd7d6d8a 100644
--- a/packages/expo-passkeys/CHANGELOG.md
+++ b/packages/expo-passkeys/CHANGELOG.md
@@ -1,5 +1,12 @@
# @clerk/expo-passkeys
+## 2.0.27
+
+### Patch Changes
+
+- Updated dependencies [[`2654caa`](https://github.com/clerk/javascript/commit/2654caaecb9f59d3bd4103a1e12425bc04760260)]:
+ - @clerk/shared@4.39.0
+
## 2.0.26
### Patch Changes
diff --git a/packages/expo-passkeys/package.json b/packages/expo-passkeys/package.json
index 5efd33ea50f..c666dcd0890 100644
--- a/packages/expo-passkeys/package.json
+++ b/packages/expo-passkeys/package.json
@@ -1,6 +1,6 @@
{
"name": "@clerk/expo-passkeys",
- "version": "2.0.26",
+ "version": "2.0.27",
"description": "Passkeys library to be used with Clerk for expo",
"keywords": [
"react-native",
diff --git a/packages/expo/CHANGELOG.md b/packages/expo/CHANGELOG.md
index fdea8149f22..0b2e975e6b1 100644
--- a/packages/expo/CHANGELOG.md
+++ b/packages/expo/CHANGELOG.md
@@ -1,5 +1,16 @@
# Change Log
+## 4.8.1
+
+### Patch Changes
+
+- Bump the bundled `clerk-ios` SDK from `1.5.7` to `1.5.8`. See the Clerk iOS release: https://github.com/clerk/clerk-ios/releases/tag/1.5.8. ([#10027](https://github.com/clerk/javascript/pull/10027)) by [@clerk-cookie](https://github.com/clerk-cookie)
+
+- Updated dependencies [[`2654caa`](https://github.com/clerk/javascript/commit/2654caaecb9f59d3bd4103a1e12425bc04760260)]:
+ - @clerk/shared@4.39.0
+ - @clerk/clerk-js@6.38.0
+ - @clerk/react@6.17.6
+
## 4.8.0
### Minor Changes
diff --git a/packages/expo/package.json b/packages/expo/package.json
index 0bf486583b2..a0587b328fc 100644
--- a/packages/expo/package.json
+++ b/packages/expo/package.json
@@ -1,6 +1,6 @@
{
"name": "@clerk/expo",
- "version": "4.8.0",
+ "version": "4.8.1",
"description": "Clerk React Native/Expo library",
"keywords": [
"react",
diff --git a/packages/express/CHANGELOG.md b/packages/express/CHANGELOG.md
index 6f677f6df99..f53fd2c2146 100644
--- a/packages/express/CHANGELOG.md
+++ b/packages/express/CHANGELOG.md
@@ -1,5 +1,13 @@
# Change Log
+## 2.1.76
+
+### Patch Changes
+
+- Updated dependencies [[`2302140`](https://github.com/clerk/javascript/commit/23021401d3ab66bf920ba07be1d7500c4d98a5a9), [`2654caa`](https://github.com/clerk/javascript/commit/2654caaecb9f59d3bd4103a1e12425bc04760260), [`dee649c`](https://github.com/clerk/javascript/commit/dee649c2d6cad6ba543a2433e65707a0d93686df)]:
+ - @clerk/backend@3.23.0
+ - @clerk/shared@4.39.0
+
## 2.1.75
### Patch Changes
diff --git a/packages/express/package.json b/packages/express/package.json
index 814fa3fd51f..a3522bca4c6 100644
--- a/packages/express/package.json
+++ b/packages/express/package.json
@@ -1,6 +1,6 @@
{
"name": "@clerk/express",
- "version": "2.1.75",
+ "version": "2.1.76",
"description": "Clerk server SDK for usage with Express",
"keywords": [
"clerk",
diff --git a/packages/fastify/CHANGELOG.md b/packages/fastify/CHANGELOG.md
index 68b1c8ee774..2323e22f885 100644
--- a/packages/fastify/CHANGELOG.md
+++ b/packages/fastify/CHANGELOG.md
@@ -1,5 +1,13 @@
# Change Log
+## 3.1.86
+
+### Patch Changes
+
+- Updated dependencies [[`2302140`](https://github.com/clerk/javascript/commit/23021401d3ab66bf920ba07be1d7500c4d98a5a9), [`2654caa`](https://github.com/clerk/javascript/commit/2654caaecb9f59d3bd4103a1e12425bc04760260), [`dee649c`](https://github.com/clerk/javascript/commit/dee649c2d6cad6ba543a2433e65707a0d93686df)]:
+ - @clerk/backend@3.23.0
+ - @clerk/shared@4.39.0
+
## 3.1.85
### Patch Changes
diff --git a/packages/fastify/package.json b/packages/fastify/package.json
index f079ba32f39..117ef5867b7 100644
--- a/packages/fastify/package.json
+++ b/packages/fastify/package.json
@@ -1,6 +1,6 @@
{
"name": "@clerk/fastify",
- "version": "3.1.85",
+ "version": "3.1.86",
"description": "Clerk SDK for Fastify",
"keywords": [
"auth",
diff --git a/packages/hono/CHANGELOG.md b/packages/hono/CHANGELOG.md
index 5c46a7bff44..fc09a5f1f8a 100644
--- a/packages/hono/CHANGELOG.md
+++ b/packages/hono/CHANGELOG.md
@@ -1,5 +1,13 @@
# @clerk/hono
+## 0.1.86
+
+### Patch Changes
+
+- Updated dependencies [[`2302140`](https://github.com/clerk/javascript/commit/23021401d3ab66bf920ba07be1d7500c4d98a5a9), [`2654caa`](https://github.com/clerk/javascript/commit/2654caaecb9f59d3bd4103a1e12425bc04760260), [`dee649c`](https://github.com/clerk/javascript/commit/dee649c2d6cad6ba543a2433e65707a0d93686df)]:
+ - @clerk/backend@3.23.0
+ - @clerk/shared@4.39.0
+
## 0.1.85
### Patch Changes
diff --git a/packages/hono/package.json b/packages/hono/package.json
index 1ef50c3f274..a57ed5f70ee 100644
--- a/packages/hono/package.json
+++ b/packages/hono/package.json
@@ -1,6 +1,6 @@
{
"name": "@clerk/hono",
- "version": "0.1.85",
+ "version": "0.1.86",
"description": "Clerk SDK for Hono",
"keywords": [
"auth",
diff --git a/packages/localizations/CHANGELOG.md b/packages/localizations/CHANGELOG.md
index 574ce04f2ab..720d247d90d 100644
--- a/packages/localizations/CHANGELOG.md
+++ b/packages/localizations/CHANGELOG.md
@@ -1,5 +1,16 @@
# Change Log
+## 4.22.0
+
+### Minor Changes
+
+- The self-serve SSO configuration (`` enterprise connection page and the `ConfigureSSO` SAML steps) now shows every IdP signing certificate a SAML connection trusts, with its expiry, and lets an admin add certificates from a file (a PEM bundle adds several) or remove one, so an IdP key rotation no longer needs a replacement timed with the IdP. Saving sends the whole list and only when it changed. The list holds at most five certificates. New `configureSSOCertificateList*` and `configureSSOCertificatePrimaryBadge` appearance element descriptors cover the list, and new `configureSSO.signingCertificates.*` localization keys hold its strings. ([#10012](https://github.com/clerk/javascript/pull/10012)) by [@mauricioabreu](https://github.com/mauricioabreu)
+
+### Patch Changes
+
+- Updated dependencies [[`2654caa`](https://github.com/clerk/javascript/commit/2654caaecb9f59d3bd4103a1e12425bc04760260)]:
+ - @clerk/shared@4.39.0
+
## 4.21.2
### Patch Changes
diff --git a/packages/localizations/package.json b/packages/localizations/package.json
index 5354c3d4e6c..1673b5edc94 100644
--- a/packages/localizations/package.json
+++ b/packages/localizations/package.json
@@ -1,6 +1,6 @@
{
"name": "@clerk/localizations",
- "version": "4.21.2",
+ "version": "4.22.0",
"description": "Localizations for the Clerk components",
"keywords": [
"react",
diff --git a/packages/mosaic/CHANGELOG.md b/packages/mosaic/CHANGELOG.md
index 28a8a65e678..e60ab530b08 100644
--- a/packages/mosaic/CHANGELOG.md
+++ b/packages/mosaic/CHANGELOG.md
@@ -1,5 +1,14 @@
# @clerk/mosaic
+## 0.1.6
+
+### Patch Changes
+
+- Update `UserButton` to the latest designs. Combined mode always leads with the account, and the `modePriority` prop is removed. **Settings** opens organization and profile settings, and **Sign out of all accounts** moves into the **Switch account** menu. ([#10002](https://github.com/clerk/javascript/pull/10002)) by [@alexcarpenter](https://github.com/alexcarpenter)
+
+- Updated dependencies [[`2654caa`](https://github.com/clerk/javascript/commit/2654caaecb9f59d3bd4103a1e12425bc04760260)]:
+ - @clerk/shared@4.39.0
+
## 0.1.5
### Patch Changes
diff --git a/packages/mosaic/package.json b/packages/mosaic/package.json
index 92669261a63..0540b25f38b 100644
--- a/packages/mosaic/package.json
+++ b/packages/mosaic/package.json
@@ -1,6 +1,6 @@
{
"name": "@clerk/mosaic",
- "version": "0.1.5",
+ "version": "0.1.6",
"description": "Clerk Mosaic UI components",
"keywords": [
"clerk",
diff --git a/packages/msw/CHANGELOG.md b/packages/msw/CHANGELOG.md
index 0ab8f64ac72..b99a31ed3a6 100644
--- a/packages/msw/CHANGELOG.md
+++ b/packages/msw/CHANGELOG.md
@@ -1,5 +1,12 @@
# @clerk/msw
+## 0.0.77
+
+### Patch Changes
+
+- Updated dependencies [[`2654caa`](https://github.com/clerk/javascript/commit/2654caaecb9f59d3bd4103a1e12425bc04760260)]:
+ - @clerk/shared@4.39.0
+
## 0.0.76
### Patch Changes
diff --git a/packages/msw/package.json b/packages/msw/package.json
index 9c9f1cc4c40..75911f7cec2 100644
--- a/packages/msw/package.json
+++ b/packages/msw/package.json
@@ -1,6 +1,6 @@
{
"name": "@clerk/msw",
- "version": "0.0.76",
+ "version": "0.0.77",
"private": true,
"sideEffects": false,
"type": "module",
diff --git a/packages/nextjs/CHANGELOG.md b/packages/nextjs/CHANGELOG.md
index d51ff151640..b16b5a88a21 100644
--- a/packages/nextjs/CHANGELOG.md
+++ b/packages/nextjs/CHANGELOG.md
@@ -1,5 +1,16 @@
# Change Log
+## 7.9.11
+
+### Patch Changes
+
+- Remove `https://images.clerkstage.dev` from the default `connect-src` Content Security Policy directive. It is a Clerk-internal storage host that no application connects to. Organization logos are served from `https://img.clerk.com`, which stays in the default. ([#9898](https://github.com/clerk/javascript/pull/9898)) by [@Grundlefleck](https://github.com/Grundlefleck)
+
+- Updated dependencies [[`2302140`](https://github.com/clerk/javascript/commit/23021401d3ab66bf920ba07be1d7500c4d98a5a9), [`2654caa`](https://github.com/clerk/javascript/commit/2654caaecb9f59d3bd4103a1e12425bc04760260), [`dee649c`](https://github.com/clerk/javascript/commit/dee649c2d6cad6ba543a2433e65707a0d93686df)]:
+ - @clerk/backend@3.23.0
+ - @clerk/shared@4.39.0
+ - @clerk/react@6.17.6
+
## 7.9.10
### Patch Changes
diff --git a/packages/nextjs/package.json b/packages/nextjs/package.json
index faaac8ccad9..6be8a21a0a0 100644
--- a/packages/nextjs/package.json
+++ b/packages/nextjs/package.json
@@ -1,6 +1,6 @@
{
"name": "@clerk/nextjs",
- "version": "7.9.10",
+ "version": "7.9.11",
"description": "Clerk SDK for NextJS",
"keywords": [
"clerk",
diff --git a/packages/nuxt/CHANGELOG.md b/packages/nuxt/CHANGELOG.md
index c470506ca72..b63e49eb6a4 100644
--- a/packages/nuxt/CHANGELOG.md
+++ b/packages/nuxt/CHANGELOG.md
@@ -1,5 +1,14 @@
# @clerk/nuxt
+## 3.1.10
+
+### Patch Changes
+
+- Updated dependencies [[`2302140`](https://github.com/clerk/javascript/commit/23021401d3ab66bf920ba07be1d7500c4d98a5a9), [`2654caa`](https://github.com/clerk/javascript/commit/2654caaecb9f59d3bd4103a1e12425bc04760260), [`dee649c`](https://github.com/clerk/javascript/commit/dee649c2d6cad6ba543a2433e65707a0d93686df)]:
+ - @clerk/backend@3.23.0
+ - @clerk/shared@4.39.0
+ - @clerk/vue@2.5.10
+
## 3.1.9
### Patch Changes
diff --git a/packages/nuxt/package.json b/packages/nuxt/package.json
index aad7cfab039..a9ffb394b49 100644
--- a/packages/nuxt/package.json
+++ b/packages/nuxt/package.json
@@ -1,6 +1,6 @@
{
"name": "@clerk/nuxt",
- "version": "3.1.9",
+ "version": "3.1.10",
"description": "Clerk SDK for Nuxt",
"keywords": [
"clerk",
diff --git a/packages/react-router/CHANGELOG.md b/packages/react-router/CHANGELOG.md
index 3e0962c69f9..5710714fa9d 100644
--- a/packages/react-router/CHANGELOG.md
+++ b/packages/react-router/CHANGELOG.md
@@ -1,5 +1,14 @@
# Change Log
+## 3.6.31
+
+### Patch Changes
+
+- Updated dependencies [[`2302140`](https://github.com/clerk/javascript/commit/23021401d3ab66bf920ba07be1d7500c4d98a5a9), [`2654caa`](https://github.com/clerk/javascript/commit/2654caaecb9f59d3bd4103a1e12425bc04760260), [`dee649c`](https://github.com/clerk/javascript/commit/dee649c2d6cad6ba543a2433e65707a0d93686df)]:
+ - @clerk/backend@3.23.0
+ - @clerk/shared@4.39.0
+ - @clerk/react@6.17.6
+
## 3.6.30
### Patch Changes
diff --git a/packages/react-router/package.json b/packages/react-router/package.json
index eb9747af1d6..1846b883262 100644
--- a/packages/react-router/package.json
+++ b/packages/react-router/package.json
@@ -1,6 +1,6 @@
{
"name": "@clerk/react-router",
- "version": "3.6.30",
+ "version": "3.6.31",
"description": "Clerk SDK for React Router",
"keywords": [
"clerk",
diff --git a/packages/react/CHANGELOG.md b/packages/react/CHANGELOG.md
index 4964595c628..f294cd8ea3a 100644
--- a/packages/react/CHANGELOG.md
+++ b/packages/react/CHANGELOG.md
@@ -1,5 +1,12 @@
# Change Log
+## 6.17.6
+
+### Patch Changes
+
+- Updated dependencies [[`2654caa`](https://github.com/clerk/javascript/commit/2654caaecb9f59d3bd4103a1e12425bc04760260)]:
+ - @clerk/shared@4.39.0
+
## 6.17.5
### Patch Changes
diff --git a/packages/react/package.json b/packages/react/package.json
index b9d6e930c89..5a5f74d1a59 100644
--- a/packages/react/package.json
+++ b/packages/react/package.json
@@ -1,6 +1,6 @@
{
"name": "@clerk/react",
- "version": "6.17.5",
+ "version": "6.17.6",
"description": "Clerk React library",
"keywords": [
"clerk",
diff --git a/packages/shared/CHANGELOG.md b/packages/shared/CHANGELOG.md
index d905a7c6f22..697683c48e0 100644
--- a/packages/shared/CHANGELOG.md
+++ b/packages/shared/CHANGELOG.md
@@ -1,5 +1,11 @@
# Change Log
+## 4.39.0
+
+### Minor Changes
+
+- SAML enterprise connections can trust several Identity Provider signing certificates at once. `EnterpriseConnection.samlConnection` now includes `idpCertificates`, every trusted certificate with its validity window, and `organization.createEnterpriseConnection()` and `organization.updateEnterpriseConnection()` accept `saml.idpCertificates`, an array that replaces the connection's whole set. The single `saml.idpCertificate` input is deprecated in favor of the array; it keeps working and still replaces the whole set. ([#9996](https://github.com/clerk/javascript/pull/9996)) by [@mauricioabreu](https://github.com/mauricioabreu)
+
## 4.38.0
### Minor Changes
diff --git a/packages/shared/package.json b/packages/shared/package.json
index d69b90b0281..a5a29e15e4e 100644
--- a/packages/shared/package.json
+++ b/packages/shared/package.json
@@ -1,6 +1,6 @@
{
"name": "@clerk/shared",
- "version": "4.38.0",
+ "version": "4.39.0",
"description": "Internal package utils used by the Clerk SDKs",
"repository": {
"type": "git",
diff --git a/packages/swingset/CHANGELOG.md b/packages/swingset/CHANGELOG.md
index d46abfb4853..7c77333bd84 100644
--- a/packages/swingset/CHANGELOG.md
+++ b/packages/swingset/CHANGELOG.md
@@ -1,5 +1,14 @@
# @clerk/swingset
+## 0.0.54
+
+### Patch Changes
+
+- Updated dependencies [[`2654caa`](https://github.com/clerk/javascript/commit/2654caaecb9f59d3bd4103a1e12425bc04760260), [`c38c4e6`](https://github.com/clerk/javascript/commit/c38c4e69fd945ca820b60b79dca90f124e2e160f), [`46ff86f`](https://github.com/clerk/javascript/commit/46ff86fd888ed4a28555801ab7757b44c306b75c)]:
+ - @clerk/shared@4.39.0
+ - @clerk/mosaic@0.1.6
+ - @clerk/nextjs@7.9.11
+
## 0.0.53
### Patch Changes
diff --git a/packages/swingset/package.json b/packages/swingset/package.json
index 18b2d7e8e8f..049af102015 100644
--- a/packages/swingset/package.json
+++ b/packages/swingset/package.json
@@ -1,6 +1,6 @@
{
"name": "@clerk/swingset",
- "version": "0.0.53",
+ "version": "0.0.54",
"private": true,
"type": "module",
"scripts": {
diff --git a/packages/tanstack-react-start/CHANGELOG.md b/packages/tanstack-react-start/CHANGELOG.md
index 0b21f3f3143..d4dd2c29155 100644
--- a/packages/tanstack-react-start/CHANGELOG.md
+++ b/packages/tanstack-react-start/CHANGELOG.md
@@ -1,5 +1,14 @@
# @clerk/tanstack-react-start
+## 1.6.5
+
+### Patch Changes
+
+- Updated dependencies [[`2302140`](https://github.com/clerk/javascript/commit/23021401d3ab66bf920ba07be1d7500c4d98a5a9), [`2654caa`](https://github.com/clerk/javascript/commit/2654caaecb9f59d3bd4103a1e12425bc04760260), [`dee649c`](https://github.com/clerk/javascript/commit/dee649c2d6cad6ba543a2433e65707a0d93686df)]:
+ - @clerk/backend@3.23.0
+ - @clerk/shared@4.39.0
+ - @clerk/react@6.17.6
+
## 1.6.4
### Patch Changes
diff --git a/packages/tanstack-react-start/package.json b/packages/tanstack-react-start/package.json
index 6c9173e753f..47f9164f764 100644
--- a/packages/tanstack-react-start/package.json
+++ b/packages/tanstack-react-start/package.json
@@ -1,6 +1,6 @@
{
"name": "@clerk/tanstack-react-start",
- "version": "1.6.4",
+ "version": "1.6.5",
"description": "Clerk SDK for TanStack React Start",
"keywords": [
"clerk",
diff --git a/packages/testing/CHANGELOG.md b/packages/testing/CHANGELOG.md
index 8c33a85b47a..7c0d3d3c6cf 100644
--- a/packages/testing/CHANGELOG.md
+++ b/packages/testing/CHANGELOG.md
@@ -1,5 +1,13 @@
# @clerk/testing
+## 2.2.43
+
+### Patch Changes
+
+- Updated dependencies [[`2302140`](https://github.com/clerk/javascript/commit/23021401d3ab66bf920ba07be1d7500c4d98a5a9), [`2654caa`](https://github.com/clerk/javascript/commit/2654caaecb9f59d3bd4103a1e12425bc04760260), [`dee649c`](https://github.com/clerk/javascript/commit/dee649c2d6cad6ba543a2433e65707a0d93686df)]:
+ - @clerk/backend@3.23.0
+ - @clerk/shared@4.39.0
+
## 2.2.42
### Patch Changes
diff --git a/packages/testing/package.json b/packages/testing/package.json
index 4913465f326..c2eb7e3c62d 100644
--- a/packages/testing/package.json
+++ b/packages/testing/package.json
@@ -1,6 +1,6 @@
{
"name": "@clerk/testing",
- "version": "2.2.42",
+ "version": "2.2.43",
"description": "Utilities to help you create E2E test suites for apps using Clerk",
"keywords": [
"auth",
diff --git a/packages/ui/CHANGELOG.md b/packages/ui/CHANGELOG.md
index 07c56505296..c21c42e5660 100644
--- a/packages/ui/CHANGELOG.md
+++ b/packages/ui/CHANGELOG.md
@@ -1,5 +1,19 @@
# @clerk/ui
+## 1.39.0
+
+### Minor Changes
+
+- The self-serve SSO configuration (`` enterprise connection page and the `ConfigureSSO` SAML steps) now shows every IdP signing certificate a SAML connection trusts, with its expiry, and lets an admin add certificates from a file (a PEM bundle adds several) or remove one, so an IdP key rotation no longer needs a replacement timed with the IdP. Saving sends the whole list and only when it changed. The list holds at most five certificates. New `configureSSOCertificateList*` and `configureSSOCertificatePrimaryBadge` appearance element descriptors cover the list, and new `configureSSO.signingCertificates.*` localization keys hold its strings. ([#10012](https://github.com/clerk/javascript/pull/10012)) by [@mauricioabreu](https://github.com/mauricioabreu)
+
+### Patch Changes
+
+- Fixed `` in the combined sign-in-or-up flow sending users back to the start after an OAuth or SAML redirect when the sign-in still needed a step, such as a Clerk Protect check, a second factor, or a password reset. Sign-ups created from an OAuth sign-in, including after a Protect check, now continue to their remaining steps inside the component. ([#10014](https://github.com/clerk/javascript/pull/10014)) by [@mwickett](https://github.com/mwickett)
+
+- Updated dependencies [[`2654caa`](https://github.com/clerk/javascript/commit/2654caaecb9f59d3bd4103a1e12425bc04760260), [`a989859`](https://github.com/clerk/javascript/commit/a989859201b5b5dbdbda083740c516090b23e759)]:
+ - @clerk/shared@4.39.0
+ - @clerk/localizations@4.22.0
+
## 1.38.1
### Patch Changes
diff --git a/packages/ui/package.json b/packages/ui/package.json
index 0d3b0504c5a..fde767f07bc 100644
--- a/packages/ui/package.json
+++ b/packages/ui/package.json
@@ -1,6 +1,6 @@
{
"name": "@clerk/ui",
- "version": "1.38.1",
+ "version": "1.39.0",
"description": "Internal package that contains the UI components for the Clerk frontend SDKs",
"repository": {
"type": "git",
diff --git a/packages/vue/CHANGELOG.md b/packages/vue/CHANGELOG.md
index ce880e90794..c0b3a175a39 100644
--- a/packages/vue/CHANGELOG.md
+++ b/packages/vue/CHANGELOG.md
@@ -1,5 +1,12 @@
# @clerk/vue
+## 2.5.10
+
+### Patch Changes
+
+- Updated dependencies [[`2654caa`](https://github.com/clerk/javascript/commit/2654caaecb9f59d3bd4103a1e12425bc04760260)]:
+ - @clerk/shared@4.39.0
+
## 2.5.9
### Patch Changes
diff --git a/packages/vue/package.json b/packages/vue/package.json
index dfc2ca2b242..4a2d0a2bec9 100644
--- a/packages/vue/package.json
+++ b/packages/vue/package.json
@@ -1,6 +1,6 @@
{
"name": "@clerk/vue",
- "version": "2.5.9",
+ "version": "2.5.10",
"description": "Clerk SDK for Vue",
"keywords": [
"clerk",