)]}'
{
  "log": [
    {
      "commit": "f1f2556a5dfa59e147d9d47279cc3f7f8a18b433",
      "tree": "a7801715ea36faa12e985bb3b5effba039fb10e3",
      "parents": [
        "572a4c68475d284b34675f45ddbb9c158ef3c2ae"
      ],
      "author": {
        "name": "Rudolf Polzer",
        "email": "rpolzer@google.com",
        "time": "Tue Jul 21 01:58:56 2026 -0700"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Mon Jul 27 22:45:13 2026 -0700"
      },
      "message": "TEST_F(BNTest, ModSqrtInvalid): explain what\u0027s going on.\n\nChange-Id: I00c115920deb732c5ad1605babd994966a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/99127\nReviewed-by: Xiangfei Ding \u003cxfding@google.com\u003e\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\nAuto-Submit: Rudolf Polzer \u003crpolzer@google.com\u003e\nCommit-Queue: Xiangfei Ding \u003cxfding@google.com\u003e\n"
    },
    {
      "commit": "572a4c68475d284b34675f45ddbb9c158ef3c2ae",
      "tree": "ac0c2b9f31226ec2f7e789d44146b0a4df938ec9",
      "parents": [
        "202142f942446208bee09e8bacd5296c069c8813"
      ],
      "author": {
        "name": "Rudolf Polzer",
        "email": "rpolzer@google.com",
        "time": "Wed Jul 08 08:30:16 2026 -0700"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Mon Jul 27 11:54:37 2026 -0700"
      },
      "message": "Preserve comments in perlasm.\n\nThis is needed so we can have copyright comments in generated files.\n\nBug: 503700354\nChange-Id: I82683c6670375e278afdec2c71fb992d6a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98508\nCommit-Queue: Adam Langley \u003cagl@google.com\u003e\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\nAuto-Submit: Rudolf Polzer \u003crpolzer@google.com\u003e\n"
    },
    {
      "commit": "202142f942446208bee09e8bacd5296c069c8813",
      "tree": "75da78711d44fbfce4c3fe338e5bff937a1668a8",
      "parents": [
        "962b9e46c1433e55c2bf950351b14c1296dca219"
      ],
      "author": {
        "name": "Lily Chen",
        "email": "chlily@google.com",
        "time": "Fri Jul 24 20:19:04 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Mon Jul 27 09:20:52 2026 -0700"
      },
      "message": "Documentation: add proper section heading for CRYPTO ByteBuilder\n\nChange-Id: Ie8f19b94151eb2f4ae68ece9756e0f566a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/99547\nAuto-Submit: Lily Chen \u003cchlily@google.com\u003e\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\nCommit-Queue: Adam Langley \u003cagl@google.com\u003e\nCommit-Queue: Lily Chen \u003cchlily@google.com\u003e\n"
    },
    {
      "commit": "962b9e46c1433e55c2bf950351b14c1296dca219",
      "tree": "6983dc1a0fb4eebaee2aa0ffad8823978456b31c",
      "parents": [
        "22a0079b189c391b95689813a41982ce11876f0a"
      ],
      "author": {
        "name": "Xiangfei Ding",
        "email": "xfding@google.com",
        "time": "Thu Jul 23 13:39:10 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Mon Jul 27 02:23:14 2026 -0700"
      },
      "message": "rust: bssl-tls: Relax `set_ca_names` to both parties\n\nPreviously it was only enabled for mutual authentication.\nWe should enable it for any relying parties, regardless of being a\nserver or a client.\n\nSigned-off-by: Xiangfei Ding \u003cxfding@google.com\u003e\nChange-Id: I55c106ea49df05f76395429e357521846a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/99467\nReviewed-by: Rudolf Polzer \u003crpolzer@google.com\u003e\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\n"
    },
    {
      "commit": "22a0079b189c391b95689813a41982ce11876f0a",
      "tree": "bae2d6d14b77a08e2ad7d383fe0b170f514ffd02",
      "parents": [
        "507ad7d4731baa8fadc7cc64d1ea2657e3d78c7f"
      ],
      "author": {
        "name": "Jiewei Qian",
        "email": "qjw@google.com",
        "time": "Fri Jul 24 10:17:47 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Fri Jul 24 03:43:53 2026 -0700"
      },
      "message": "third_party/fiat: mark as Static\n\nBug: 538471522, 538007082\nChange-Id: I48e5c796fc24c31b765dd72759a0a102d941728b\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/99507\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\nAuto-Submit: Jiewei Qian \u003cqjw@google.com\u003e\nCommit-Queue: Jiewei Qian \u003cqjw@google.com\u003e\n"
    },
    {
      "commit": "507ad7d4731baa8fadc7cc64d1ea2657e3d78c7f",
      "tree": "62e637234a4a00c2f60daffe9ac8369cf701bfe3",
      "parents": [
        "f1cac253dff3c58d2230f344de231fae5465a24a"
      ],
      "author": {
        "name": "Rudolf Polzer",
        "email": "divVerent@gmail.com",
        "time": "Thu Jul 23 05:14:46 2026 -0700"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Fri Jul 24 01:02:53 2026 -0700"
      },
      "message": "New target: `run_unit_tests`.\n\n`run_tests` behaves like before. `run_unit_test` skips the SSL tests\nbut runs all else.\n\nBefore:\n- run_tests after clean: 479.89s user 216.00s system 465% cpu 2:29.55 total\n- run_tests only: 263.80s user 155.95s system 416% cpu 1:40.75 total\n\nAfter:\n- run_tests after clean: 475.84s user 212.90s system 481% cpu 2:23.13 total\n- run_tests only: 262.45s user 147.73s system 392% cpu 1:44.60 total\n- run_unit_tests after clean: 384.36s user 65.90s system 578% cpu 1:17.87 total\n- run_unit_tests only: 172.90s user 5.95s system 556% cpu 32.151 total\n\nMarginal improvements even for run_tests because now the SSL\ntest-exclusive parts are compiled in parallel with running the\npregenerate check.\n\nFor comparison,\n`bazel test --nocache_test_results :crypto_test :ssl_test :decrepit_test :pki_test`:\n- tests after clean: 1:35.73 total (slower than `run_unit_tests`)\n- tests only: 31.040 total (comparable to `run_unit_tests`, but lacks\n  pregenerate and Go tests)\n\nChange-Id: I8764f318f8373b5d108b4e1cced4627c6a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/99407\nReviewed-by: Xiangfei Ding \u003cxfding@google.com\u003e\nCommit-Queue: Rudolf Polzer \u003crpolzer@google.com\u003e\n"
    },
    {
      "commit": "f1cac253dff3c58d2230f344de231fae5465a24a",
      "tree": "db346b935389f293f3720cb2bb50afad20b10213",
      "parents": [
        "e375c29c6bda4e85d1fd16f4991fa1429d263635"
      ],
      "author": {
        "name": "Rudolf Polzer",
        "email": "rpolzer@google.com",
        "time": "Mon Jul 20 22:28:26 2026 -0700"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Fri Jul 24 00:52:43 2026 -0700"
      },
      "message": "Reset the error queue in some more typical cases where unit tests intend to fail.\n\nThis brings BoringSSL down to 60 `OPENSSL_PUT_ERROR` statement that seem\nto both append to and create new error queues.\n\nLikely more reduction possible in subsequent CLs.\n\nBug: 42290241\nChange-Id: I6de5c44422f946b0926e5d6a9acac0aa6a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/99067\nReviewed-by: Xiangfei Ding \u003cxfding@google.com\u003e\nCommit-Queue: Rudolf Polzer \u003crpolzer@google.com\u003e\n"
    },
    {
      "commit": "e375c29c6bda4e85d1fd16f4991fa1429d263635",
      "tree": "3098729ce099785b607446803e2a0d167d80eaa7",
      "parents": [
        "d79c2af327e97dcd566bd9231325fc9b06b95177"
      ],
      "author": {
        "name": "Rudolf Polzer",
        "email": "divVerent@gmail.com",
        "time": "Thu Jul 23 06:19:11 2026 -0700"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Fri Jul 24 00:36:41 2026 -0700"
      },
      "message": "Enable thread safety annotations in local bazel builds.\n\nThis is necessary as without this define, Apple\u0027s Clang complains about\ngooglebenchmark\u0027s code:\n\n```\nIn file included from external/google_benchmark+/src/perf_counters.cc:15:\nIn file included from external/google_benchmark+/src/perf_counters.h:27:\nexternal/google_benchmark+/src/mutex.h:79:40: error: mutex \u0027mut_\u0027 is still held at the end of function [-Werror,-Wthread-safety-analysis]\n   79 |   void lock() ACQUIRE() { mut_.lock(); }\n      |                                        ^\nexternal/google_benchmark+/src/mutex.h:79:32: note: mutex acquired here\n   79 |   void lock() ACQUIRE() { mut_.lock(); }\n      |                                ^\nexternal/google_benchmark+/src/mutex.h:80:34: error: releasing mutex \u0027mut_\u0027 that was not held [-Werror,-Wthread-safety-analysis]\n   80 |   void unlock() RELEASE() { mut_.unlock(); }\n      |                                  ^\n2 errors generated.\nTarget //:bssl_bench failed to build\n```\n\nWith this define, googlebenchmark\u0027s code uses its own annotations (here\n`ACQUIRE` and `RELEASE`), which fixes the warnings, making `bazel test\n...` work.\n\nChange-Id: Iefe7e2ce1b48cde096a29854240c98da6a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/99447\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\nCommit-Queue: Rudolf Polzer \u003crpolzer@google.com\u003e\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\n"
    },
    {
      "commit": "d79c2af327e97dcd566bd9231325fc9b06b95177",
      "tree": "456ae2867e787564f37d6d8ba71fe9d181dd7b14",
      "parents": [
        "14947f74999fcb53abec7eba10e088b59566062f"
      ],
      "author": {
        "name": "Xiangfei Ding",
        "email": "xfding@google.com",
        "time": "Thu Jul 23 12:50:17 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Thu Jul 23 07:09:59 2026 -0700"
      },
      "message": "rust: bssl-tls: Fix documentation\n\nSigned-off-by: Xiangfei Ding \u003cxfding@google.com\u003e\nChange-Id: Icc1e1e595f04799fd62a705960a1f5d96a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/99427\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\n"
    },
    {
      "commit": "14947f74999fcb53abec7eba10e088b59566062f",
      "tree": "542e4e264fd1da613139b40799e2d39e351e3b81",
      "parents": [
        "cb82b33315609646b99084afe8812f590ae5e533"
      ],
      "author": {
        "name": "Xiangfei Ding",
        "email": "xfding@google.com",
        "time": "Tue Jul 21 09:43:14 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Thu Jul 23 03:13:45 2026 -0700"
      },
      "message": "rust: bssl-tls: RPK with private key methods\n\nFrom Android feedback, their RPK use case requires off-application key\nsigning, so we should expose this API to them.\n\nUpdate-Note: RPK credential must install its private key delegate at\nconstruction time. The previous API made the installation a no-op.\n\nSigned-off-by: Xiangfei Ding \u003cxfding@google.com\u003e\nChange-Id: I60cfc6bb458872320a54c8df8258fcfd6a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/99188\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\n"
    },
    {
      "commit": "cb82b33315609646b99084afe8812f590ae5e533",
      "tree": "3f47943ddc8928eede1456bfde8085f04bd0df63",
      "parents": [
        "360ca35a3724567abc275c45c1f50c73871bd2d0"
      ],
      "author": {
        "name": "Haowei Wu",
        "email": "haowei@google.com",
        "time": "Wed Jul 22 15:56:27 2026 -0700"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Thu Jul 23 00:29:45 2026 -0700"
      },
      "message": "Add Threads dependency in exported CMake config file\n\nBoringSSL depends on multi-thread library provided by the OS.\nHowever, this dependency is not transitively passed to the project\nthat depends on BoringSSL automatically. We are seeing curl 8.21\nbuild failures on ToT BoringSSL on Windows due to this limitation.\nThis patch address this issue by adding \"Threads\" as a dependency\nin exported CMake config.\n\nChange-Id: I4c6d66ce491eb58efcbba9db44bb86584e1e3205\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/99307\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\n"
    },
    {
      "commit": "360ca35a3724567abc275c45c1f50c73871bd2d0",
      "tree": "a4fae6c997e9a1caea31774db88d0a5976cab3fc",
      "parents": [
        "4901b475d0433dbcc9dc726167d1165c11795cff"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Wed Jul 22 23:51:09 2026 +0200"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Wed Jul 22 15:12:34 2026 -0700"
      },
      "message": "Add CBB_add_u48\n\nChange-Id: Ic1d3507e22b3d88ca5396ad78711628d84a4a38d\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/99287\nCommit-Queue: Matt Mueller \u003cmattm@google.com\u003e\nReviewed-by: Matt Mueller \u003cmattm@google.com\u003e\nAuto-Submit: David Benjamin \u003cdavidben@google.com\u003e\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\n"
    },
    {
      "commit": "4901b475d0433dbcc9dc726167d1165c11795cff",
      "tree": "e6ce5d4eb7751bab5caccc268393599a152b9b16",
      "parents": [
        "bbae15127720290fb1216cf5a933a4bda6abf323"
      ],
      "author": {
        "name": "Rudolf Polzer",
        "email": "rpolzer@google.com",
        "time": "Wed Jul 22 05:27:32 2026 -0700"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Wed Jul 22 06:09:54 2026 -0700"
      },
      "message": "Disable the linux32_sde runner for now.\n\nIt is broken on Linux 7.x until SDE is updated to support its vdso.\n\nBug: 537679390\nChange-Id: I1a71cfa89d9b5d4f18c40820020114f46a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/99267\nAuto-Submit: Rudolf Polzer \u003crpolzer@google.com\u003e\nCommit-Queue: Xiangfei Ding \u003cxfding@google.com\u003e\nReviewed-by: Xiangfei Ding \u003cxfding@google.com\u003e\nCommit-Queue: Rudolf Polzer \u003crpolzer@google.com\u003e\n"
    },
    {
      "commit": "bbae15127720290fb1216cf5a933a4bda6abf323",
      "tree": "bd3ad096d8145cd81bb7b92415cc3841f2896521",
      "parents": [
        "0aaa16d4680db7f8a935585196376988bf337d12"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Sat Jul 18 00:58:03 2026 +0200"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Wed Jul 22 05:38:57 2026 -0700"
      },
      "message": "Enable symbol prefixing for the Bazel build\n\nIt seems folks run into symbol conflicts between OpenSSL and BoringSSL\nin Bazel packages:\nhttps://github.com/bazelbuild/bazel/issues/26827\n\nGiven we have tools for this now, let\u0027s turn this on.\n\nJust use a hardcoded \"bssl_bzl\" prefix because BCR doesn\u0027t let multiple\ncopies of a package get linked at once, so we don\u0027t have to incorporate\na version or anything complex like this.\n\nChange-Id: I2bdce7370418240321c39267750e27af20391b40\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98967\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\nReviewed-by: Rudolf Polzer \u003crpolzer@google.com\u003e\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\n"
    },
    {
      "commit": "0aaa16d4680db7f8a935585196376988bf337d12",
      "tree": "4c478b28227172b853c7d443368c4ab929851739",
      "parents": [
        "7696648b522a5171094b701114d01b63352d4d1f"
      ],
      "author": {
        "name": "Xiangfei Ding",
        "email": "xfding@google.com",
        "time": "Sat Jul 18 19:47:58 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Tue Jul 21 09:27:52 2026 -0700"
      },
      "message": "ssl: Use default ALPN handler\n\nThis default ALPN handler is called when ALPN protocols are configured\nwithout a ALPN selection callback on a server.\n\nUpdate-Note: Calling `SSL_CTX_set_alpn_protos` or `SSL_set_alpn_protos`\nwithout calling `SSL_CTX_set_alpn_select_cb` will no longer fail ALPN\nanymore. Instead, the protocol will be picked by walking down the client\nprotocol list.\n\nBug: 411171274\n\nSigned-off-by: Xiangfei Ding \u003cxfding@google.com\u003e\nChange-Id: I81cb3820c7aa1f97fe90fd7c7fe5b4616a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98987\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\n"
    },
    {
      "commit": "7696648b522a5171094b701114d01b63352d4d1f",
      "tree": "4b0e3abc0ca91e0260fcbf72f27defe7e9a4b371",
      "parents": [
        "dc3d50478497bec7ee396f9eb9614c0899fd9f37"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Tue Jul 21 17:00:20 2026 +0200"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Tue Jul 21 08:20:57 2026 -0700"
      },
      "message": "Fix typo in doc\n\nChange-Id: I40fbb1c74aa843ab084ca924d39af0259957d5c4\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/99187\nCommit-Queue: Lily Chen \u003cchlily@google.com\u003e\nAuto-Submit: David Benjamin \u003cdavidben@google.com\u003e\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\nReviewed-by: Lily Chen \u003cchlily@google.com\u003e\n"
    },
    {
      "commit": "dc3d50478497bec7ee396f9eb9614c0899fd9f37",
      "tree": "f9469d40cfad9cd27ca959ba80faf7e931fa61c2",
      "parents": [
        "07e0c573d78357ac6fd1734ace0f177467aff576"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Tue Jul 21 16:56:06 2026 +0200"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Tue Jul 21 08:19:33 2026 -0700"
      },
      "message": "Fix notes on the SDE version on CI\n\nI apparently forgot to update it in\nhttps://boringssl-review.googlesource.com/c/boringssl/+/77347\n\nChange-Id: I7155cf8e430c6c68bcf7995d3f11fbb4248c2bbd\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/99167\nReviewed-by: Rudolf Polzer \u003crpolzer@google.com\u003e\nReviewed-by: Lily Chen \u003cchlily@google.com\u003e\nCommit-Queue: Rudolf Polzer \u003crpolzer@google.com\u003e\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\nAuto-Submit: David Benjamin \u003cdavidben@google.com\u003e\nCommit-Queue: Lily Chen \u003cchlily@google.com\u003e\n"
    },
    {
      "commit": "07e0c573d78357ac6fd1734ace0f177467aff576",
      "tree": "197066a352217bfe14404a421e6eae6967101b56",
      "parents": [
        "498ebe9b38d14f0adbf9da1b3829d9ba98a360bc"
      ],
      "author": {
        "name": "Rudolf Polzer",
        "email": "rpolzer@google.com",
        "time": "Mon Jul 20 05:25:41 2026 -0700"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Tue Jul 21 01:53:23 2026 -0700"
      },
      "message": "Test runner: when stdout is redirected, assume -pipe.\n\nChange-Id: Ib4ecc1008ffdc40332d567fce6d6cecd6a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/99027\nCommit-Queue: Rudolf Polzer \u003crpolzer@google.com\u003e\nReviewed-by: Xiangfei Ding \u003cxfding@google.com\u003e\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\n"
    },
    {
      "commit": "498ebe9b38d14f0adbf9da1b3829d9ba98a360bc",
      "tree": "0d2705db30723d7d84cc7d842d967494fb8e4931",
      "parents": [
        "7b4784a3de4a7699d7e18886d9cf3b700fe4c718"
      ],
      "author": {
        "name": "Xiangfei Ding",
        "email": "xfding@google.com",
        "time": "Mon Jul 20 14:27:31 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Tue Jul 21 01:19:18 2026 -0700"
      },
      "message": "rust: bssl-tls-tokio: Remove DTLS convenience wrappers\n\nSimilarly, as we have decided to unwind DTLS before a better design\nemerges, we will keep DTLS support unstaged.\n\nSigned-off-by: Xiangfei Ding \u003cxfding@google.com\u003e\nChange-Id: I3e40c9d6cd1294a1f340b0bb4385edb86a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/99087\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\n"
    },
    {
      "commit": "7b4784a3de4a7699d7e18886d9cf3b700fe4c718",
      "tree": "cc94ed0e0c3d6c87adca74abe22a1d7d8e76dd38",
      "parents": [
        "e06e0ab4dead084b9269c8646fbdbe951cd3a21b"
      ],
      "author": {
        "name": "Rudolf Polzer",
        "email": "rpolzer@google.com",
        "time": "Fri Jul 17 02:24:25 2026 -0700"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Mon Jul 20 23:53:17 2026 -0700"
      },
      "message": "Reset the error queue in some typical cases where unit tests intend to fail.\n\nBug: 42290241\nChange-Id: I7c3a90bae8281d465526e5eb89a26bf86a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98947\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\nCommit-Queue: Rudolf Polzer \u003crpolzer@google.com\u003e\n"
    },
    {
      "commit": "e06e0ab4dead084b9269c8646fbdbe951cd3a21b",
      "tree": "07da7e589ead2d5c1e8a08bd34ace185d11bea87",
      "parents": [
        "922c15f36cc75db5af33c46f9ea8934553fb808e"
      ],
      "author": {
        "name": "Rudolf Polzer",
        "email": "rpolzer@google.com",
        "time": "Mon Jul 20 01:04:50 2026 -0700"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Mon Jul 20 23:12:54 2026 -0700"
      },
      "message": "Add an ErrorsAreAndClear test helper.\n\nUsage:\n\n```\nEXPECT_TRUE(ErrorsAreAndClear({ERR_LIB_EVP, std::nullopt},\n                              {std::nullopt, ERR_R_MALLOC_FAILURE});\n```\n\nwhere `nullopt`s are wildcards.\n\nBug: 42290241\nChange-Id: Id4eeb543bd9130e4ae75d185fbe7ce396a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/99007\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\nCommit-Queue: Rudolf Polzer \u003crpolzer@google.com\u003e\n"
    },
    {
      "commit": "922c15f36cc75db5af33c46f9ea8934553fb808e",
      "tree": "6b516f79ff5ec4b1dae01a58a287f32650019909",
      "parents": [
        "b7e3dca32fd392c595bdaf38f6b760a19c4f71b2"
      ],
      "author": {
        "name": "Xiangfei Ding",
        "email": "xfding@google.com",
        "time": "Mon Jul 06 14:53:45 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Fri Jul 17 00:16:24 2026 -0700"
      },
      "message": "rust: bssl-tls: Add cipher type\n\nBug: 479599893\nSigned-off-by: Xiangfei Ding \u003cxfding@google.com\u003e\nChange-Id: I0805b41e484c585a6f917f39ed168f816a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98793\nReviewed-by: Rudolf Polzer \u003crpolzer@google.com\u003e\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\n"
    },
    {
      "commit": "b7e3dca32fd392c595bdaf38f6b760a19c4f71b2",
      "tree": "ca36ac40e278f21e2772e812ede43373e8b8b02c",
      "parents": [
        "1f61423350a32ee70ae4af597782fd0187615828"
      ],
      "author": {
        "name": "Xiangfei Ding",
        "email": "xfding@google.com",
        "time": "Mon Jul 13 12:23:54 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Thu Jul 16 23:49:02 2026 -0700"
      },
      "message": "rust: bssl-tls: Simplify the tests\n\nLet us move some common configurations out and share it between other tests.\n\nSigned-off-by: Xiangfei Ding \u003cxfding@google.com\u003e\nChange-Id: I2fb65a0f0b025c620708561f068b84ff6a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98796\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\n"
    },
    {
      "commit": "1f61423350a32ee70ae4af597782fd0187615828",
      "tree": "beea126e82fac6171a1affb18808c28e70a72632",
      "parents": [
        "b5c9208d22921feba3be4b3e84a0b24df0520e58"
      ],
      "author": {
        "name": "Xiangfei Ding",
        "email": "xfding@google.com",
        "time": "Thu Jul 16 20:32:16 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Thu Jul 16 23:44:38 2026 -0700"
      },
      "message": "rust: bssl-tls: Make building a new connection builder infallible\n\nFrom the fallout of unstaging compliance policy, we actually should make\nthe constructors infallible.\n\nUpdate-Note: when constructing connection builder from context objects,\nthe operation becomes infallible.\n\nSigned-off-by: Xiangfei Ding \u003cxfding@google.com\u003e\nChange-Id: I9898799c3b3f04405bbf07ab4881a2486a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98927\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\n"
    },
    {
      "commit": "b5c9208d22921feba3be4b3e84a0b24df0520e58",
      "tree": "82dc55f4d8f2f2f8a1afbf55f20b4819c6e98f86",
      "parents": [
        "b08e6f859a7ce6aa406bbdcf56bb7ba8272c1a89"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Sat Jun 13 16:33:32 2026 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Thu Jul 16 15:01:36 2026 -0700"
      },
      "message": "Add EVP-level RSAPublicKey and RSAPrivateKey parsers\n\nBug: 42290408\nChange-Id: Ifdba804ac07b60edc936a29820295ae94e13e06c\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98747\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\nReviewed-by: Lily Chen \u003cchlily@google.com\u003e\n"
    },
    {
      "commit": "b08e6f859a7ce6aa406bbdcf56bb7ba8272c1a89",
      "tree": "372e6c374ab460a231f02766c67d4ed379b602cf",
      "parents": [
        "6fb1c4b18dffa2fa7cc6b42ebb0b9e5373c283c0"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Fri Jul 10 00:13:17 2026 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Thu Jul 16 15:01:30 2026 -0700"
      },
      "message": "Add some EVP APIs for low-level EC point and scalar formats\n\nI haven\u0027t yet done ECPrivateKey. That one is a bit hairy since it is two\nformats in one.\n\nBug: 42290408\nChange-Id: Ie579392f5df34c221f79879fa468b930a692e196\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98730\nReviewed-by: Lily Chen \u003cchlily@google.com\u003e\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\n"
    },
    {
      "commit": "6fb1c4b18dffa2fa7cc6b42ebb0b9e5373c283c0",
      "tree": "ea1c896071d7dd7de2fa384ca8085715cd005d70",
      "parents": [
        "12b1b6262458d39b697fbaa7223058a616f473cd"
      ],
      "author": {
        "name": "Xiangfei Ding",
        "email": "xfding@google.com",
        "time": "Thu Jul 16 17:10:32 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Thu Jul 16 13:24:16 2026 -0700"
      },
      "message": "rust: bssl-tls: Unstage compliance policy\n\nThis API may undergo another redesign internally.\nGiven the uncertainty we would like to unstage this feature until the\ndesign is stabilised.\n\nUpdate-Note: Due to low demand and the need for redesigning the\ncompliance policy interface, we will stop accepting the policy values\nwhen a connection is constructed.\n\nSigned-off-by: Xiangfei Ding \u003cxfding@google.com\u003e\nChange-Id: If47dec3b1700202343b9d72c39f9acf76a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98908\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\n"
    },
    {
      "commit": "12b1b6262458d39b697fbaa7223058a616f473cd",
      "tree": "bddd41aae3ab6a09b034098e57b31b34e8284492",
      "parents": [
        "900fd15551624e4e50cdce49c42e1a622a4f63a8"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Fri Jul 10 14:21:59 2026 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Thu Jul 16 10:29:31 2026 -0700"
      },
      "message": "Revamp evp_test key import\n\nIn preparation for adding other input formats, but wanting to still be\nable to test going in between formats, rework the key import setup.\n\nThe idea now is that each block describes a single key and contains\neverything we might know about the key. From these, we apply every\nimport we have, and every export we have, and check that everything\ncrosses each other.\n\nWe already mostly do this, but we privilege PKCS8 and SPKI somewhat.\nInstead, have the driver be aware of which formats produce public and\nprivate keys and set test expectations accordingly.\n\nBug: 42290408\nChange-Id: I50eb42fb152efc01c03737cac6ae7a22dd284ec8\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98729\nCommit-Queue: Lily Chen \u003cchlily@google.com\u003e\nAuto-Submit: David Benjamin \u003cdavidben@google.com\u003e\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\nReviewed-by: Lily Chen \u003cchlily@google.com\u003e\n"
    },
    {
      "commit": "900fd15551624e4e50cdce49c42e1a622a4f63a8",
      "tree": "60b3e0a5807299c67deca97cc1e8f2470873b94a",
      "parents": [
        "0934f4a1f929f11cd3a420ac47641aa8fd584552"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Thu Jul 16 01:50:53 2026 +0200"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Thu Jul 16 09:11:48 2026 -0700"
      },
      "message": "draft-ietf-tls-keylogfile is now RFC 9850\n\nWe have one mismatch that I can see, but I\u0027ve filed crbug.com/535328567\nfor that.\n\nChange-Id: I1a5d1f2d2331ed1f7ec7dea475cc4467c3d80697\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98867\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\nAuto-Submit: David Benjamin \u003cdavidben@google.com\u003e\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\n"
    },
    {
      "commit": "0934f4a1f929f11cd3a420ac47641aa8fd584552",
      "tree": "0316485137576a813ce65ba221e5846e647f83f1",
      "parents": [
        "5f1b929498f4de61099db3e89f8764c1b858b319"
      ],
      "author": {
        "name": "Guillaume Endignoux",
        "email": "guillaumee@google.com",
        "time": "Wed Jul 15 13:00:44 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Thu Jul 16 04:59:04 2026 -0700"
      },
      "message": "Export SLHDSA_generate_key_from_seed to the public API.\n\nChange-Id: Id967a4512e0b0759d3828e23becd6cce86be1044\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98847\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\nReviewed-by: Xiangfei Ding \u003cxfding@google.com\u003e\nCommit-Queue: Guillaume Endignoux \u003cguillaumee@google.com\u003e\n"
    },
    {
      "commit": "5f1b929498f4de61099db3e89f8764c1b858b319",
      "tree": "5b479a744a73b9053ac5854a71a810f824647125",
      "parents": [
        "b49c9c9c3365dd1048c99276265c9a906474aa1e"
      ],
      "author": {
        "name": "Xiangfei Ding",
        "email": "xfding@google.com",
        "time": "Sun Apr 12 11:43:45 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Thu Jul 16 01:36:45 2026 -0700"
      },
      "message": "rust: bssl-tls: Add convenient adapters\n\nThis patch provies convenience to match rustls when the socket\nconfiguration is very simple.\n\nBug: 479599893\nSigned-off-by: Xiangfei Ding \u003cxfding@google.com\u003e\nChange-Id: Ibf8f7fc7c6de5138eaabf34910213e3f6a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/92469\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\n"
    },
    {
      "commit": "b49c9c9c3365dd1048c99276265c9a906474aa1e",
      "tree": "ff9b9014fb840e8bd5a30c3fba9dd767f3b886d0",
      "parents": [
        "9134af991b3440140812a0c1bd466cd92b9e19ec"
      ],
      "author": {
        "name": "Xiangfei Ding",
        "email": "xfding@google.com",
        "time": "Wed Jul 08 13:49:09 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Thu Jul 16 01:04:17 2026 -0700"
      },
      "message": "rust: bssl-tls: Refactor the stack iterator\n\nAs we need to add more stack iterators with different element types,\nwe need to generalise the current iterator and reuse some of the code.\n\nSigned-off-by: Xiangfei Ding \u003cxfding@google.com\u003e\nChange-Id: I44de3afa40fac49bf188c9f71cf0b5f96a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98792\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\n"
    },
    {
      "commit": "9134af991b3440140812a0c1bd466cd92b9e19ec",
      "tree": "00f3a6e061d9048d2c496ce6755807152092f94e",
      "parents": [
        "9873b90e4cf52abab8942cbd0ed1bc5d12110d27"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Fri Jul 10 17:34:12 2026 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Wed Jul 15 14:37:37 2026 -0700"
      },
      "message": "Use EVP_PKEY_generate_from_alg in tool/server.cc\n\nSlightly fewer steps.\n\nChange-Id: Id71e613a159d8421700785cd833f0d5bbc3de838\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98731\nReviewed-by: Lily Chen \u003cchlily@google.com\u003e\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\n"
    },
    {
      "commit": "9873b90e4cf52abab8942cbd0ed1bc5d12110d27",
      "tree": "cd94cb911629963417785c9f4ef9a17c3a56cefc",
      "parents": [
        "005916d74d9e44cef89657fa6f910a368a027b23"
      ],
      "author": {
        "name": "Xiangfei Ding",
        "email": "xfding@google.com",
        "time": "Tue Jul 14 18:59:21 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Wed Jul 15 00:13:42 2026 -0700"
      },
      "message": "rust: bssl-tls: Introduce non-X.509 mode\n\nThis allows the clients to use a more memory-efficient connection handle\nat the cost of implementing its own certificate verifier.\n\nSigned-off-by: Xiangfei Ding \u003cxfding@google.com\u003e\nChange-Id: I3a86dd9d975239d3b6807c808328eb936a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98807\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\n"
    },
    {
      "commit": "005916d74d9e44cef89657fa6f910a368a027b23",
      "tree": "054e635b08137ac042720c775bc0956b9aa8c17e",
      "parents": [
        "4c637670c65c3fab243735986aa59198b1d15263"
      ],
      "author": {
        "name": "Xiangfei Ding",
        "email": "xfding@google.com",
        "time": "Tue Jul 14 20:29:39 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Tue Jul 14 14:20:01 2026 -0700"
      },
      "message": "ssl: Release the names if `SSL_set0_CA_names` is called after config is shed\n\nSigned-off-by: Xiangfei Ding \u003cxfding@google.com\u003e\nChange-Id: Ic400a3e9c25aa7b3f62aa7e6f3b265296a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98827\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\n"
    },
    {
      "commit": "4c637670c65c3fab243735986aa59198b1d15263",
      "tree": "779cdab196c7c04ac1d60313bb77d7c99d806b38",
      "parents": [
        "e21b22970c1bde76739178695d5f7c9a4158ac67"
      ],
      "author": {
        "name": "Xiangfei Ding",
        "email": "xfding@google.com",
        "time": "Wed Jul 08 11:40:54 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Tue Jul 14 13:53:13 2026 -0700"
      },
      "message": "rust: bssl-tls: Add controls for CAs\n\nBug: 479599893\nSigned-off-by: Xiangfei Ding \u003cxfding@google.com\u003e\nChange-Id: I2b58066e499d157b7dce1560b2f161f76a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98791\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\n"
    },
    {
      "commit": "e21b22970c1bde76739178695d5f7c9a4158ac67",
      "tree": "997b67f867c689b9a4eda40bd2434a913edc2424",
      "parents": [
        "874078be9ac6fc2de6eff2f3147cd3cc839ccac2"
      ],
      "author": {
        "name": "Xiangfei Ding",
        "email": "xfding@google.com",
        "time": "Thu Jul 09 08:46:46 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Tue Jul 14 13:29:18 2026 -0700"
      },
      "message": "rust: bssl-tls: Make getting internal handle for us easier\n\nThis will simplify the code a bit.\n\nSigned-off-by: Xiangfei Ding \u003cxfding@google.com\u003e\nChange-Id: I45c11a5d798df453d71858ab6f1410196a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98790\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\n"
    },
    {
      "commit": "874078be9ac6fc2de6eff2f3147cd3cc839ccac2",
      "tree": "232c60cce67c538167a96a235d496cf41f7a1722",
      "parents": [
        "a6dc504b521b7cdf4823b9ead0b6d4aded3e5384"
      ],
      "author": {
        "name": "Xiangfei Ding",
        "email": "xfding@google.com",
        "time": "Thu Jul 09 08:57:33 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Tue Jul 14 13:05:47 2026 -0700"
      },
      "message": "rust: bssl-tls: Move DTLS methods into the correct typestate\n\n\nUpdate-Note: previously dtlsv1_handle_timeout and dtlsv1_get_timeout\nare incorrectly associated with connections under all modes. This is a\ndesign error and they have moved into the correct typestate to prevent\nmisuses.\n\nSigned-off-by: Xiangfei Ding \u003cxfding@google.com\u003e\nChange-Id: I0b3aafa6b97345eda994dbbc882edd506a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98789\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\n"
    },
    {
      "commit": "a6dc504b521b7cdf4823b9ead0b6d4aded3e5384",
      "tree": "e833d88b21bc3179f33383b369d4cde4f4bafa05",
      "parents": [
        "09d9b7e1fa199450ef8d8561cc1c2187d9db9402"
      ],
      "author": {
        "name": "Xiangfei Ding",
        "email": "xfding@google.com",
        "time": "Thu Jul 09 12:23:58 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Tue Jul 14 13:05:42 2026 -0700"
      },
      "message": "rust: bssl-tls: Add missing SSL error codes\n\nBug: 504987865\nSigned-off-by: Xiangfei Ding \u003cxfding@google.com\u003e\nChange-Id: I1173f74cab602c76b0605c30032608d06a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98788\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\n"
    },
    {
      "commit": "09d9b7e1fa199450ef8d8561cc1c2187d9db9402",
      "tree": "83444fc285e0be65dc42bb53534b095fe03b963c",
      "parents": [
        "ec64f976c02851ed616f732054caaf6455d4ce4f"
      ],
      "author": {
        "name": "Xiangfei Ding",
        "email": "xfding@google.com",
        "time": "Mon Jul 13 09:04:53 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Tue Jul 14 13:05:35 2026 -0700"
      },
      "message": "rust: bssl-tls: Do not provide the TlsSession example\n\nWe are not ready for this so far, because the callback to receive a\nworking session has not landed.\n\nSigned-off-by: Xiangfei Ding \u003cxfding@google.com\u003e\nChange-Id: Ib55ea91356bde42ed59063a31fa8e14c6a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98787\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\n"
    },
    {
      "commit": "ec64f976c02851ed616f732054caaf6455d4ce4f",
      "tree": "4b572eee4d6b07eb12eb1885211929280d57d698",
      "parents": [
        "8aacd0c97fb1f06c8d10e0a6ab034cd4c4d102b4"
      ],
      "author": {
        "name": "Ivan Petrov",
        "email": "ivanpetrov@google.com",
        "time": "Tue Jul 14 17:13:38 2026 +0100"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Tue Jul 14 12:17:15 2026 -0700"
      },
      "message": "rust/bssl-tls: Expose set_tlsext_host_name to support client SNI.\n\nExposes the SSL_set_tlsext_host_name FFI function on TlsConnectionInHandshake, allowing clients to configure Server Name Indication (SNI) prior to handshake completion.\n\nChange-Id: If465528cfa4a1ad286a8d50d7e492e22bde52196\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98798\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\nReviewed-by: Xiangfei Ding \u003cxfding@google.com\u003e\nCommit-Queue: Xiangfei Ding \u003cxfding@google.com\u003e\n"
    },
    {
      "commit": "8aacd0c97fb1f06c8d10e0a6ab034cd4c4d102b4",
      "tree": "9dd6a5db60c258de4dbd3842c2e8c793268fdc05",
      "parents": [
        "1af892192c15bf23dc8946547c4326ff5397027d"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Fri Jul 10 00:11:00 2026 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Mon Jul 13 06:11:56 2026 -0700"
      },
      "message": "Use scopers in CBB_flush_asn1_set_of\n\nOne less `goto err`.\n\nChange-Id: I64042c991ad9c2e12ca3d36c35911a2086bfcad4\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98728\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\nAuto-Submit: David Benjamin \u003cdavidben@google.com\u003e\nReviewed-by: Lily Chen \u003cchlily@google.com\u003e\nCommit-Queue: Lily Chen \u003cchlily@google.com\u003e\n"
    },
    {
      "commit": "1af892192c15bf23dc8946547c4326ff5397027d",
      "tree": "21d6d9fd162b48e7c9461ed9cc9ae20356157d10",
      "parents": [
        "8b43ff0f72137b31b23d482f0b2344186d797b03"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Thu Jul 09 23:58:32 2026 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Mon Jul 13 06:09:46 2026 -0700"
      },
      "message": "Use the error queue a bit more consistently in CBB functions\n\nWe missed a few spots in\nhttps://boringssl-review.googlesource.com/c/boringssl/+/57046. In\ngeneral, it\u0027s troublesome when functions inconsistently use the error\nqueue. A function should either always write to the error queue on\nerror, or never do it. CBB (and really anything that calls\nOPENSSL_malloc) has since morphed into using it, but we missed a few\ncases.\n\nChange-Id: Ifedf7cbf7a77a8048380c3beb7d6defb5628dbfa\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98727\nAuto-Submit: David Benjamin \u003cdavidben@google.com\u003e\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\nCommit-Queue: Lily Chen \u003cchlily@google.com\u003e\nReviewed-by: Lily Chen \u003cchlily@google.com\u003e\n"
    },
    {
      "commit": "8b43ff0f72137b31b23d482f0b2344186d797b03",
      "tree": "f727c26576d46087e869af4a325773268f67814e",
      "parents": [
        "5ac7567c234514157a504ff3fbedc0f5eddbf678"
      ],
      "author": {
        "name": "Lily Chen",
        "email": "chlily@google.com",
        "time": "Mon Jul 13 05:40:15 2026 -0700"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Mon Jul 13 06:03:17 2026 -0700"
      },
      "message": "Update version for Bazel Central Repository to 0.20260713.0\n\nChange-Id: I16c9fb95fe0cbdf221d1553490418a1fab809a67\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98767\nCommit-Queue: Lily Chen \u003cchlily@google.com\u003e\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\n"
    },
    {
      "commit": "5ac7567c234514157a504ff3fbedc0f5eddbf678",
      "tree": "582ce41e1852426e5017eac5f4c0ef0f15f360bf",
      "parents": [
        "d087df86015dd4f8a2b54cf7c4c70a7ba215bcca"
      ],
      "author": {
        "name": "Adam Langley",
        "email": "agl@chromium.org",
        "time": "Thu Jul 09 15:27:37 2026 -0700"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Fri Jul 10 07:55:25 2026 -0700"
      },
      "message": "bssl-sys: fix clippy warnings\n\nChange-Id: Ie7875c7607a3bfbdebcb80995477fe7481ed40de\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98688\nReviewed-by: Xiangfei Ding \u003cxfding@google.com\u003e\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\nCommit-Queue: Adam Langley \u003cagl@google.com\u003e\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\n"
    },
    {
      "commit": "d087df86015dd4f8a2b54cf7c4c70a7ba215bcca",
      "tree": "f6409fb0007a30b2432ee0e17fa5de876b73cf29",
      "parents": [
        "5ced863951661459b5668c41f97dc718213163e3"
      ],
      "author": {
        "name": "Adam Langley",
        "email": "agl@chromium.org",
        "time": "Thu Jul 09 15:22:45 2026 -0700"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Fri Jul 10 06:49:53 2026 -0700"
      },
      "message": "bssl-crypto: support ECDSA verification of already-hashed messages.\n\nSometimes an ECDSA key is used with the \"wrong\" hash function. This\nchange adds a function which allows callers to still verify those\nsignatures.\n\nChange-Id: I2cc8b9c06c53bbfca51e23ab97302c35c6a02dd9\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98687\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\nReviewed-by: Xiangfei Ding \u003cxfding@google.com\u003e\nCommit-Queue: Adam Langley \u003cagl@google.com\u003e\n"
    },
    {
      "commit": "5ced863951661459b5668c41f97dc718213163e3",
      "tree": "af35962103b1a27264b7e7176d3c2be6752c5bd3",
      "parents": [
        "d4864a6c405d820628719535ebfa3de8d8afac51"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Tue Jul 07 18:27:24 2026 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Thu Jul 09 20:06:43 2026 -0700"
      },
      "message": "Implement trust anchor groups on the certificate selection side\n\nhttps://tlswg.org/tls-trust-anchor-ids/draft-ietf-tls-trust-anchor-ids.html#name-trust-anchor-ranges\nhttps://tlswg.org/tls-trust-anchor-ids/draft-ietf-tls-trust-anchor-ids.html#name-trust-anchor-group-inclusio\n\nWhile I\u0027m here, update the spec references to -04.\n\nFixed: 524722668\nChange-Id: Ia4cd7841b4690bf9aaaccd8b1ce1c7db54976c79\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98588\nReviewed-by: Lily Chen \u003cchlily@google.com\u003e\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\n"
    },
    {
      "commit": "d4864a6c405d820628719535ebfa3de8d8afac51",
      "tree": "2511d417b81f10594cc16cee9a3521dd89263b55",
      "parents": [
        "43c18e2d71b67487c1f6121d5ea72cc3e4826a6a"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Thu Jul 09 16:52:16 2026 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Thu Jul 09 16:55:31 2026 -0700"
      },
      "message": "Handle serial numbers permissively in OCSP\n\nSince libpki\u0027s serial number parser is itself sometimes permissive, it\nwould be prudent for us to ensure all accepted serial numbers are\nrepresentable in OCSP and CRL. This isn\u0027t critical because the real\nfactor is whether the caller treats revocation as hardfail or not.\n\nThis also fixes a bug where OCSPParseCertificate forgot to pass\nparse_options anywhere.\n\nIn reality, this is all just just downstream of libpki handling serial\nnumbers badly. https://crbug.com/533048005 tracks fixing this.\n\nFixed: 518241439\nChange-Id: Id73102bfc56d8c27ec08b1f76c411bdee3ab0551\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98647\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\nReviewed-by: Matt Mueller \u003cmattm@google.com\u003e\nCommit-Queue: Matt Mueller \u003cmattm@google.com\u003e\nAuto-Submit: David Benjamin \u003cdavidben@google.com\u003e\n"
    },
    {
      "commit": "43c18e2d71b67487c1f6121d5ea72cc3e4826a6a",
      "tree": "51d807a87a918d38f704df0ab3a1ce00161d4271",
      "parents": [
        "a22861da5ebfad566f60f86298c8bb7a1b21bbb6"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Wed Jul 08 18:05:00 2026 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Thu Jul 09 16:04:10 2026 -0700"
      },
      "message": "runner: Switch to CertificatePropertyList for passing properties to the shim\n\nOne less thing we have to transcribe to command-line flags in the tests,\nwhen we add a more complicated structurte. We\u0027d prefer to have folks use\nthis format anyway, since it\u0027s extensible.\n\nBug: 524722668\nChange-Id: Ibf10e4b35143ee31826e66dcc068a61e5e3c27b5\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98587\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\nReviewed-by: Lily Chen \u003cchlily@google.com\u003e\n"
    },
    {
      "commit": "a22861da5ebfad566f60f86298c8bb7a1b21bbb6",
      "tree": "e31b3f3e3eed1b1b6549ed0e2d8ea11ecfb032a6",
      "parents": [
        "b35f9f1d1a5fd743a5f37c99168ee9c8cd306194"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Tue Jul 07 18:23:05 2026 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Thu Jul 09 16:00:38 2026 -0700"
      },
      "message": "Expose CBS_get_asn1_oid_component\n\nOnly needed in libssl actually, but we have CBB_add_asn1_oid_component,\nso this is a natural counterpart.\n\nBug: 524722668\nChange-Id: I14c1a4935919f2ddca971e925dc57c413e0234c4\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98487\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\nReviewed-by: Lily Chen \u003cchlily@google.com\u003e\n"
    },
    {
      "commit": "b35f9f1d1a5fd743a5f37c99168ee9c8cd306194",
      "tree": "c229a07c2382ff2e79e71bd4e1bdf999940c705e",
      "parents": [
        "a2f49c105d181090b8791ab76c09a45c9db9f986"
      ],
      "author": {
        "name": "Xiangfei Ding",
        "email": "xfding@google.com",
        "time": "Thu Jul 09 20:48:25 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Thu Jul 09 14:09:51 2026 -0700"
      },
      "message": "rust: bssl-tls: Unstage the session support\n\nIn particular the session support was currently implemented with SSL_get_session,\nexcept that does not work with TLS 1.3, which is picked by default.\nThis wasn\u0027t caught by tests because the tests weren\u0027t actually testing that\nresumption happened. It\u0027s not currently possible to do session resumption with\nTLS 1.3 as a client in this API. We should unstage it and redesign the APIs\nusing `SSL_CTX_sess_set_new_cb`.\n\nUpdate-Note: The current session support in this crate is very broken.\nWe advise users not to add session resumption using this crate until\nwe find out the better way to do so.\n\nSigned-off-by: Xiangfei Ding \u003cxfding@google.com\u003e\nChange-Id: I883320103b6117c071ef5423d33e5faa6a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98627\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\n"
    },
    {
      "commit": "a2f49c105d181090b8791ab76c09a45c9db9f986",
      "tree": "2d9f6bf24cc021d53f89e7b556c5125feb20c819",
      "parents": [
        "9ae3188aba2cc3cd5c48014a47135f046ea0aea6"
      ],
      "author": {
        "name": "Xiangfei Ding",
        "email": "xfding@google.com",
        "time": "Thu Jul 09 19:06:14 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Thu Jul 09 12:39:26 2026 -0700"
      },
      "message": "rust: bssl-tls: Fix predicate on `established`\n\nUpdate-Note: `TlsConnection::established` previously returns a handle if\nthe session is present. This is mostly true except when a session\nresumption is configured. At this point the handshake is most likely not\ntruly completed. This patch aligns with the intended meaning that this\nfunction implies.\n\nSigned-off-by: Xiangfei Ding \u003cxfding@google.com\u003e\nChange-Id: I3c06c692b2dc6478f55dde57e493b1226a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98607\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\n"
    },
    {
      "commit": "9ae3188aba2cc3cd5c48014a47135f046ea0aea6",
      "tree": "2a9eb4809c901b39cd5a17d25e854db11cbfa4ea",
      "parents": [
        "e748facbaa5ef6e53aa51c68328e2b2245325e72"
      ],
      "author": {
        "name": "Rudolf Polzer",
        "email": "rpolzer@google.com",
        "time": "Fri Jun 26 03:58:02 2026 -0700"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Thu Jul 09 05:18:51 2026 -0700"
      },
      "message": "MLKEM benchmark: also add a \"private key from seed\" benchmark.\n\nChange-Id: Ie78a79edb29e1ef0ed31ec621290262e6a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98067\nReviewed-by: Xiangfei Ding \u003cxfding@google.com\u003e\nAuto-Submit: Rudolf Polzer \u003crpolzer@google.com\u003e\nCommit-Queue: Xiangfei Ding \u003cxfding@google.com\u003e\n"
    },
    {
      "commit": "e748facbaa5ef6e53aa51c68328e2b2245325e72",
      "tree": "6608f4184b37ef72f005e327affcb99a2fe1e343",
      "parents": [
        "156c7b75ae9b8c3b3f847acf264f17594c3859fb"
      ],
      "author": {
        "name": "Rudolf Polzer",
        "email": "rpolzer@google.com",
        "time": "Wed Apr 29 07:47:38 2026 -0700"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Thu Jul 09 00:17:08 2026 -0700"
      },
      "message": "ssl: Support ML-KEM by default.\n\nUpdate-Note: `SSL_GROUP_X25519_MLKEM768` requires quite much data in the\nClientHello (see https://tldr.fail).\n\nBug: 504987865\nChange-Id: Ie4d8b4a4800ae006623bd816f831a1116a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/94347\nCommit-Queue: Rudolf Polzer \u003crpolzer@google.com\u003e\nReviewed-by: Xiangfei Ding \u003cxfding@google.com\u003e\n"
    },
    {
      "commit": "156c7b75ae9b8c3b3f847acf264f17594c3859fb",
      "tree": "04bb9a051bef678f372d748c4773ad4c4559a53d",
      "parents": [
        "195c2c55405924d7a315ce6351e2b559fbfb83de"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Wed Jul 08 15:03:47 2026 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Wed Jul 08 12:55:32 2026 -0700"
      },
      "message": "Disable Rust DTLS tests for now\n\nWe\u0027re seeing some flaky tests here. It doesn\u0027t look like anything drives\nthe DTLS timer in Rust, so it seems likely that Rust just breaks any\ntime packets are lost. I\u0027m guessing that\u0027s the cause.\n\nBug: 532601068\nChange-Id: I1f274baf710c55ad6f94f531fc18f2cd21c32282\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98567\nAuto-Submit: David Benjamin \u003cdavidben@google.com\u003e\nReviewed-by: Xiangfei Ding \u003cxfding@google.com\u003e\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\n"
    },
    {
      "commit": "195c2c55405924d7a315ce6351e2b559fbfb83de",
      "tree": "b8ea3911aa048b9f954f0e2b450ea9efc18aa125",
      "parents": [
        "da90150e6d86e85ad37c9c130e67e44d25904a58"
      ],
      "author": {
        "name": "Xiangfei Ding",
        "email": "xfding@google.com",
        "time": "Thu Jun 18 09:32:27 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Wed Jul 08 12:10:16 2026 -0700"
      },
      "message": "rust: bssl-tls: Disallow downcasting in-handshake to normal handle\n\nA big downside in doing so is that it accidentally allows users to\ntrigger progression in TLS state machine during the handshake.\nThis is possible because we supply various callbacks with the\nin-handshake handle and through this existing downcasting the callbacks\ncan call read and write again, which is a re-entry into our handshake code.\n\nUpdate-Note: a breaking change is introduced to further restrict the\n`in_handshake()` handle to the connection, so that one cannot possibly\nadvance the TLS state machine while a read or write into the TLS socket\nis in progress. This was possible through callbacks that can be invoked\nwhile reading or writing on the socket. The necessary changes can be\nfound in cl/934247882.\n\nSigned-off-by: Xiangfei Ding \u003cxfding@google.com\u003e\nChange-Id: I3212b0184a3ebda606812217a4e350396a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/97667\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\n"
    },
    {
      "commit": "da90150e6d86e85ad37c9c130e67e44d25904a58",
      "tree": "9cce179040d8297f934ec4d695017fae239b22dc",
      "parents": [
        "0e8895bd0908375b6629215ec3c3f007fe14e833"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Wed Jul 08 13:42:53 2026 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Wed Jul 08 11:33:37 2026 -0700"
      },
      "message": "Handle CV-qualifiers in __gnu_cxx audit_symbols exclusion\n\nlibssl has a _ZK9__gnu_cxx symbol. The K comes from \u003cCV-qualifiers\u003e\nbelow. Adjust the regex to handle all possible qualifiers.\n\nhttps://itanium-cxx-abi.github.io/cxx-abi/abi.html#mangle.CV-qualifiers\n\nBug: 524722668\nChange-Id: Iaedd07cc9249dc8bcdffccc446573a18320880fa\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98547\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\nAuto-Submit: David Benjamin \u003cdavidben@google.com\u003e\nReviewed-by: Lily Chen \u003cchlily@google.com\u003e\n"
    },
    {
      "commit": "0e8895bd0908375b6629215ec3c3f007fe14e833",
      "tree": "331556666fef706387bb9ec09851f2a02032074d",
      "parents": [
        "7fd3fe21c0970293828b48ad369c283c7443e86f"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Tue Jul 07 17:12:50 2026 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Wed Jul 08 11:33:30 2026 -0700"
      },
      "message": "Turn SSL into an opaque struct\n\nThis avoids squatting on ::ssl_st::ssl_st() and ::ssl_st::~ssl_st()\nsymbols. All that\u0027s left now is SSL_SESSION.\n\nBug: 500444613\nChange-Id: Ia415b58cfec41b819d32d2cb876a2b19697f5abb\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98467\nReviewed-by: Lily Chen \u003cchlily@google.com\u003e\nAuto-Submit: David Benjamin \u003cdavidben@google.com\u003e\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\n"
    },
    {
      "commit": "7fd3fe21c0970293828b48ad369c283c7443e86f",
      "tree": "e8b028e2ef762b8fc44706855763edbc2b771381",
      "parents": [
        "8daf854545e60454740b3c2286de391bcf8b1685"
      ],
      "author": {
        "name": "Matt Mueller",
        "email": "mattm@google.com",
        "time": "Fri Jun 26 15:43:32 2026 -0700"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Wed Jul 08 10:52:17 2026 -0700"
      },
      "message": "Implement MTC plants-04 non-CA cosignature verification.\n\nBug: 452983502\nChange-Id: I883e31c5b0aa8f7f5c55a52db522f39063952ff2\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/97787\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\nCommit-Queue: Matt Mueller \u003cmattm@google.com\u003e\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\n"
    },
    {
      "commit": "8daf854545e60454740b3c2286de391bcf8b1685",
      "tree": "f739d86385f3e6c7cd194cd57d6c5885cfe8ca01",
      "parents": [
        "191d9aa000a063499dfacc93b0b509957e6e6f92"
      ],
      "author": {
        "name": "Rudolf Polzer",
        "email": "rpolzer@google.com",
        "time": "Mon Apr 20 05:02:03 2026 -0700"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Wed Jul 08 05:15:26 2026 -0700"
      },
      "message": "Implement a vectorized \"quad Keccak\".\n\nGains 7% on AMD EPYC 7B13 and 2% on Apple M1 Pro.\n\nBug: 503700354\nChange-Id: I34d14d97a76f8892d1c54dc934b3ca6c6a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/93087\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\nCommit-Queue: Rudolf Polzer \u003crpolzer@google.com\u003e\n"
    },
    {
      "commit": "191d9aa000a063499dfacc93b0b509957e6e6f92",
      "tree": "16f15c0d208c56e97b37d1be4c9f047a1ed8b6d6",
      "parents": [
        "50dee225e84307ed9f259877049ad8bb4cb2897b"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Tue Jul 07 14:36:09 2026 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Tue Jul 07 14:00:26 2026 -0700"
      },
      "message": "Update Android documentation and add -upload-only flag\n\nDefault to 64-bit instead of 32-bit in the documentation. Also the NDK\u0027s\nminimum API level is 21 nowadays. Finally add some notes on how to run\nthe resulting binaries. I was originally going to give adb instructions\n(what I usually use) but that doesn\u0027t work for tests with test data, so\nadd a -upload-only flag to the script to help package everything.\n\nChange-Id: I6fa7113679506e6f53b953df9146e7cf26b82e24\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98449\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\n"
    },
    {
      "commit": "50dee225e84307ed9f259877049ad8bb4cb2897b",
      "tree": "44a6c0b23f902e208ac54a73a634f79d861db2c7",
      "parents": [
        "e19adb24aa805ae42f726caf64136aad11ae19ff"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Tue Jul 07 10:12:23 2026 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Tue Jul 07 13:38:28 2026 -0700"
      },
      "message": "Add ABI tests for Poly1305 Arm assembly\n\nI believe this is the last of the assembly missing ABI tests.\n\nChange-Id: I031b6262d1ab36e3fb61d66f0f74052728f8074e\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98448\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\n"
    },
    {
      "commit": "e19adb24aa805ae42f726caf64136aad11ae19ff",
      "tree": "e1298a534b17aa135bf5c9a193f05d4b3a647e63",
      "parents": [
        "cfc11db2572826ec44a29ccdbd96f3923c0673c9"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Mon Jul 06 17:25:00 2026 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Tue Jul 07 13:32:40 2026 -0700"
      },
      "message": "Add ABI tests for AES-GCM-SIV assembly\n\nChange-Id: I8051799ba060758e74c3fcaa7ede616321c9c1c9\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98428\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\nCommit-Queue: Adam Langley \u003cagl@google.com\u003e\nAuto-Submit: David Benjamin \u003cdavidben@google.com\u003e\n"
    },
    {
      "commit": "cfc11db2572826ec44a29ccdbd96f3923c0673c9",
      "tree": "4896129ae4fab0aa25cf722f50c442d5ed017876",
      "parents": [
        "3ccf0e566588e9b5d8dcf68c075d72113043731a"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Mon Jul 06 17:55:32 2026 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Tue Jul 07 13:28:24 2026 -0700"
      },
      "message": "Document alignment requirements on AES-GCM-SIV assembly\n\nThere are a lot of aligned loads and stores in there.\n\nChange-Id: I75face256d848c0b9731e8e251f37e9364e07ced\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98427\nCommit-Queue: Adam Langley \u003cagl@google.com\u003e\nAuto-Submit: David Benjamin \u003cdavidben@google.com\u003e\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\n"
    },
    {
      "commit": "3ccf0e566588e9b5d8dcf68c075d72113043731a",
      "tree": "a894ec8ec85efdd7fdb9bdc9e5027fc51ef9df2d",
      "parents": [
        "27c62ff54d72b4a2dd55c3c4ace527550a051626"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Tue Jul 07 10:13:28 2026 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Tue Jul 07 12:07:01 2026 -0700"
      },
      "message": "Move the alignment specifier on fe1305x2 to the type\n\nThe assembly uses aligned loads for all these.\n\nChange-Id: I76e955861c998b2acc0f176363fed04d8f30ecdd\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98447\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\nAuto-Submit: David Benjamin \u003cdavidben@google.com\u003e\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\n"
    },
    {
      "commit": "27c62ff54d72b4a2dd55c3c4ace527550a051626",
      "tree": "761a6f76892f7b2d6653a885e432903436f4d28b",
      "parents": [
        "0b2b80bdb886ea106021512a16b66cfddafa8302"
      ],
      "author": {
        "name": "xfding",
        "email": "xfding@google.com",
        "time": "Thu Mar 19 13:29:32 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Mon Jul 06 23:59:30 2026 -0700"
      },
      "message": "rust: bssl-tls: Introduce asynchronous private key delegate\n\nThis allows the authenticating party to sign or decrypt data\nasynchronously.\n\nBug: 479599893\n\nSigned-off-by: Xiangfei Ding \u003cxfding@google.com\u003e\nChange-Id: I61172bf18bfce94c287413c436b881926a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/91088\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\n"
    },
    {
      "commit": "0b2b80bdb886ea106021512a16b66cfddafa8302",
      "tree": "ad5990224e999eaf09502ae4175af4f23d4533cc",
      "parents": [
        "1c7d52ef3e3f373302cb957089fa783d1e5fd8cd"
      ],
      "author": {
        "name": "Xiangfei Ding",
        "email": "xfding@google.com",
        "time": "Tue May 05 13:47:40 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Mon Jul 06 14:02:10 2026 -0700"
      },
      "message": "tool: correct cast of format argument\n\n\nSigned-off-by: Xiangfei Ding \u003cxfding@google.com\u003e\nChange-Id: I9e6a11b84b9b9372346f653efa822d576a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98407\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\n"
    },
    {
      "commit": "1c7d52ef3e3f373302cb957089fa783d1e5fd8cd",
      "tree": "3e1fc2bdd6b911fa47744130c2b59c1492658481",
      "parents": [
        "3b268346a8e1c1f87aa980a6b3cda8b80f21ed17"
      ],
      "author": {
        "name": "Xiangfei Ding",
        "email": "xfding@google.com",
        "time": "Wed Jun 17 13:34:50 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Fri Jul 03 06:44:43 2026 -0700"
      },
      "message": "rust: bssl-tls: Add more RPK related configurations\n\nSigned-off-by: Xiangfei Ding \u003cxfding@google.com\u003e\nChange-Id: I71d2f6925873f7cbdb65ae3c2528ae3c6a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/97947\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\n"
    },
    {
      "commit": "3b268346a8e1c1f87aa980a6b3cda8b80f21ed17",
      "tree": "13729dc155d398256b4dcc4d378818eada399a9e",
      "parents": [
        "a945a3ea4cdf8cd683a9d3ad3a66bd3f04a514e6"
      ],
      "author": {
        "name": "Xiangfei Ding",
        "email": "xfding@google.com",
        "time": "Fri Jun 26 11:14:34 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Fri Jul 03 06:39:31 2026 -0700"
      },
      "message": "ssl: Do not request or set hints when handshake is torn down\n\nSigned-off-by: Xiangfei Ding \u003cxfding@google.com\u003e\nChange-Id: Ibd793e5f123831ee25d79870c777536f6a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98047\nReviewed-by: Lily Chen \u003cchlily@google.com\u003e\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\n"
    },
    {
      "commit": "a945a3ea4cdf8cd683a9d3ad3a66bd3f04a514e6",
      "tree": "06584844b1311c23705288f52ab10c437a41e842",
      "parents": [
        "6f9594a4d4e2f79b91e056479e5658d4b68ccfd3"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Wed Jul 01 14:05:47 2026 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Thu Jul 02 06:58:11 2026 -0700"
      },
      "message": "Add some tests that X509_NAME_hash does not overcanonicalize\n\nIf we were to change our built-in name canonicalization in either\ndirection, we would need to go back and fix X509_NAME_hash to stick to\nthe old scheme. The original test only included positive\ncanonicalization cases, because we would never have any legitimate\nreason to want to canonicalize more. Add the negative case too for good\nmeasure.\n\nChange-Id: I65d12ea7ddcc6068fa80ce1bb3295d16fc7bb01f\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98387\nReviewed-by: Rudolf Polzer \u003crpolzer@google.com\u003e\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\nCommit-Queue: Rudolf Polzer \u003crpolzer@google.com\u003e\nAuto-Submit: David Benjamin \u003cdavidben@google.com\u003e\n"
    },
    {
      "commit": "6f9594a4d4e2f79b91e056479e5658d4b68ccfd3",
      "tree": "cf64142fe2d5b4dca9124d2628fba9d3642cf3b3",
      "parents": [
        "1ec4fe2067827b5e4916c4e75fa0d50931e2276e"
      ],
      "author": {
        "name": "Lily Chen",
        "email": "chlily@google.com",
        "time": "Tue Jun 30 20:42:39 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Wed Jul 01 21:26:17 2026 -0700"
      },
      "message": "Add some basic AI agent skills for BoringSSL development\n\nAnd register the directory in .agents/skills.json for agent discovery.\n\nChange-Id: I8bd7dfbab4c4e6c4163b7f0c2c3b76dc6a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98227\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\nAuto-Submit: Lily Chen \u003cchlily@google.com\u003e\nCommit-Queue: Lily Chen \u003cchlily@google.com\u003e\n"
    },
    {
      "commit": "1ec4fe2067827b5e4916c4e75fa0d50931e2276e",
      "tree": "32c114bdf782034cc8fc9afdfdbac4ffa99e28c4",
      "parents": [
        "e802ea0dc4f11594bd6b56760d5e13be7842d1b1"
      ],
      "author": {
        "name": "Lily Chen",
        "email": "chlily@google.com",
        "time": "Tue Jun 30 22:27:11 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Wed Jul 01 21:26:10 2026 -0700"
      },
      "message": "Expand on crypto/obj/README\n\nAnd convert it from a text file into a markdown file.\n\nChange-Id: I11231aaee7571acfca33e92062af4e996a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98327\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\nAuto-Submit: Lily Chen \u003cchlily@google.com\u003e\nCommit-Queue: Lily Chen \u003cchlily@google.com\u003e\n"
    },
    {
      "commit": "e802ea0dc4f11594bd6b56760d5e13be7842d1b1",
      "tree": "25bce28a4450ef3e4c5d354f71d72374098eeb67",
      "parents": [
        "24720b76bb198bcfe824ae3e3734db93019e88e7"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Wed Jul 01 11:58:59 2026 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Wed Jul 01 10:41:53 2026 -0700"
      },
      "message": "Add missing includes\n\nChange-Id: I81158e371c7d1aec723dfc2816b26783da73db9a\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98367\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\nAuto-Submit: David Benjamin \u003cdavidben@google.com\u003e\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\n"
    },
    {
      "commit": "24720b76bb198bcfe824ae3e3734db93019e88e7",
      "tree": "bc9e3f912b09cd649ed479ba8173bb233c2e2a70",
      "parents": [
        "c9bcd2b14422dae955d68e0af87682267871963a"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Wed Jul 01 11:49:02 2026 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Wed Jul 01 09:16:10 2026 -0700"
      },
      "message": "Fix outdated comment in fiat METADATA file\n\nAfter https://boringssl-review.googlesource.com/c/boringssl/+/75852, we\nstarted using LICENSE-APACHE instead of LICENSE-MIT.\n\nChange-Id: I889154950c876ed37fce7cfcdf7c866685d9cfca\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98347\nReviewed-by: Lily Chen \u003cchlily@google.com\u003e\nAuto-Submit: David Benjamin \u003cdavidben@google.com\u003e\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\nCommit-Queue: Lily Chen \u003cchlily@google.com\u003e\n"
    },
    {
      "commit": "c9bcd2b14422dae955d68e0af87682267871963a",
      "tree": "e9a929f2075969d63ad033074541eddb2aa7e9e6",
      "parents": [
        "e3ca87bd0c240ef7d142ced16ddf87889ffc622e"
      ],
      "author": {
        "name": "Rudolf Polzer",
        "email": "rpolzer@google.com",
        "time": "Wed Jun 24 02:57:06 2026 -0700"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Wed Jul 01 01:06:46 2026 -0700"
      },
      "message": "Allow a SSL_SESSION to only ever live in one SSL_CTX.\n\nAs SSL_SESSION is part of an intrusive linked list, it cannot be in more\nthan one chain at once.\n\nBug: 527997772\nChange-Id: I381184d7641407edc4d593594d41efe26a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/97869\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\nCommit-Queue: Rudolf Polzer \u003crpolzer@google.com\u003e\n"
    },
    {
      "commit": "e3ca87bd0c240ef7d142ced16ddf87889ffc622e",
      "tree": "a256e0e5b649a8b67beb783990f434558718e364",
      "parents": [
        "deb0d558b22160fe86fa73419f788c4272bb60dc"
      ],
      "author": {
        "name": "Lily Chen",
        "email": "chlily@google.com",
        "time": "Mon Jun 29 20:12:30 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Tue Jun 30 07:58:22 2026 -0700"
      },
      "message": "Null-check SSL_HANDSHAKE first in SSL_serialize_handshake_hints\n\nAfter boringssl-review.googlesource.com/c/boringssl/+/97127, if\nSSL_serialize_handshake_hints is erroneously called for a client, the\nSSL_HANDSHAKE gets dereferenced which may cause a crash due to a NULL\nderef. This is an error anyway, but the aforementioned CL did not intend\nto change any behavior, so return an error first rather than potentially\ncrashing if called for a client, and also NULL-check the SSL_HANDSHAKE.\n\nChange-Id: I4cc241757667ae2cc18e45827182e14d6a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98187\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\nCommit-Queue: Lily Chen \u003cchlily@google.com\u003e\n"
    },
    {
      "commit": "deb0d558b22160fe86fa73419f788c4272bb60dc",
      "tree": "a43ae9fff95a973a532dbf46abc377f1cda83742",
      "parents": [
        "20351f26617addfeb1849219b6bdadba63ba822d"
      ],
      "author": {
        "name": "Ben Pastene",
        "email": "bpastene@google.com",
        "time": "Mon Jun 29 23:01:23 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Tue Jun 30 07:37:59 2026 -0700"
      },
      "message": "infra: Add buildbucket.creator binding to shadow buckets\n\nFollow-up to\nhttps://boringssl-review.googlesource.com/c/boringssl/+/98167.\n\nTrying to run a led job fails with:\n\"user:bpastene@google.com\" does not have permission \"buildbucket.builds.create\" in bucket \"boringssl/ci.shadow\"\n\nSo this adds that missing binding.\n\nBug: None\nChange-Id: Ia082a3f6efff21f4abcc33ca1707ed38a8eebbee\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98207\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\nAuto-Submit: Ben Pastene \u003cbpastene@google.com\u003e\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\n"
    },
    {
      "commit": "20351f26617addfeb1849219b6bdadba63ba822d",
      "tree": "16b6e64df5b0b60cea784453d15a9a417d9c7920",
      "parents": [
        "7b00985455bf1038d43cbb18058aae64cf8d9add"
      ],
      "author": {
        "name": "Xiangfei Ding",
        "email": "xfding@google.com",
        "time": "Wed Apr 15 21:22:07 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Mon Jun 29 23:45:20 2026 -0700"
      },
      "message": "rust: bssl-tls: Introduce early callback support\n\nBug: 479599893\n\nSigned-off-by: Xiangfei Ding \u003cxfding@google.com\u003e\nChange-Id: Ic5d56b30c1c988e2c4bf4ebec56ec1d26a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/92807\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\n"
    },
    {
      "commit": "7b00985455bf1038d43cbb18058aae64cf8d9add",
      "tree": "97d9c152717e24b08cedfa6ec84cf50b7275e3b4",
      "parents": [
        "29e593e29165df578ab778269a1f04da2055c32f"
      ],
      "author": {
        "name": "Ben Pastene",
        "email": "bpastene@google.com",
        "time": "Mon Jun 29 10:36:17 2026 -0700"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Mon Jun 29 13:16:43 2026 -0700"
      },
      "message": "infra: Set up basic \u0027shadow\u0027 buckets for ci \u0026 try\n\nThis should let anyone in \"project-boringssl-tryjob-access\" run \"led\"\nbuilds for any builder in the \"ci\" or \"try\" buckets. A \"led\" build is\na copy of the normal build, with unreviewed changes to the underlying\nrecipe. Ideally it runs with a more-restricted set of permissions.\n\nFor led builds of try, they simply re-use the exact same\npools/machines/accounts since try is (or at least should be) already\nvery unprivileged.\n\nBut for led builds of ci, this configures them to re-use the same\npools/machines/accounts of try since try is designed for running\nunreviewed code, unlike ci. This is how chromium\u0027s led builds work.\n\nSee http://go/luci-how-to-led for more info on led.\n\nBug: None\nChange-Id: Idacfd71f383ac27e3809fa891cf5c175003bbddc\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98167\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\n"
    },
    {
      "commit": "29e593e29165df578ab778269a1f04da2055c32f",
      "tree": "5e618d34546f09205834339f1c44c0f95f714a65",
      "parents": [
        "6207fc3e149f88e78c6239b734fe531c40cda062"
      ],
      "author": {
        "name": "Lily Chen",
        "email": "chlily@google.com",
        "time": "Wed Jun 24 16:04:56 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Mon Jun 29 11:08:03 2026 -0700"
      },
      "message": "Add GREASE for signature_algorithms\n\nThis adds `SSL_CTX_set_grease_sigalgs_enabled`, which enables adding a\nGREASE value in signature_algorithms extensions (for a client only, for\nnow).\n\nThis functionality will be folded into `SSL_CTX_set_grease_enabled` at a\nlater time, once it has been safely deployed.\n\nBug: 526597789\nChange-Id: I792304a78706d72f910dbeac6873748c6a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/97987\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\nAuto-Submit: Lily Chen \u003cchlily@google.com\u003e\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\n"
    },
    {
      "commit": "6207fc3e149f88e78c6239b734fe531c40cda062",
      "tree": "f4ded685c5cb898052d11300a996b77f9e9ee272",
      "parents": [
        "0e9b8662f29c0754cf166964b7811c635c89fc6f"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Sat Jun 27 11:15:47 2026 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Mon Jun 29 10:19:42 2026 -0700"
      },
      "message": "Make it more obvious that some ML-KEM vector_decode calls are infallible\n\nvector_decode\u003c12\u003e is special. It is the only one that might reject some\ninputs as being out-of-bounds. Switch that away from using a template,\nso it is more obvious that we aren\u0027t ignoring a return value in the\nother calls.\n\nChange-Id: Ia761cdd1cef31c381cb68ccb7f0f5a7bded0751b\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98113\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\n"
    },
    {
      "commit": "0e9b8662f29c0754cf166964b7811c635c89fc6f",
      "tree": "3b92a74a6d950a61616eedd3790e0300d7b72c41",
      "parents": [
        "05d322e07540e9b2046df88bee74d2b4a24140c0"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Sat Jun 27 10:06:33 2026 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Mon Jun 29 10:15:41 2026 -0700"
      },
      "message": "Import ML-KEM Wycheproof tests\n\nThis slipped through in crbug.com/42290453\n\nBug: 42290453\nChange-Id: Ie566aac63c534f4171179e6289201f31606f20d3\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98112\nReviewed-by: Lily Chen \u003cchlily@google.com\u003e\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\n"
    },
    {
      "commit": "05d322e07540e9b2046df88bee74d2b4a24140c0",
      "tree": "c8b0e64ccce7dd9e79c23c115002121fd9f8ef17",
      "parents": [
        "1ee8bdbd10713f58857b1ba91c613e19444903b1"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Sat Jun 27 10:16:17 2026 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Mon Jun 29 10:15:21 2026 -0700"
      },
      "message": "Clean up mlkem_test.cc to use a traits object\n\nChange-Id: I705202745648d3ff42325362a54029771a5ff024\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98111\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\n"
    },
    {
      "commit": "1ee8bdbd10713f58857b1ba91c613e19444903b1",
      "tree": "ffccda6b503485f9ae3550830bf00d8aedee03f6",
      "parents": [
        "2e508c973d634b3aa51b71db5062bc6b096e5031"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Sat Jun 27 09:59:22 2026 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Mon Jun 29 09:23:49 2026 -0700"
      },
      "message": "Update Wycheproof test vectors\n\nThis required updating mldsa_test.cc to pick up the explicit randomizer.\n\nChange-Id: Ic68b99d2b7131a6533d8f127f089c1d2c92c58d0\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98110\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\n"
    },
    {
      "commit": "2e508c973d634b3aa51b71db5062bc6b096e5031",
      "tree": "3ba02608b7c648a4639484ced78b6b86e87ede57",
      "parents": [
        "be08ef39e96191146b978ecbfd8eb8c3b50babb9"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Sat Jun 27 11:59:37 2026 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Mon Jun 29 06:50:15 2026 -0700"
      },
      "message": "Run Wycheproof ML-DSA signing vectors through verification too\n\nChange-Id: I6ddb245e663ece67eefa2d4d16627034f22f3a25\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98114\nReviewed-by: Rudolf Polzer \u003crpolzer@google.com\u003e\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\n"
    },
    {
      "commit": "be08ef39e96191146b978ecbfd8eb8c3b50babb9",
      "tree": "753f8a656452b005403ffb594a37935f47750af2",
      "parents": [
        "3ac4542e6d2affc84554cd803f11eb77f469fbf2"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Sat Jun 27 11:35:13 2026 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Sat Jun 27 16:00:17 2026 -0700"
      },
      "message": "Fix typo in test name\n\nChange-Id: Iaeb99793dca4f8a50f10e2601133ab09157e3042\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98109\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\nAuto-Submit: David Benjamin \u003cdavidben@google.com\u003e\nReviewed-by: Xiangfei Ding \u003cxfding@google.com\u003e\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\n"
    },
    {
      "commit": "3ac4542e6d2affc84554cd803f11eb77f469fbf2",
      "tree": "fad4b8d8e95cc125f8d959a0021563bcd8a8bb75",
      "parents": [
        "d1f99cc9ad77f953a3ae26592d5a8f195fd9ac12"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Sat Jun 27 11:09:46 2026 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Sat Jun 27 14:06:14 2026 -0700"
      },
      "message": "Fix ML-KEM constant-time validation regression\n\nhttps://boringssl-review.googlesource.com/c/boringssl/+/92828\ndeclassified the result of (s0 | s1) \u003e\u003d kPrime, but that is not the same\nas s0 \u003e\u003d kPrime || s1 \u003e\u003d kPrime. Instead, just write this more\nstraightforwardly.\n\nChange-Id: I68e12a38d074db754daf46d60bb061d80a95f2da\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98108\nAuto-Submit: David Benjamin \u003cdavidben@google.com\u003e\nCommit-Queue: Xiangfei Ding \u003cxfding@google.com\u003e\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\nReviewed-by: Xiangfei Ding \u003cxfding@google.com\u003e\n"
    },
    {
      "commit": "d1f99cc9ad77f953a3ae26592d5a8f195fd9ac12",
      "tree": "116dd1ce38f84a8ad4e06f6d4d9998103a4f10e5",
      "parents": [
        "3c6315e00ab02d7bc9b8922aff1f85d8f81ee130"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Sat Jun 27 10:44:57 2026 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Sat Jun 27 14:05:13 2026 -0700"
      },
      "message": "Declassify the result of EC point-on-curve fault checks\n\nThis clears some false positives in constant-time validation. All of\nthese should be impossible and are thus publicly true.\n\nThis was reverted in b11b2c5a7f9c0e70139870114c95fcf93e65dfa3, but we\nshould keep it, independent of the P-256 implementation getting\nresolved.\n\nChange-Id: I0f907e72c81eabc333d014b3bdca77d8f56a9b97\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/98107\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\nReviewed-by: Xiangfei Ding \u003cxfding@google.com\u003e\nAuto-Submit: David Benjamin \u003cdavidben@google.com\u003e\nCommit-Queue: Xiangfei Ding \u003cxfding@google.com\u003e\n"
    },
    {
      "commit": "3c6315e00ab02d7bc9b8922aff1f85d8f81ee130",
      "tree": "b58841e897e8c08ea401b78b5b895172d88963b9",
      "parents": [
        "1862b7706b62495f512815e3a5ec4a05444cdc1c"
      ],
      "author": {
        "name": "Xiangfei Ding",
        "email": "xfding@google.com",
        "time": "Tue Jun 09 14:40:25 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Thu Jun 25 23:07:08 2026 -0700"
      },
      "message": "rust: bssl-tls: Correct the name of the SCT getter function\n\nSigned-off-by: Xiangfei Ding \u003cxfding@google.com\u003e\nChange-Id: Id8cfdc494c72cfeb3c0df548a8ae25d76a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/97249\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\n"
    },
    {
      "commit": "1862b7706b62495f512815e3a5ec4a05444cdc1c",
      "tree": "c09a75e804a5740c14446c045f958a1900af888d",
      "parents": [
        "d7e0f73575322aa9b50c1413e17a6c2838c24208"
      ],
      "author": {
        "name": "Rudolf Polzer",
        "email": "rpolzer@google.com",
        "time": "Wed Jun 24 00:49:22 2026 -0700"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Thu Jun 25 00:14:31 2026 -0700"
      },
      "message": "Fix apparent infinite loop in X509NameAttribute::AsRFC2253String\n\nThis is fixed by correcting the loop index type to match the loop bound,\na `size_t`.\n\nNote that this cannot actually happen in practice, as certificates and\nsimilar objects are limited to 1 GiB (`INT_MAX / 2`) at parse time.\n\nChange-Id: If418b11df73459d619ca0e0f53c47dc46a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/97887\nCommit-Queue: Rudolf Polzer \u003crpolzer@google.com\u003e\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\n"
    },
    {
      "commit": "d7e0f73575322aa9b50c1413e17a6c2838c24208",
      "tree": "936254880152abb5caec5cd2a171c4cebfd69659",
      "parents": [
        "cfb6860620e4d4d0ee3366fd75729dd7d16d24e6"
      ],
      "author": {
        "name": "Rudolf Polzer",
        "email": "rpolzer@google.com",
        "time": "Wed Jun 24 01:44:34 2026 -0700"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Wed Jun 24 23:49:52 2026 -0700"
      },
      "message": "SSLBuffer::EnsureCap: ensure `new_cap` can never cause `offset_` overflow.\n\nNote that, as all users of `SSLBuffer` implement their own cap way below\n32k even, there is non way to actually cause this overflow in BoringSSL\nas it is now; making this change merely to ensure no future surprises.\n\nChange-Id: Ia8245a1d25e57c17f750fa2580208c4d6a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/97867\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\nCommit-Queue: Rudolf Polzer \u003crpolzer@google.com\u003e\n"
    },
    {
      "commit": "cfb6860620e4d4d0ee3366fd75729dd7d16d24e6",
      "tree": "b04b3dc0f29da00daeccaefa6a1afa5919036e5a",
      "parents": [
        "8f558acb8c219ad4deeecb5263daf671245020e9"
      ],
      "author": {
        "name": "Adam Langley",
        "email": "agl@imperialviolet.org",
        "time": "Tue Jun 23 23:52:45 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Wed Jun 24 07:47:24 2026 -0700"
      },
      "message": "ACVP: update other cases of memcpying into ints.\n\nChange-Id: Ie49296f5998227e4157e3cf5afb84cedd90febc3\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/97847\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\nCommit-Queue: Adam Langley \u003cagl@google.com\u003e\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\n"
    },
    {
      "commit": "8f558acb8c219ad4deeecb5263daf671245020e9",
      "tree": "9e5af018ca70081ea709749ae73ea196b69794e1",
      "parents": [
        "b45fb3b2d6e1d0b15c0ac67589b833d3aa36c3a9"
      ],
      "author": {
        "name": "Rudolf Polzer",
        "email": "rpolzer@google.com",
        "time": "Tue Jun 23 03:56:09 2026 -0700"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Tue Jun 23 22:49:30 2026 -0700"
      },
      "message": "Fix a bad parameter in `PEM_read_bio_inner`\u0027s base64 decoding.\n\nThis would have been an OOB write if `EVP_DecodeFinal` ever wrote anything. But it doesn\u0027t write anything, so this CL is a no-op.\n\nChange-Id: I4e56ff22b04ece37899ee330a2cf41dc6a6a6964\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/97807\nCommit-Queue: Rudolf Polzer \u003crpolzer@google.com\u003e\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\nAuto-Submit: Rudolf Polzer \u003crpolzer@google.com\u003e\n"
    },
    {
      "commit": "b45fb3b2d6e1d0b15c0ac67589b833d3aa36c3a9",
      "tree": "2d8a3afc3d1a5125cf331ce3241af929c6844262",
      "parents": [
        "0b364bbf0c2e8686163f82484685f5a68c444172"
      ],
      "author": {
        "name": "Adam Langley",
        "email": "agl@imperialviolet.org",
        "time": "Tue Jun 23 17:56:50 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Tue Jun 23 17:43:09 2026 -0700"
      },
      "message": "ACVP: test SHAKE.\n\nThis is considered a component of ML-* and ACVP doesn\u0027t trust its\ntesting of ML-* in isolation.\n\nChange-Id: I0d5c2a4c9e10b2c6e9b6cf404369f38427faa269\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/97828\nCommit-Queue: Adam Langley \u003cagl@google.com\u003e\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\nSLSA-Policy-Verified: SLSA Policy Verification Service \u003cdevtools-gerritcodereview-exitgate@google.com\u003e\n"
    },
    {
      "commit": "0b364bbf0c2e8686163f82484685f5a68c444172",
      "tree": "76c7a582bd9b9118324fa412822d1708bc43a1c7",
      "parents": [
        "8d8e1a8876fadafca3fc651c7a8bfea41ea292b8"
      ],
      "author": {
        "name": "Adam Langley",
        "email": "agl@imperialviolet.org",
        "time": "Tue Jun 23 17:40:54 2026 +0000"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Tue Jun 23 13:50:01 2026 -0700"
      },
      "message": "ACVP: add extra ML-KEM tests.\n\nThese appear to be effectively required in practice.\n\nChange-Id: I7d2fe54454f0cd65c55f9ca1a1b305af50508850\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/97827\nAuto-Submit: Adam Langley \u003cagl@google.com\u003e\nReviewed-by: David Benjamin \u003cdavidben@google.com\u003e\nSLSA-Policy-Verified: SLSA Policy Verification Service \u003cdevtools-gerritcodereview-exitgate@google.com\u003e\nCommit-Queue: Adam Langley \u003cagl@google.com\u003e\n"
    },
    {
      "commit": "8d8e1a8876fadafca3fc651c7a8bfea41ea292b8",
      "tree": "3f2c35108c704199f0f51286bd1aa646090d5163",
      "parents": [
        "5d1e55255ec5d97569caaf901351691669ad61e6"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Sun Oct 26 12:17:47 2025 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Tue Jun 23 13:16:43 2026 -0700"
      },
      "message": "Remove some old commented out OpenSSL debug code\n\nWe should also rewrite this parser. There\u0027s no reason to mutate the\nbuffer.\n\nChange-Id: I4a6b39477104f32e3137c9a6d8ed77b6c0dfbe99\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/97148\nAuto-Submit: David Benjamin \u003cdavidben@google.com\u003e\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\nPresubmit-BoringSSL-Verified: boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com \u003cboringssl-scoped@luci-project-accounts.iam.gserviceaccount.com\u003e\n"
    },
    {
      "commit": "5d1e55255ec5d97569caaf901351691669ad61e6",
      "tree": "d36cc9cdf270c9c570ae48266eef14371a74717f",
      "parents": [
        "a415aa4af5aff83841340ac2222aed627e956115"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Sat Jun 13 07:39:32 2026 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Tue Jun 23 12:45:42 2026 -0700"
      },
      "message": "Use scopers for embedded ASN1_STRING and X509_ALGOR\n\nIdeally we\u0027d do this with the opaque/private struct split, but these\nstructs are public.\n\nChange-Id: I38b8fa6a16a4526975c6c451f84d5252422952af\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/97155\nReviewed-by: Rudolf Polzer \u003crpolzer@google.com\u003e\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\n"
    },
    {
      "commit": "a415aa4af5aff83841340ac2222aed627e956115",
      "tree": "e7d839d6d1bc107e6ab46917d1835a8ab6c95a1b",
      "parents": [
        "f8625c50f6d57cb0bab55b44552ad367a98eb540"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Sat Jun 13 07:20:45 2026 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Tue Jun 23 12:37:59 2026 -0700"
      },
      "message": "Make X509_NAME_ENTRY an opaque type\n\nThis is a bit tedious than it should be because X509Name stores a\nSTACK_OF(X509_NAME_ENTRY) intead of a Vector\u003cUniquePtr\u003cX509NameEntry\u003e\u003e\nso we need to cast a bunch.\n\nChange-Id: I0a2635fae1afe217f941f01751463082ff9237d8\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/97154\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\n"
    },
    {
      "commit": "f8625c50f6d57cb0bab55b44552ad367a98eb540",
      "tree": "7448c08f3d0bec3b18a0780686bbc910505e57a3",
      "parents": [
        "d8d622f01a61eb076cb11231013f2d24ee2fe627"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Sat Jun 13 07:07:14 2026 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Tue Jun 23 12:37:51 2026 -0700"
      },
      "message": "Switch easy fields in X509 to UniquePtr\n\nEmbedded fields still need some work. Also extensions is tied up in some\npointer-to-pointer calling convention in the awful config bits.\n\nChange-Id: I198403f0baf3a4453999a2677145a97d3f653ae1\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/97153\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\nReviewed-by: Adam Langley \u003cagl@google.com\u003e\n"
    },
    {
      "commit": "d8d622f01a61eb076cb11231013f2d24ee2fe627",
      "tree": "75af9a47a7ceb93b24d756cb36c4bc73b9062b40",
      "parents": [
        "87d795a9722d7c060ba9f823874155e355879085"
      ],
      "author": {
        "name": "David Benjamin",
        "email": "davidben@google.com",
        "time": "Sat Jun 13 06:59:48 2026 -0400"
      },
      "committer": {
        "name": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "email": "boringssl-scoped@luci-project-accounts.iam.gserviceaccount.com",
        "time": "Tue Jun 23 12:37:43 2026 -0700"
      },
      "message": "Fold x509_pubkey_{init,cleanup} into the class\n\nAs part of this, make X509_PUBKEY an opaque type.\n\nChange-Id: I867ed6df39f5a185e3face317c0a37f40096db6c\nReviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/97152\nReviewed-by: Rudolf Polzer \u003crpolzer@google.com\u003e\nCommit-Queue: David Benjamin \u003cdavidben@google.com\u003e\n"
    }
  ],
  "next": "87d795a9722d7c060ba9f823874155e355879085"
}
