Tock release v20180619.1
For Those About To Tock
Liner Notes, 06/19/2018
We're making a few changes to Tock with this release. This release includes ATO-related remediations for Tock which effect the user experience of the system. This release also includes some changes to the administrator user experience as well.
The ATO-related are additional UX changes around logging out of Tock. Logging out of Tock now communicates with the cloud.gov UAA server to ensure that the UAA Session is deleted at the UAA server level. This ensures that logging out of Tock is register in the system within milliseconds. Another ATO-related change is that Tock will now automatically log you out if you are inactive for more than 60 minutes on the site from the last request. There is currently no warning for this functionality. If you are idle on the Tock site for more than 60 minutes, your next request will redirect you to login again.
The rest of the changes made to Tock are outlined below.
Stuff You Can See:
- Clearer Tock notifications leveraging both Happy Tock and Angry Tock #769
- Improved TimeCard form UX #804
- Implement UAA client logout #814
- Auto logout functionality #815
Admin-only Features:
- Snippets report update to include both
General
and18F Non-Billable
projects. #782
Under The Hood:
- Rename credentials service in production from
tock-creds-prod
totock-credentials
#776 - Updates to documentation with help from the 18F Writing Lab #771
- Leverage Snyk instead of Gemnasium for automated dependency vulnerability scanning #805
- Add documentation around logging and backups #809
Code Contributors for this release
Team Tock would like to thank: