Impact
- Apps embedding the SDK could be filtered out of the Google Play Store on landscape-only devices. This release removes that unintended filtering, with no change to Transact's portrait behavior.
- Security hardening: the Transact web view now strips Authorization and Cookie headers when a redirect crosses to a different origin, preventing credentials from leaking across origins.
Changes
- Fixed Google Play device filtering that could hide consuming apps on landscape-only devices, by declaring screen-orientation features as not required
- Hardened cross-origin redirect handling to strip Authorization, Proxy-Authorization, and Cookie headers on cross-origin hops (muppet 0.0.0-alpha47)
- Updated bundled Material components
Products
- Deposit
- Switch
- Manage
Requirements
Latest
- Kotlin: 2.0+ (build version 2.1.21)
- Gradle: 8.11.1+ (build version 8.14.2)
- AGP: 8.9+ (build version 8.9.1)
- Min SDK: 23 (build version 23)
- Target SDK: 35 (build version 35)
Legacy (-kotlin1.9)
- Kotlin: 1.9.x (build version 1.9.25)
- Gradle: 8.0+ (build version 8.7)
- AGP: 8.1 - 8.5 (build version 8.1.4)
- Min SDK: 23 (build version 23)
- Target SDK: 35 (build version 35)