Skip to content

v0.8.0

Compare
Choose a tag to compare
@github-actions github-actions released this 20 Jun 13:14
· 959 commits to main since this release

What's Changed

  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.209 to 1.44.210 by @dependabot in #624
  • chore(deps): Bump sigstore/scaffolding from 0.5.4 to 0.6.3 by @dependabot in #622
  • chore(deps): Bump sigstore/cosign-installer from 4079ad3567a89f68395480299c77e40170430341 to 77560e399fb1b0d50a89024c16dd3a908f8d44b5 by @dependabot in #625
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.210 to 1.44.211 by @dependabot in #630
  • chore(deps): Bump k8s.io/api from 0.26.1 to 0.26.2 by @dependabot in #626
  • chore(deps): Bump sigstore/cosign-installer from 3.0.0 to 3.0.1 by @dependabot in #633
  • chore(deps): Bump mikefarah/yq from 4.31.1 to 4.31.2 by @dependabot in #634
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.211 to 1.44.212 by @dependabot in #635
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.212 to 1.44.213 by @dependabot in #636
  • Use default cosign-installer version by @hectorj2f in #637
  • add new required input parameter by @cpanato in #639
  • update sigstore deps by @cpanato in #641
  • chore(deps): Bump golang.org/x/crypto from 0.6.0 to 0.7.0 by @dependabot in #644
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.213 to 1.44.214 by @dependabot in #645
  • Point README to our sigstore docs website by @hectorj2f in #646
  • upgrade to use go1.20 by @cpanato in #642
  • Add an optional Message to Static actions for custom fail message. by @vaikas in #652
  • chore(deps): Bump actions/cache from 3.2.6 to 3.3.0 by @dependabot in #653
  • chore(deps): Bump sigstore/scaffolding from 0.6.3 to 0.6.4 by @dependabot in #654
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.214 to 1.44.217 by @dependabot in #655
  • chore(deps): Bump google.golang.org/protobuf from 1.28.1 to 1.29.0 by @dependabot in #650
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.217 to 1.44.218 by @dependabot in #656
  • chore(deps): Bump actions/cache from 3.3.0 to 3.3.1 by @dependabot in #658
  • chore(deps): Bump google.golang.org/protobuf from 1.29.0 to 1.29.1 by @dependabot in #661
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.218 to 1.44.220 by @dependabot in #660
  • chore(deps): Bump github/codeql-action from 2.2.5 to 2.2.7 by @dependabot in #663
  • chore(deps): Bump actions/setup-go from 3.5.0 to 4.0.0 by @dependabot in #664
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.220 to 1.44.221 by @dependabot in #665
  • chore(deps): Bump google.golang.org/protobuf from 1.29.1 to 1.30.0 by @dependabot in #667
  • chore(deps): Bump github.com/google/go-containerregistry from 0.13.1-0.20230203223142-b3c23b4c3f28 to 0.14.0 by @dependabot in #668
  • chore(deps): Bump actions/checkout from 3.3.0 to 3.4.0 by @dependabot in #666
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.221 to 1.44.223 by @dependabot in #670
  • chore(deps): Bump mikefarah/yq from 4.31.2 to 4.32.2 by @dependabot in #672
  • chore(deps): Bump anchore/sbom-action from 0.13.3 to 0.13.4 by @dependabot in #671
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.223 to 1.44.225 by @dependabot in #674
  • chore(deps): Bump k8s.io/apimachinery from 0.26.2 to 0.26.3 by @dependabot in #675
  • chore(deps): Bump k8s.io/api from 0.26.2 to 0.26.3 by @dependabot in #677
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.225 to 1.44.226 by @dependabot in #680
  • chore(deps): Bump google.golang.org/grpc from 1.53.0 to 1.54.0 by @dependabot in #679
  • chore(deps): Bump github/codeql-action from 2.2.7 to 2.2.8 by @dependabot in #682
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.226 to 1.44.227 by @dependabot in #683
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.227 to 1.44.228 by @dependabot in #685
  • chore(deps): Bump actions/checkout from 3.4.0 to 3.5.0 by @dependabot in #684
  • chore(deps): Bump mikefarah/yq from 4.32.2 to 4.33.1 by @dependabot in #687
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.228 to 1.44.229 by @dependabot in #688
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.229 to 1.44.230 by @dependabot in #690
  • chore(deps): Bump github/codeql-action from 2.2.8 to 2.2.9 by @dependabot in #686
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.230 to 1.44.231 by @dependabot in #691
  • chore(deps): Bump github.com/sigstore/rekor from 1.0.1 to 1.1.0 by @dependabot in #692
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.231 to 1.44.232 by @dependabot in #695
  • chore(deps): Bump ossf/scorecard-action from 2.1.2 to 2.1.3 by @dependabot in #694
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.232 to 1.44.233 by @dependabot in #697
  • chore(deps): Bump mikefarah/yq from 4.33.1 to 4.33.2 by @dependabot in #696
  • Load a TrustRoot reference when using the policy-tester by @hectorj2f in #698
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.233 to 1.44.234 by @dependabot in #699
  • chore(deps): Bump anchore/sbom-action from 0.13.4 to 0.14.1 by @dependabot in #700
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.234 to 1.44.235 by @dependabot in #701
  • chore(deps): Bump github/codeql-action from 2.2.9 to 2.2.10 by @dependabot in #702
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.235 to 1.44.236 by @dependabot in #703
  • chore(deps): Bump github.com/docker/docker from 23.0.1+incompatible to 23.0.3+incompatible by @dependabot in #705
  • chore(deps): Bump github.com/sigstore/sigstore from 1.6.0 to 1.6.1 by @dependabot in #704
  • chore(deps): Bump golang.org/x/net from 0.8.0 to 0.9.0 by @dependabot in #706
  • chore(deps): Bump actions/github-script from 6.4.0 to 6.4.1 by @dependabot in #707
  • chore(deps): Bump github/codeql-action from 2.2.10 to 2.2.11 by @dependabot in #709
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.236 to 1.44.237 by @dependabot in #708
  • chore(deps): Bump sigstore/cosign-installer from 3.0.1 to 3.0.2 by @dependabot in #711
  • chore(deps): Bump golang.org/x/crypto from 0.7.0 to 0.8.0 by @dependabot in #714
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.237 to 1.44.239 by @dependabot in #715
  • bump scorecard script to use latest versions by @hectorj2f in #716
  • chore(deps): Bump mikefarah/yq from 4.33.2 to 4.33.3 by @dependabot in #719
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.239 to 1.44.240 by @dependabot in #720
  • update links to use CDN-backed TUF endpoint by @bobcallaway in #718
  • chore(deps): Bump github.com/sigstore/sigstore from 1.6.1 to 1.6.2 by @dependabot in #721
  • chore(deps): Bump github.com/sigstore/cosign/v2 from 2.0.1-0.20230302191159-6dcfd1af02ba to 2.0.1 by @dependabot in #713
  • chore(deps): Bump actions/checkout from 3.5.0 to 3.5.1 by @dependabot in #723
  • chore(deps): Bump codecov/codecov-action from 3.1.1 to 3.1.2 by @dependabot in #722
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.240 to 1.44.241 by @dependabot in #726
  • chore(deps): Bump actions/checkout from 3.5.1 to 3.5.2 by @dependabot in #729
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.241 to 1.44.242 by @dependabot in #731
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.242 to 1.44.243 by @dependabot in #733
  • chore(deps): Bump github/codeql-action from 2.2.11 to 2.2.12 by @dependabot in #730
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.243 to 1.44.244 by @dependabot in #737
  • Add logo and badges by @hectorj2f in #739
  • chore(deps): Bump google-github-actions/auth from 1.0.0 to 1.1.0 by @dependabot in #740
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.244 to 1.44.245 by @dependabot in #741
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.245 to 1.44.246 by @dependabot in #744
  • chore(deps): Bump codecov/codecov-action from 3.1.2 to 3.1.3 by @dependabot in #743
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.246 to 1.44.247 by @dependabot in #746
  • chore(deps): Bump github/codeql-action from 2.2.12 to 2.3.0 by @dependabot in #747
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.247 to 1.44.248 by @dependabot in #748
  • chore(deps): Bump github.com/sigstore/sigstore from 1.6.2 to 1.6.3 by @dependabot in #749
  • chore(deps): Bump sigstore/cosign-installer from 3.0.2 to 3.0.3 by @dependabot in #750
  • chore(deps): Bump github.com/sigstore/cosign/v2 from 2.0.1 to 2.0.2 by @dependabot in #751
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.248 to 1.44.249 by @dependabot in #752
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.249 to 1.44.250 by @dependabot in #753
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.250 to 1.44.251 by @dependabot in #755
  • chore(deps): Bump github/codeql-action from 2.3.0 to 2.3.1 by @dependabot in #754
  • chore(deps): Bump github/codeql-action from 2.3.1 to 2.3.2 by @dependabot in #756
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.251 to 1.44.253 by @dependabot in #758
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.253 to 1.44.254 by @dependabot in #759
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.254 to 1.44.255 by @dependabot in #760
  • chore(deps): Bump github.com/sigstore/rekor from 1.1.0 to 1.1.1 by @dependabot in #761
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.255 to 1.44.256 by @dependabot in #762
  • chore(deps): Bump github/codeql-action from 2.3.2 to 2.3.3 by @dependabot in #763
  • chore(deps): Bump google.golang.org/grpc from 1.54.0 to 1.55.0 by @dependabot in #767
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.256 to 1.44.257 by @dependabot in #764
  • chore(deps): Bump github.com/sigstore/sigstore from 1.6.3 to 1.6.4 by @dependabot in #766
  • chore(deps): Bump anchore/sbom-action from 0.14.1 to 0.14.2 by @dependabot in #768
  • chore(deps): Bump golang.org/x/net from 0.9.0 to 0.10.0 by @dependabot in #769
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.257 to 1.44.258 by @dependabot in #770
  • chore(deps): Bump github.com/google/go-containerregistry from 0.14.1-0.20230409045903-ed5c185df419 to 0.15.1 by @dependabot in #765
  • chore(deps): Bump google-github-actions/auth from 1.1.0 to 1.1.1 by @dependabot in #772
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.258 to 1.44.259 by @dependabot in #774
  • chore(deps): Bump golang.org/x/crypto from 0.8.0 to 0.9.0 by @dependabot in #773
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.259 to 1.44.261 by @dependabot in #777
  • chore(deps): Bump google-github-actions/setup-gcloud from 1.1.0 to 1.1.1 by @dependabot in #775
  • chore(deps): Bump slsa-framework/slsa-github-generator from 1.5.0 to 1.6.0 by @dependabot in #778
  • chore(deps): Bump github.com/cloudflare/circl from 1.1.0 to 1.3.3 by @dependabot in #779
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.261 to 1.44.262 by @dependabot in #781
  • chore(deps): Bump github.com/docker/distribution from 2.8.1+incompatible to 2.8.2+incompatible by @dependabot in #780
  • chore(deps): Bump actions/setup-go from 4.0.0 to 4.0.1 by @dependabot in #782
  • chore(deps): Bump sigstore/cosign-installer from 3.0.3 to 3.0.4 by @dependabot in #785
  • chore(deps): Bump codecov/codecov-action from 3.1.3 to 3.1.4 by @dependabot in #784
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.262 to 1.44.263 by @dependabot in #786
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.263 to 1.44.264 by @dependabot in #788
  • chore(deps): Bump github.com/google/go-containerregistry from 0.15.1 to 0.15.2 by @dependabot in #787
  • chore(deps): Bump sigstore/cosign-installer from 3.0.4 to 3.0.5 by @dependabot in #789
  • chore(deps): Bump github.com/stretchr/testify from 1.8.2 to 1.8.3 by @dependabot in #795
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.264 to 1.44.266 by @dependabot in #796
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.266 to 1.44.267 by @dependabot in #799
  • chore(deps): Bump mikefarah/yq from 4.33.3 to 4.34.1 by @dependabot in #798
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.267 to 1.44.269 by @dependabot in #802
  • chore(deps): Bump github/codeql-action from 2.3.3 to 2.3.4 by @dependabot in #801
  • chore(deps): Bump github.com/sigstore/rekor from 1.1.1 to 1.2.1 by @dependabot in #805
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.269 to 1.44.270 by @dependabot in #804
  • chore(deps): Bump github/codeql-action from 2.3.4 to 2.3.5 by @dependabot in #803
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.270 to 1.44.271 by @dependabot in #807
  • Bump knative dependencies by @hectorj2f in #806
  • chore(deps): Bump github.com/stretchr/testify from 1.8.3 to 1.8.4 by @dependabot in #808
  • Fix: Have the policy-tester library check policy result. by @mattmoor in #809
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.271 to 1.44.272 by @dependabot in #811
  • chore(deps): Bump github/codeql-action from 2.3.5 to 2.3.6 by @dependabot in #813
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.272 to 1.44.273 by @dependabot in #814
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.273 to 1.44.274 by @dependabot in #816
  • chore(deps): Bump golangci/golangci-lint-action from 3.4.0 to 3.5.0 by @dependabot in #815
  • chore(deps): Bump github.com/sigstore/sigstore from 1.6.4 to 1.6.5 by @dependabot in #812
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.274 to 1.44.275 by @dependabot in #818
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.275 to 1.44.276 by @dependabot in #819
  • chore(deps): Bump slsa-framework/slsa-github-generator from 1.6.0 to 1.7.0 by @dependabot in #821
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.276 to 1.44.277 by @dependabot in #822
  • chore(deps): Bump github.com/hashicorp/go-retryablehttp from 0.7.2 to 0.7.4 by @dependabot in #823
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.277 to 1.44.278 by @dependabot in #827
  • chore(deps): Bump actions/checkout from 3.5.2 to 3.5.3 by @dependabot in #829
  • chore(deps): Bump github/codeql-action from 2.3.6 to 2.13.4 by @dependabot in #828
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.278 to 1.44.279 by @dependabot in #830
  • fixing expired root json and repository values by @hectorj2f in #831
  • Bump go-containerregistry dep by @hectorj2f in #833
  • general Updates by @cpanato in #837
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.279 to 1.44.280 by @dependabot in #836
  • chore(deps): Bump goreleaser/goreleaser-action from 4.2.0 to 4.3.0 by @dependabot in #834
  • chore(deps): Bump golang.org/x/crypto from 0.9.0 to 0.10.0 by @dependabot in #839
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.280 to 1.44.281 by @dependabot in #840
  • chore(deps): Bump golangci/golangci-lint-action from 3.5.0 to 3.6.0 by @dependabot in #835
  • chore(deps): Bump golang.org/x/net from 0.10.0 to 0.11.0 by @dependabot in #838
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.281 to 1.44.282 by @dependabot in #841
  • chore(deps): Bump k8s.io/client-go from 0.26.5 to 0.27.3 by @dependabot in #842
  • chore(deps): Bump github.com/sigstore/sigstore from 1.6.5 to 1.7.0 by @dependabot in #844
  • chore(deps): Bump github.com/sigstore/sigstore/pkg/signature/kms/gcp from 1.6.5 to 1.7.0 by @dependabot in #847
  • chore(deps): Bump github.com/sigstore/sigstore/pkg/signature/kms/azure from 1.6.5 to 1.7.0 by @dependabot in #848
  • chore(deps): Bump github.com/sigstore/sigstore/pkg/signature/kms/aws from 1.6.5 to 1.7.0 by @dependabot in #845
  • chore(deps): Bump google.golang.org/grpc from 1.55.0 to 1.56.0 by @dependabot in #851
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.282 to 1.44.283 by @dependabot in #852
  • chore(deps): Bump github.com/sigstore/sigstore/pkg/signature/kms/hashivault from 1.6.5 to 1.7.0 by @dependabot in #843
  • chore(deps): Bump github.com/aws/aws-sdk-go from 1.44.283 to 1.44.284 by @dependabot in #853
  • Combine the two controllers into a single pod by @hectorj2f in #717

Full Changelog: v0.7.0...v0.8.0