Skip to content

Releases: stacklok/trusty-action

v0.0.7: Merge pull request #43 from stacklok/dependabot/github_actions/action…

16 Jul 04:22
91b0802
Compare
Choose a tag to compare
…s/checkout-4.1.7

build(deps): bump actions/checkout from 4.1.6 to 4.1.7

v0.0.6 Latest Marketplace Release

10 Jun 12:18
018f3f2
Compare
Choose a tag to compare

What's Changed

  • Replace unpinned actions with pinned action by @stacklokbot in #21
  • Add Dependabot configuration for gomod by @stacklokbot in #22
  • build(deps): bump golang.org/x/oauth2 from 0.18.0 to 0.20.0 by @dependabot in #24
  • Add Trivy repository scan configuration by @stacklokbot in #23
  • Add dependabot github-actions configuration by @JAORMX in #26
  • build(deps): bump aquasecurity/trivy-action from 0.16.1 to 0.20.0 by @dependabot in #29
  • build(deps): bump actions/checkout from 3.6.0 to 4.1.5 by @dependabot in #28
  • build(deps): bump github.com/BurntSushi/toml from 1.3.2 to 1.4.0 by @dependabot in #33
  • Update URL to use github-action dedicated URL by @JAORMX in #34
  • build(deps): bump actions/setup-go from 3.5.0 to 5.0.1 by @dependabot in #27
  • build(deps): bump actions/checkout from 4.1.5 to 4.1.6 by @dependabot in #31
  • build(deps): bump aquasecurity/trivy-action from 0.20.0 to 0.21.0 by @dependabot in #32
  • Multiple Changes to PR Comment by @lukehinds in #35
  • Add Metadata and improve description by @lukehinds in #36

New Contributors

Full Changelog: v0.0.5...v0.0.6

v0.0.5

30 Apr 13:47
e2d7d64
Compare
Choose a tag to compare

What's Changed

  • feat: improve report formatting by @yrobla in #17
  • fix: do not use nested parameters by @yrobla in #18

Full Changelog: v0.0.4...v0.0.5

v0.0.4

27 Apr 13:24
ed0d23f
Compare
Choose a tag to compare
v0.0.4 Pre-release
Pre-release

What's Changed

  • fix: use sigstore icon instead of the key one by @yrobla in #12
  • fix: do not early return on score threshold by @yrobla in #14
  • feat: allow to fail on specific scores apart from global by @yrobla in #15

Full Changelog: v0.0.3...v0.0.4

v0.0.3

25 Apr 11:01
bf48970
Compare
Choose a tag to compare
v0.0.3 Pre-release
Pre-release

What's Changed

  • Add testing by @yrobla in #9
  • feat: include information for historical provenance by @yrobla in #10
  • fix: correct formatting for provenance by @yrobla in #11

Full Changelog: v0.0.2...v0.0.3

v0.0.2

25 Apr 06:33
7e00b2e
Compare
Choose a tag to compare
v0.0.2 Pre-release
Pre-release

What's Changed

New Contributors

Full Changelog: v0.0.1...v0.0.2

v0.0.1

31 Mar 09:10
Compare
Choose a tag to compare