Releases: mindersec/minder
Releases · mindersec/minder
v0.0.88
What's Changed
- Support different credential files for different API hosts by @evankanderson in #5560
- Auto-generated cli documentation update - 2025-04-04 02:35:18 by @github-actions in #5561
- Don't return errors when getting properties by @JAORMX in #5515
Dependency changes:
- build(deps): bump bufbuild/buf-action from 1.1.0 to 1.1.1 by @dependabot in #5550
- build(deps): bump goreleaser/goreleaser-action from 6.2.1 to 6.3.0 by @dependabot in #5549
- Clean up react dependabot batching, remove old docusarus v2 holdbacks by @evankanderson in #5556
- build(deps-dev): bump typescript-eslint from 8.28.0 to 8.29.0 in /docs in the eslint group by @dependabot in #5558
- Upgrade to go 1.24.1, update /tools by @evankanderson in #5555
- build(deps): bump the react group in /docs with 3 updates by @dependabot in #5557
- build(deps): bump image-size from 1.2.0 to 1.2.1 in /docs by @dependabot in #5559
- build(deps-dev): bump the eslint group in /docs with 3 updates by @dependabot in #5566
- build(deps): bump golangci/golangci-lint-action from 6.5.2 to 7.0.0 by @dependabot in #5548
- build(deps): bump golang.org/x/oauth2 from 0.27.0 to 0.29.0 by @dependabot in #5562
- build(deps): bump styled-components from 6.1.16 to 6.1.17 in /docs by @dependabot in #5564
- build(deps): bump gitlab.com/gitlab-org/api/client-go from 0.120.0 to 0.127.0 by @dependabot in #5563
- build(deps): bump github.com/rs/zerolog from 1.33.0 to 1.34.0 by @dependabot in #5544
- build(deps): bump estree-util-value-to-estree from 3.2.1 to 3.3.3 in /docs by @dependabot in #5567
- build(deps-dev): bump eslint-plugin-react from 7.37.4 to 7.37.5 in /docs in the react group by @dependabot in #5565
- build(deps): bump github.com/cloudevents/sdk-go/v2 from 2.15.2 to 2.16.0 by @dependabot in #5546
- build(deps): bump helm.sh/helm/v3 from 3.15.2 to 3.17.3 in /tools by @dependabot in #5568
- build(deps): bump prismjs from 1.29.0 to 1.30.0 in /docs by @dependabot in #5569
Full Changelog: v0.0.87...v0.0.88
v0.0.87
What's Changed
- Add
profile export
and top-levelapply
commands by @evankanderson in #5540
Dependency Updates
- build(deps): bump github.com/containerd/containerd from 1.7.25 to 1.7.27 in /tools by @dependabot in #5518
- Clean up transaction handling for datasources to avoid error messages by @evankanderson in #5521
- Move email file parsing (and env setting) to TestMain to reduce flakes by @evankanderson in #5523
- build(deps): bump actions/setup-node from 4.2.0 to 4.3.0 by @dependabot in #5512
- Update regal to 0.31.1 and OPA to 1.1.0 by @evankanderson in #5522
- Update go-jwt to fix security scan issue by @dmjb in #5536
- build(deps): bump github/codeql-action from 3.28.11 to 3.28.12 by @dependabot in #5535
- build(deps): bump actions/setup-go from 5.3.0 to 5.4.0 by @dependabot in #5534
- build(deps): bump golangci/golangci-lint-action from 6.5.0 to 6.5.2 by @dependabot in #5533
- build(deps): bump redocusaurus from 2.2.1 to 2.2.2 in /docs in the docusaurus group by @dependabot in #5527
- build(deps): bump github.com/evanphx/json-patch/v5 from 5.9.10 to 5.9.11 by @dependabot in #5510
- build(deps): bump the otel group across 1 directory with 7 updates by @dependabot in #5524
- build(deps): bump bufbuild/buf-action from 1.0.3 to 1.1.0 by @dependabot in #5514
- build(deps): bump styled-components from 6.1.15 to 6.1.16 in /docs by @dependabot in #5529
- build(deps): bump mobx from 6.13.6 to 6.13.7 in /docs by @dependabot in #5528
- build(deps): bump github.com/bufbuild/buf from 1.50.0 to 1.50.1 in /tools by @dependabot in #5509
- build(deps): bump github.com/thomaspoignant/go-feature-flag from 1.40.0 to 1.42.0 by @dependabot in #5491
- build(deps): bump github.com/golangci/golangci-lint from 1.64.6 to 1.64.8 in /tools by @dependabot in #5531
- Upgrade OpenFeature to 1.14.1, simplify flag interface by @evankanderson in #5493
- Fix detected race in interna/providers/github/webhook by locking channel access by @evankanderson in #5537
- build(deps-dev): bump the eslint group across 1 directory with 4 updates by @dependabot in #5538
- build(deps): bump github.com/go-critic/go-critic from 0.12.0 to 0.13.0 in /tools by @dependabot in #5532
- Upgrade grpc-gateway in tools by @evankanderson in #5539
- Auto-generated cli documentation update - 2025-03-28 06:33:04 by @github-actions in #5541
Full Changelog: v0.0.86...v0.0.87
v0.0.86
What's Changed
- Release PR comment alert type by @eleftherias in #5437
- Release .tar.gz bundler functions by @eleftherias in #5438
- Add data_sources docs by @teodor-yanev in #5455
- Remove data sources feature flag by @teodor-yanev in #5456
- Update maintainer list to point to community by @evankanderson in #5479
- Update commit author for winget releases by @evankanderson in #5477
- Remove hard-coded 'stacklok' realm from minder by @evankanderson in #5478
- Record Metrics for Reminder by @Vyom-Yadav in #4831
- Fix GRPCRoute definition based on experimental evidence by @evankanderson in #5494
- Fix race in webhooks test by @evankanderson in #5495
- Move email templates to data by @evankanderson in #5496
- Implement a SendGrid email sender by @evankanderson in #5497
- Add API for dealing directly with entity instances by @JAORMX in #5480
- Determine authentication host based on WWW-Authenticate header by @evankanderson in #5502
- Don't mix GRPCRoute with HTTPRoute on the same hostname by @evankanderson in #5504
- Use proper comment syntax in YAML files by @evankanderson in #5505
- Fix GRPC routing as well as HTTP routing by @evankanderson in #5506
- Fix token URL for offline token use by @evankanderson in #5517
- Fix formatting of GRPC client address by @evankanderson in #5520
Dependency changes:
- build(deps): bump github.com/golangci/golangci-lint from 1.63.4 to 1.64.5 in /tools by @dependabot in #5440
- build(deps): bump google.golang.org/protobuf from 1.36.4 to 1.36.5 by @dependabot in #5448
- build(deps-dev): bump globals from 15.14.0 to 15.15.0 in /docs by @dependabot in #5447
- build(deps-dev): bump eslint from 9.20.0 to 9.20.1 in /docs in the eslint group by @dependabot in #5445
- build(deps): bump github.com/puzpuzpuz/xsync/v3 from 3.4.1 to 3.5.1 by @dependabot in #5449
- build(deps-dev): bump prettier from 3.5.0 to 3.5.1 in /docs by @dependabot in #5446
- build(deps): bump goreleaser/goreleaser-action from 6.1.0 to 6.2.1 by @dependabot in #5443
- build(deps): bump dompurify and mermaid in /docs by @dependabot in #5451
- Release new vulncheck error template by @eleftherias in #5452
- build(deps): bump github.com/openfga/openfga from 1.8.4 to 1.8.5 by @dependabot in #5454
- build(deps): bump github.com/openfga/openfga from 1.8.4 to 1.8.5 in /tools by @dependabot in #5453
- build(deps): bump azure/setup-helm from 4.2.0 to 4.3.0 by @dependabot in #5466
- build(deps): bump github/codeql-action from 3.28.9 to 3.28.10 by @dependabot in #5465
- build(deps): bump sigstore/cosign-installer from 3.8.0 to 3.8.1 by @dependabot in #5464
- build(deps): bump golang.org/x/mod from 0.22.0 to 0.23.0 by @dependabot in #5461
- build(deps-dev): bump the eslint group in /docs with 3 updates by @dependabot in #5457
- build(deps): bump sigs.k8s.io/release-utils from 0.9.0 to 0.11.0 by @dependabot in #5460
- build(deps): bump github.com/go-jose/go-jose/v4 from 4.0.4 to 4.0.5 by @dependabot in #5467
- build(deps): bump docker/build-push-action from 6.13.0 to 6.15.0 by @dependabot in #5468
- build(deps-dev): bump prettier from 3.5.1 to 3.5.2 in /docs by @dependabot in #5458
- build(deps-dev): bump globals from 15.15.0 to 16.0.0 in /docs by @dependabot in #5459
- build(deps): bump peter-evans/create-pull-request from 7.0.6 to 7.0.7 by @dependabot in #5471
- build(deps): bump github.com/golangci/golangci-lint from 1.64.5 to 1.64.6 in /tools by @dependabot in #5469
- build(deps-dev): bump prettier from 3.5.2 to 3.5.3 in /docs by @dependabot in #5474
- build(deps): bump slsa-framework/slsa-github-generator from 2.0.0 to 2.1.0 by @dependabot in #5472
- build(deps): bump docker/setup-buildx-action from 3.9.0 to 3.10.0 by @dependabot in #5470
- build(deps): bump github.com/aws/aws-sdk-go-v2 from 1.34.0 to 1.36.3 by @dependabot in #5475
- build(deps): bump k8s.io/apimachinery from 0.32.1 to 0.32.2 by @dependabot in #5476
- build(deps-dev): bump the eslint group in /docs with 2 updates by @dependabot in #5473
- Upgrade to protovalidate 0.9 with new interface by @evankanderson in #5481
- Upgrade to 6.5 golangci-lint, now with schema checking by @evankanderson in #5482
- build(deps): bump github.com/go-git/go-git/v5 from 5.13.2 to 5.14.0 by @dependabot in #5490
- build(deps): bump github/codeql-action from 3.28.10 to 3.28.11 by @dependabot in #5487
- build(deps): bump peter-evans/create-pull-request from 7.0.7 to 7.0.8 by @dependabot in #5486
- build(deps): bump golang.org/x/tools from 0.30.0 to 0.31.0 in /tools by @dependabot in #5484
- build(deps-dev): bump the eslint group in /docs with 5 updates by @dependabot in #5492
- build(deps): bump @babel/runtime from 7.26.0 to 7.26.10 in /docs by @dependabot in #5500
- build(deps): bump @babel/helpers from 7.26.0 to 7.26.10 in /docs by @dependabot in #5498
- build(deps): bump @babel/runtime-corejs3 from 7.26.0 to 7.26.10 in /docs by @dependabot in #5499
- build(deps): bump golang.org/x/net from 0.35.0 to 0.36.0 by @dependabot in #5501
- build(deps): bump aquasecurity/trivy-action from 0.29.0 to 0.30.0 by @dependabot in #5513
- build(deps): bump github.com/containerd/containerd from 1.7.24 to 1.7.27 by @dependabot in #5519
Full Changelog: v0.0.85...v0.0.86
v0.0.85
What's Changed
- Add data source service to querier by @eleftherias in #5409
- Add support for Gateway API (HTTPRoute) to Helm chart by @evankanderson in #5401
- Auto-generated helm documentation update - 2025-02-07 12:26:35 by @github-actions in #5410
- build(deps): bump github.com/spf13/pflag from 1.0.5 to 1.0.6 by @dependabot in #5417
- build(deps): bump docker/setup-buildx-action from 3.8.0 to 3.9.0 by @dependabot in #5425
- build(deps): bump slsa-framework/slsa-verifier from 2.6.0 to 2.7.0 by @dependabot in #5423
- build(deps): bump sigstore/cosign-installer from 3.7.0 to 3.8.0 by @dependabot in #5422
- build(deps): bump github/codeql-action from 3.28.8 to 3.28.9 by @dependabot in #5421
- build(deps): bump golangci/golangci-lint-action from 6.2.0 to 6.3.1 by @dependabot in #5424
- build(deps): bump github.com/std-uritemplate/std-uritemplate/go/v2 from 2.0.1 to 2.0.3 by @dependabot in #5416
- build(deps): bump styled-components from 6.1.14 to 6.1.15 in /docs by @dependabot in #5415
- build(deps-dev): bump prettier from 3.4.2 to 3.5.0 in /docs by @dependabot in #5414
- Fix check for direct rule grant, add unit tests for same by @evankanderson in #5411
- build(deps-dev): bump the eslint group across 1 directory with 3 updates by @dependabot in #5427
- Fix GitLab webhook url by @teodor-yanev in #5428
- build(deps): bump github.com/openfga/cli from 0.6.3 to 0.6.4 in /tools by @dependabot in #5419
- build(deps): bump google.golang.org/protobuf from 1.36.4 to 1.36.5 in /tools by @dependabot in #5418
- build(deps): bump github.com/grpc-ecosystem/grpc-gateway/v2 from 2.26.0 to 2.26.1 in /tools by @dependabot in #5420
Full Changelog: v0.0.84...v0.0.85
v0.0.84
What's Changed
- Move CLI utilities into internal/util/cli from internal/util to balance tests by @evankanderson in #5386
- Adds ability to specify files to be applied positionally, as well as … by @mesembria in #5388
- Auto-generated cli documentation update - 2025-01-31 08:31:16 by @github-actions in #5389
- Remove score from trusty evaluator by @eleftherias in #5390
- build(deps): bump github/codeql-action from 3.28.6 to 3.28.8 by @dependabot in #5396
- build(deps): bump github.com/grpc-ecosystem/grpc-gateway/v2 from 2.25.1 to 2.26.0 by @dependabot in #5395
- build(deps): bump mobx from 6.13.5 to 6.13.6 in /docs by @dependabot in #5392
- Rename Trusty to Stacklok Insight by @eleftherias in #5398
- build(deps): bump github.com/sigstore/protobuf-specs from 0.3.3 to 0.4.0 by @dependabot in #5393
- build(deps): bump bufbuild/buf-action from 1.0.2 to 1.0.3 by @dependabot in #5397
- Run tests that set env sequentially by @eleftherias in #5399
- Enable additional identity providers for machine accounts (GitHub Actions enablement) by @evankanderson in #5385
- Expose data source list method to querier by @eleftherias in #5400
- Adds check to ensure config file exists. Fixes: #4513 by @mesembria in #5387
- Limit datasources to public networks by @evankanderson in #5391
- Fix typo in UUID regex by @eleftherias in #5403
- Refactor: Move Properties to pkg as Public API by @gajananan in #5402
- Return ID when datasource is created by @eleftherias in #5406
- Enable Algolia for minder docs by @evankanderson in #5405
- Add metrics and additional logging for Data Sources by @teodor-yanev in #5404
Full Changelog: v0.0.83...v0.0.84
v0.0.83
What's Changed
- Relocate comments to rego.Function.Description in preparation for auto-generating documentation. by @evankanderson in #5354
- build(deps): bump github/codeql-action from 3.28.4 to 3.28.5 by @dependabot in #5360
- build(deps): bump coverallsapp/github-action from 2.3.4 to 2.3.6 by @dependabot in #5361
- build(deps): bump buf.build/gen/go/bufbuild/protovalidate/protocolbuffers/go from 1.36.2-20241127180247-a33202765966.1 to 1.36.4-20241127180247-a33202765966.1 by @dependabot in #5356
- build(deps): bump actions/setup-node from 4.1.0 to 4.2.0 by @dependabot in #5358
- build(deps-dev): bump the eslint group in /docs with 2 updates by @dependabot in #5363
- build(deps): bump github.com/google/cel-go from 0.22.1 to 0.23.0 by @dependabot in #5355
- build(deps): bump docker/build-push-action from 6.12.0 to 6.13.0 by @dependabot in #5359
- build(deps): bump google.golang.org/grpc from 1.69.4 to 1.70.0 by @dependabot in #5357
- Increase the max length of a rule description by @eleftherias in #5364
- build(deps-dev): bump typescript-eslint from 8.21.0 to 8.22.0 in /docs in the eslint group by @dependabot in #5365
- build(deps): bump github/codeql-action from 3.28.5 to 3.28.6 by @dependabot in #5366
- build(deps): bump github.com/golang-migrate/migrate/v4 from 4.18.1 to 4.18.2 by @dependabot in #5368
- build(deps): bump github.com/goccy/go-json from 0.10.4 to 0.10.5 by @dependabot in #5369
- build(deps): bump github.com/aws/aws-sdk-go-v2/service/sesv2 from 1.41.1 to 1.41.2 by @dependabot in #5367
- Update dependabot.yml to weekly updates by @rdimitrov in #5370
- build(deps): bump google.golang.org/protobuf from 1.36.4-0.20250116160514-2005adbe0cf6 to 1.36.4 in /tools by @dependabot in #5362
- build(deps): bump github.com/evanphx/json-patch/v5 from 5.9.0 to 5.9.10 by @dependabot in #5371
- build(deps): bump github.com/aws/aws-sdk-go-v2/config from 1.29.1 to 1.29.2 by @dependabot in #5373
- build(deps): bump github.com/sigstore/sigstore-go from 0.6.2 to 0.7.0 by @dependabot in #5372
- Add additional test coverage for helper functions in Util by @gajananan in #4651
- Fall back to generic env for selectors by @eleftherias in #5379
Full Changelog: v0.0.82...v0.0.83
v0.0.82
What's Changed
- build(deps): bump google.golang.org/protobuf from 1.36.1 to 1.36.2 by @dependabot in #5263
- build(deps): bump gitlab.com/gitlab-org/api/client-go from 0.118.0 to 0.119.0 by @dependabot in #5264
- build(deps): bump buf.build/gen/go/bufbuild/protovalidate/protocolbuffers/go from 1.36.1-20241127180247-a33202765966.1 to 1.36.2-20241127180247-a33202765966.1 by @dependabot in #5265
- build(deps): bump github.com/bufbuild/buf from 1.48.0 to 1.49.0 in /tools by @dependabot in #5266
- build(deps): bump google.golang.org/protobuf from 1.36.1 to 1.36.2 in /tools by @dependabot in #5267
- build(deps): bump github.com/open-policy-agent/opa from 0.70.0 to 1.0.0 by @dependabot in #5251
- Add support for Get Profile Status By ID in Cli and Api by @navnitms in #5100
- Auto-generated cli documentation update - 2025-01-09 09:45:59 by @github-actions in #5270
- Add support for subscriptions to data sources by @eleftherias in #5271
- Improve test coverage for handlers_profile by @teodor-yanev in #5269
- Auto-generated DB schema update - 2025-01-09 13:37:38 by @github-actions in #5274
- build(deps): bump github.com/ThreeDotsLabs/watermill from 1.4.1 to 1.4.2 by @dependabot in #5278
- build(deps): bump github.com/aws/aws-sdk-go-v2/config from 1.28.7 to 1.28.9 by @dependabot in #5280
- build(deps): bump github.com/spf13/afero from 1.11.0 to 1.12.0 by @dependabot in #5277
- build(deps): bump github.com/aws/aws-sdk-go-v2/service/sesv2 from 1.40.1 to 1.40.2 by @dependabot in #5279
- Limit allowed redirect URLs from GetAuthorizationURL by @evankanderson in #5282
- Limit http.send in rego evaluation to "normal" public IPs. by @evankanderson in #5281
- Update CoC CONTRIBUTING.md by @staceypotter in #5284
- build(deps): bump docker/build-push-action from 6.10.0 to 6.11.0 by @dependabot in #5276
- build(deps): bump github.com/go-git/go-billy/v5 from 5.6.1 to 5.6.2 by @dependabot in #5286
- build(deps): bump github.com/mikefarah/yq/v4 from 4.44.6 to 4.45.1 by @dependabot in #5287
- build(deps): bump github.com/mikefarah/yq/v4 from 4.44.6 to 4.45.1 in /tools by @dependabot in #5291
- build(deps): bump github/codeql-action from 3.28.0 to 3.28.1 by @dependabot in #5290
- build(deps): bump github.com/aws/aws-sdk-go-v2/config from 1.28.9 to 1.28.10 by @dependabot in #5289
- build(deps): bump github.com/sigstore/protobuf-specs from 0.3.2 to 0.3.3 by @dependabot in #5288
- Add
mindev ruletype init
to kick off a rule type by @JAORMX in #5228 - Add alias to data source reference by @eleftherias in #5292
- Fix localhost detection for URL redirect protection by @evankanderson in #5293
- build(deps): bump github.com/openfga/openfga from 1.8.0 to 1.8.3 in /tools by @dependabot in #5295
- build(deps): bump google.golang.org/grpc from 1.69.2 to 1.69.4 by @dependabot in #5297
- build(deps): bump github.com/styrainc/regal from 0.29.2 to 0.30.0 by @dependabot in #5298
- Introduce rego function to parse TOML files by @JAORMX in #5294
- mindev: Add utility to generate a data source definition from a Swagger doc by @JAORMX in #5283
- build(deps): bump github.com/openfga/openfga from 1.8.3 to 1.8.4 by @dependabot in #5299
- build(deps): bump github.com/ThreeDotsLabs/watermill from 1.4.2 to 1.4.3 by @dependabot in #5296
- Support data sources in bundles by @eleftherias in #5301
- build(deps): bump github.com/aws/aws-sdk-go-v2/config from 1.28.10 to 1.28.11 by @dependabot in #5303
- build(deps): bump redocusaurus from 2.2.0 to 2.2.1 in /docs in the docusaurus group by @dependabot in #5302
- build(deps): bump github.com/go-playground/validator/v10 from 10.23.0 to 10.24.0 by @dependabot in #5304
- Expose data source operations to Querier by @eleftherias in #5310
- build(deps): bump google.golang.org/protobuf from 1.36.2 to 1.36.3 by @dependabot in #5315
- build(deps): bump golangci/golangci-lint-action from 6.1.1 to 6.2.0 by @dependabot in #5318
- build(deps): bump ko-build/setup-ko from 0.7 to 0.8 by @dependabot in #5311
- Add "Key Concepts" documentation by @JAORMX in #5275
- build(deps): bump github.com/google/go-containerregistry from 0.20.2 to 0.20.3 by @dependabot in #5319
- build(deps): bump docker/build-push-action from 6.11.0 to 6.12.0 by @dependabot in #5312
- Datasource cleanup: introduce some types and avoid pass-by-context by @evankanderson in #5317
- build(deps): bump k8s.io/apimachinery from 0.32.0 to 0.32.1 by @dependabot in #5313
- Add documentation style guide and tool configs by @danbarr in #5320
- build(deps): bump k8s.io/client-go from 0.32.0 to 0.32.1 by @dependabot in #5314
- build(deps): bump github.com/ThreeDotsLabs/watermill from 1.4.3 to 1.4.4 by @dependabot in #5325
- build(deps): bump the otel group with 9 updates by @dependabot in #5323
- build(deps): bump katex from 0.16.11 to 0.16.21 in /docs by @dependabot in #5322
- Add myself to the list of maintainers by @teodor-yanev in #5329
- build(deps): bump actions/setup-go from 5.2.0 to 5.3.0 by @dependabot in #5331
- build(deps): bump actions/stale from 9.0.0 to 9.1.0 by @dependabot in #5330
- build(deps-dev): bump typescript-eslint from 8.20.0 to 8.21.0 in /docs in the eslint group by @dependabot in #5334
- build(deps): bump github.com/styrainc/regal from 0.30.0 to 0.30.2 by @dependabot in #5328
- build(deps): bump github.com/zitadel/oidc/v3 from 3.34.0 to 3.34.1 by @dependabot in #5338
- build(deps): bump github/codeql-action from 3.28.1 to 3.28.2 by @dependabot in #5337
- Add dependency extraction functions by @evankanderson in #5326
- Format and lint all docs by @danbarr in #5336
- build(deps): bump github.com/aws/aws-sdk-go-v2/config from 1.28.11 to 1.29.1 by @dependabot in #5327
- build(deps): bump github/codeql-action from 3.28.2 to 3.28.3 by @dependabot in #5344
- build(deps): bump gitlab.com/gitlab-org/api/client-go from 0.119.0 to 0.120.0 by @dependabot in #5342
- build(deps): bump the otel group with 2 updates by @dependabot in #5341
- Update generated proto reference doc to .mdx by @danbarr in #5340
- Update dependencies in tools by @evankanderson in #5346
- build(deps): bump github.com/aws/aws-sdk-go-v2/service/sesv2 from 1.40.2 to 1.41.1 by @dependabot in #5343
- build(deps): bump github.com/go-git/go-git/v5 from 5.13.1 to 5.13.2 by @dependabot in #5350
- build(deps): bump github.com/nats-io/nats-server/v2 from 2.10.24 to 2.10.25 by @dependabot in #5352
- build(deps): bump github/codeql-action from 3.28.3 to 3.28.4 by @dependabot in #5349
- build(deps): bump github.com/puzpuzpuz/xsync/v3 from 3.4.0 to 3.4.1 by @dependabot in #5351
- build(deps): bump anchore/sbom-action from 0.17.9 to 0.18.0 by @dependabot in #5348
Full Changelog: v0.0.81...v0.0.82
v0.0.81
What's Changed
- build(deps): bump golang.org/x/crypto from 0.30.0 to 0.31.0 by @dependabot in #5184
- build(deps): bump github.com/goccy/go-json from 0.10.3 to 0.10.4 by @dependabot in #5185
- build(deps): bump golang.org/x/crypto from 0.30.0 to 0.31.0 in /tools by @dependabot in #5193
- build(deps): bump github.com/aws/aws-sdk-go-v2/service/sesv2 from 1.38.4 to 1.40.0 by @dependabot in #5183
- Auto-generated cli documentation update - 2024-12-12 15:29:54 by @github-actions in #5190
- build(deps): bump the otel group with 9 updates by @dependabot in #5194
- build(deps): bump k8s.io/client-go from 0.31.4 to 0.32.0 by @dependabot in #5195
- build(deps): bump github.com/grpc-ecosystem/go-grpc-middleware/v2 from 2.1.0 to 2.2.0 by @dependabot in #5196
- Allow template in pull request alert comment by @eleftherias in #5192
- build(deps): bump github/codeql-action from 3.27.7 to 3.27.9 by @dependabot in #5197
- build(deps): bump buf.build/gen/go/bufbuild/protovalidate/protocolbuffers/go from 1.35.2-20240920164238-5a7b106cbb87.1 to 1.35.2-20241127180247-a33202765966.1 by @dependabot in #5070
- Replace the winget reference from stacklok to mindersec by @rdimitrov in #5198
- build(deps): bump google.golang.org/grpc from 1.68.1 to 1.69.0 by @dependabot in #5202
- build(deps): bump anchore/sbom-action from 0.17.8 to 0.17.9 by @dependabot in #5203
- build(deps): bump github.com/nats-io/nats-server/v2 from 2.10.22 to 2.10.23 by @dependabot in #5201
- Add
EvaluationResult
as rule evaluation result. by @blkt in #5144 - build(deps): bump github.com/openfga/openfga from 1.8.1 to 1.8.2 by @dependabot in #5200
- build(deps): bump the otel group with 2 updates by @dependabot in #5199
- build(deps): bump docker/setup-buildx-action from 3.7.1 to 3.8.0 by @dependabot in #5206
- build(deps): bump gitlab.com/gitlab-org/api/client-go from 0.116.0 to 0.117.0 by @dependabot in #5208
- Add mocks for provider interfaces by @JAORMX in #5211
- Return EvalResults from rego constraints evaluation by @eleftherias in #5204
- Support the release entity for the GitHub provider by @JAORMX in #4921
- Revert "build(deps): bump gitlab.com/gitlab-org/api/client-go from 0.116.0 to 0.117.0" by @JAORMX in #5212
- Output GitHub properties for repos and pull requests by @JAORMX in #5213
- Actually attempt to get the GitHub app's user ID by @JAORMX in #5214
- Revert "Actually attempt to get the GitHub app's user ID (#5214)" by @eleftherias in #5217
- Fix mindev linting command by @eleftherias in #5218
- Allow path templating for pull request remediations by @rdimitrov in #5216
- build(deps): bump github.com/thomaspoignant/go-feature-flag from 1.39.1 to 1.40.0 by @dependabot in #5209
- Add entity properties to rego evaluation context. by @blkt in #5215
- Add support for base and target trees in git ingest, add .tar.gz bundler by @evankanderson in #5181
- build(deps): bump github.com/nats-io/nats-server/v2 from 2.10.23 to 2.10.24 by @dependabot in #5221
- build(deps): bump github.com/nats-io/nats.go from 1.37.0 to 1.38.0 by @dependabot in #5220
- build(deps): bump google.golang.org/grpc from 1.69.0 to 1.69.2 by @dependabot in #5225
- Enforce defaults in
deps
ingest pull request configuration by @JAORMX in #5226 - Update docs with newly-added rego functions by @evankanderson in #5235
- Skip testdata yaml files by @eleftherias in #5240
- build(deps): bump peter-evans/create-pull-request from 7.0.5 to 7.0.6 by @dependabot in #5238
- build(deps): bump github.com/golangci/golangci-lint from 1.62.2 to 1.63.1 in /tools by @dependabot in #5239
- build(deps): bump github.com/aws/aws-sdk-go-v2/config from 1.28.6 to 1.28.7 by @dependabot in #5232
- build(deps): bump github.com/grpc-ecosystem/grpc-gateway/v2 from 2.24.0 to 2.25.1 by @dependabot in #5233
- build(deps): bump github/codeql-action from 3.27.9 to 3.28.0 by @dependabot in #5236
- build(deps): bump github.com/aws/aws-sdk-go-v2/service/sesv2 from 1.40.0 to 1.40.1 by @dependabot in #5234
- build(deps): bump google.golang.org/protobuf from 1.35.2 to 1.36.1 in /tools by @dependabot in #5241
- build(deps): bump buf.build/gen/go/bufbuild/protovalidate/protocolbuffers/go from 1.35.2-20241127180247-a33202765966.1 to 1.36.1-20241127180247-a33202765966.1 by @dependabot in #5237
- build(deps): bump github.com/grpc-ecosystem/grpc-gateway/v2 from 2.24.0 to 2.25.1 in /tools by @dependabot in #5230
- Remove short flag from
history purge
command. by @blkt in #5242 - build(deps): bump github.com/bufbuild/buf from 1.47.2 to 1.48.0 in /tools by @dependabot in #5231
- build(deps): bump github.com/golangci/golangci-lint from 1.63.1 to 1.63.3 in /tools by @dependabot in #5244
- build(deps): bump github.com/bufbuild/protovalidate-go from 0.8.0 to 0.8.2 by @dependabot in #5247
- build(deps): bump sigs.k8s.io/release-utils from 0.8.5 to 0.9.0 by @dependabot in #5248
- Fix options reading in
history purge
command. by @blkt in #5243 - build(deps): bump github.com/stacklok/frizbee from 0.1.4 to 0.1.6 by @dependabot in #5246
- build(deps): bump github.com/go-git/go-git/v5 from 5.12.0 to 5.13.1 by @dependabot in #5245
- Add NATS publisher support to reminder by @Vyom-Yadav in #4829
- build(deps): bump styled-components from 6.1.13 to 6.1.14 in /docs by @dependabot in #5256
- build(deps): bump the docusaurus group in /docs with 5 updates by @dependabot in #5255
- build(deps): bump github.com/zitadel/oidc/v3 from 3.33.1 to 3.34.0 by @dependabot in #5252
- build(deps): bump github.com/golangci/golangci-lint from 1.63.3 to 1.63.4 in /tools by @dependabot in #5250
- build(deps): bump github.com/openfga/openfga from 1.8.2 to 1.8.3 by @dependabot in #5254
- build(deps): bump gitlab.com/gitlab-org/api/client-go from 0.116.0 to 0.118.0 by @dependabot in #5253
- Fix type hint in delete history by ids statement. by @blkt in #5249
- build(deps): bump golang.org/x/oauth2 from 0.24.0 to 0.25.0 by @dependabot in #5257
- build(deps): bump golang.org/x/tools from 0.28.0 to 0.29.0 in /tools by @dependabot in #5261
- build(deps): bump react and react-dom in /docs by @dependabot in #5260
- build(deps): bump golang.org/x/crypto from 0.31.0 to 0.32.0 by @dependabot in #5259
- Add tests for common.go by @teodor-yanev in #5191
Full Changelog: v0.0.80...v0.0.81
v0.0.80
What's Changed
- build(deps): bump github.com/xanzy/go-gitlab from 0.114.0 to 0.115.0 by @dependabot in #5178
- build(deps): bump nanoid from 3.3.7 to 3.3.8 in /docs by @dependabot in #5179
- build(deps): bump k8s.io/apimachinery from 0.31.3 to 0.31.4 by @dependabot in #5176
- build(deps): bump actions/setup-go from 5.1.0 to 5.2.0 by @dependabot in #5174
- build(deps): bump github/codeql-action from 3.27.6 to 3.27.7 by @dependabot in #5173
- Allow empty version to be the same as v1 in providers by @evankanderson in #5172
- Migrate away from github.com/xanzy/go-gitlab to gitlab.com/gitlab-org/api/client-go by @JAORMX in #5180
- build(deps): bump k8s.io/client-go from 0.31.3 to 0.31.4 by @dependabot in #5177
- Structured data source driver by @puerco in #5165
- Add ingress configuration for data sources. by @blkt in #5186
- Register the project flag for minder datasource by @rdimitrov in #5189
Full Changelog: v0.0.79...v0.0.80
v0.0.79
What's Changed
- build(deps): bump github.com/fergusstrange/embedded-postgres from 1.29.0 to 1.30.0 by @dependabot in #5161
- build(deps): bump github.com/mikefarah/yq/v4 from 4.44.5 to 4.44.6 by @dependabot in #5162
- Bump components' versions in docker-compose.yaml by @prezha in #5152
- Inform user that datasource is not found when creating rule type by @JAORMX in #5163
- Docs: Fix up logos and remove alpha note by @danbarr in #5159
- Update guides to ensure proper perms by @prezha in #5153
- build(deps): bump github.com/mikefarah/yq/v4 from 4.44.5 to 4.44.6 in /tools by @dependabot in #5160
- Add diff ingester, increase test coverage by @evankanderson in #5168
- Allow
git
ingester to work on Pull Requests as well by @JAORMX in #5170 - Promote pull request properties by @JAORMX in #5169
- Fix enabling repo auto registration for providers by @rdimitrov in #5171
Full Changelog: v0.0.78...v0.0.79