Skip to content

Releases: safedep/vet

v1.8.11

09 Jan 08:37
6b050fe
Compare
Choose a tag to compare

Changelog

v1.8.10

02 Jan 13:47
3fab469
Compare
Choose a tag to compare

Changelog

  • 3fab469 chore: Render malysis report URL in console (#302)
  • 141e984 feat: Add SLSA tag in summary report when available (#301)

v1.8.9

19 Dec 09:36
7daa072
Compare
Choose a tag to compare

Changelog

  • 7daa072 feat: Integrate with SafeDep Malware Analysis Service (#299)

v1.8.8

12 Dec 13:04
d98075e
Compare
Choose a tag to compare

Changelog

  • d98075e fix: Handle package.json when only devDependencies present (#298)
  • 6575029 fix: PURL handling for manifest (#297)

v1.8.7

05 Dec 12:40
5ef1638
Compare
Choose a tag to compare

Changelog

  • 7535652 Merge pull request #295 from AmalChandru/feat/update-to-latest-column
  • 5ef1638 Merge pull request #296 from safedep/fix/rubygems-project-json-report
  • 19aa34e feat(reporter): rename column 'Update To' to 'Latest'
  • 31da7ee fix: RubyGems JSON report project URL handling

v1.8.6

29 Nov 05:51
1101fda
Compare
Choose a tag to compare

Changelog

  • 0186904 Merge pull request #291 from AmalChandru/docs/update-tree-sitter-link-code-analysis
  • 1101fda Merge pull request #294 from safedep/feat/293-pkg-insight-json-report-spec
  • f02786f feat: Add project info in JSON report

v1.8.5

25 Nov 15:07
041dd15
Compare
Choose a tag to compare

Changelog

  • 4d5bbff Merge pull request #288 from AmalChandru/docs/fix-broken-link-policy-as-code
  • 041dd15 Merge pull request #289 from safedep/feat/package-json-parser
  • 2333893 feat: Add support for package.json parsing with approximate semver resolution

v1.8.4

23 Nov 11:53
8a56f5b
Compare
Choose a tag to compare

Changelog

  • 1308f26 Merge pull request #283 from safedep/ci/vet-windows-releaser
  • af18e3a Merge pull request #284 from safedep/ci/fix-vet-windows-releaser
  • 8a56f5b Merge pull request #285 from safedep/ci/fix-vet-windows-releaser
  • 094e557 ci: Add Windows build support
  • 7c3500d fix: Goreleaser workflow
  • 7f23bad fix: Goreleaser workflow - use sudo for apt-get install

v1.8.3

18 Nov 16:00
9fb9b3f
Compare
Choose a tag to compare

Changelog

  • a9eb625 Merge pull request #270 from safedep/fix/fix-purl-handling-gha
  • 1217a37 Merge pull request #274 from safedep/feat/insights-v2-enricher
  • 4f18e79 Merge pull request #278 from safedep/dev-nikhil
  • 3c70b4a Merge pull request #280 from safedep/chore/dependency-upgrade-2024-11-18
  • 080964f Merge pull request #281 from safedep/feat/enhance-markdown-summary-reporter
  • 9fb9b3f Merge pull request #282 from safedep/feat/add-pm-namespace-json-report
  • 358861d Updated maintainers
  • 652b465 chore: Add error msg when Insights v2 is used without API key
  • 41a9b53 chore: Dependency upgrades
  • 007adb4 ci: Run insights v2 E2E only when PR is from same repository
  • ebf6516 feat: Add insights v2 API url config and client
  • 378b1ed feat: Add insights v2 enricher
  • 1899b99 feat: Add source and namespace in manifest in JSON report
  • 780375b feat: Enhance markdown summary reporter to use collapsable sections
  • 350ab78 fix: Add GITHUB_TOKEN for e2e tests
  • 887f3d9 fix: E2E tests to use insights v2 flag from env
  • 4e4302f fix: E2E with safedep API key
  • 42fce64 fix: E2E with safedep API key env variable
  • f163d4c fix: E2E with safedep tenant env variable
  • 0d698b7 fix: GitHub E2E to use control tower ecosystem
  • fcc4c4b fix: GitHub reader E2E test to make it predictable
  • b197943 fix: Handle current version for packages
  • 2031fc6 fix: Insights v2 enricher to call backend API
  • 7859015 fix: Insights v2 vulnerabilities mapper
  • d7356d8 fix: PURL handling for GitHub Actions
  • 26cfebd fix: Remove GITHUB_TOKEN from e2e test run
  • 8f29d4a fix: Show msg to differentiate between authenticated or non-auth scans
  • 130ee7d fix: Use terraform provider as the ecosystem for terraform lockfiles
  • 6c0f426 refactor: Model ecosystem mapper to maintain SSOT
  • d63fed2 wip: Map insights v2 to v1

v1.8.2

25 Oct 04:05
f5e7aa9
Compare
Choose a tag to compare

Changelog

  • 73f6678 Added terraform parser support to generate a package manifest
  • d9a6fd9 Added terraform parser support to generate a package manifest
  • e196604 Added tests for terraform lockfile
  • e1f7071 Changed .terraform.lock.hcl to customParserTerraform
  • 5429f8f Increased parser number in test from 17 to 18
  • 82c631c Mapped ecosystem to custom terraform type
  • 63de99f Merge pull request #260 from insaaniManav/feat/terraform-support
  • 9feafdb Merge pull request #263 from safedep/feat/cloud-apikey-management
  • 298ddbe Merge pull request #264 from safedep/feat/terraform-support
  • f5e7aa9 Merge pull request #266 from safedep/feat/add-support-dev-mode
  • f1c7c61 No need to read the file pass it to the parser directly
  • 0979eda PR review changes
  • 8a32af8 feat: Add api key list command
  • 1430972 feat: Add automatic resolution of terraform lockfile name to custom parser type
  • edb5c25 feat: Add support for API URL overrides
  • 25281e5 feat: Add support to delete API key
  • 7600793 feat: Add table helper to ease table creation and persistence to file
  • d854a93 fix: Type handling in cloud query response
  • 6c7b160 fix: UI rendering for cloud whoami command
  • 3c4f427 fix: Use idiomatic cmd arg name