-
Notifications
You must be signed in to change notification settings - Fork 30
Comparing changes
Open a pull request
base repository: boostsecurityio/poutine
base: v0.15.1
head repository: boostsecurityio/poutine
compare: v0.15.2
- 13 commits
- 23 files changed
- 4 contributors
Commits on Sep 9, 2024
-
Configuration menu - View commit details
-
Copy full SHA for f37cc59 - Browse repository at this point
Copy the full SHA f37cc59View commit details
Commits on Sep 16, 2024
-
Configuration menu - View commit details
-
Copy full SHA for 594a7c6 - Browse repository at this point
Copy the full SHA 594a7c6View commit details -
Update osv.rego - Add new GHA CVE from OSV (#210)
* Update osv.rego - Add new GHA CVE from OSV Signed-off-by: François Proulx <[email protected]> * Update osv.rego Signed-off-by: François Proulx <[email protected]> --------- Signed-off-by: François Proulx <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for d8229b9 - Browse repository at this point
Copy the full SHA d8229b9View commit details
Commits on Sep 17, 2024
-
* database update * bump dependencies * fix version range and added cvss4.0
Configuration menu - View commit details
-
Copy full SHA for 28fc7a3 - Browse repository at this point
Copy the full SHA 28fc7a3View commit details
Commits on Sep 18, 2024
-
build(deps): bump sigstore/cosign-installer from 3.5.0 to 3.6.0 (#200)
Bumps [sigstore/cosign-installer](https://github.com/sigstore/cosign-installer) from 3.5.0 to 3.6.0. - [Release notes](https://github.com/sigstore/cosign-installer/releases) - [Commits](sigstore/cosign-installer@59acb62...4959ce0) --- updated-dependencies: - dependency-name: sigstore/cosign-installer dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 63e8d65 - Browse repository at this point
Copy the full SHA 63e8d65View commit details -
build(deps): bump actions/upload-artifact from 4.3.4 to 4.4.0 (#201)
Bumps [actions/upload-artifact](https://github.com/actions/upload-artifact) from 4.3.4 to 4.4.0. - [Release notes](https://github.com/actions/upload-artifact/releases) - [Commits](actions/upload-artifact@0b2256b...5076954) --- updated-dependencies: - dependency-name: actions/upload-artifact dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for a1bdfd1 - Browse repository at this point
Copy the full SHA a1bdfd1View commit details -
build(deps): bump ossf/scorecard-action from 2.3.3 to 2.4.0 (#202)
Bumps [ossf/scorecard-action](https://github.com/ossf/scorecard-action) from 2.3.3 to 2.4.0. - [Release notes](https://github.com/ossf/scorecard-action/releases) - [Changelog](https://github.com/ossf/scorecard-action/blob/main/RELEASE.md) - [Commits](ossf/scorecard-action@dc50aa9...62b2cac) --- updated-dependencies: - dependency-name: ossf/scorecard-action dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for a6dcf6c - Browse repository at this point
Copy the full SHA a6dcf6cView commit details
Commits on Oct 7, 2024
-
CVE DB Update + Deps Update + Go 1.23 Update (#220)
* update deps * go 1.23 * update cve database
Configuration menu - View commit details
-
Copy full SHA for c847c94 - Browse repository at this point
Copy the full SHA c847c94View commit details -
Configuration menu - View commit details
-
Copy full SHA for 6008965 - Browse repository at this point
Copy the full SHA 6008965View commit details
Commits on Oct 22, 2024
-
build(deps): bump actions/checkout from 4.1.7 to 4.2.0 (#217)
Bumps [actions/checkout](https://github.com/actions/checkout) from 4.1.7 to 4.2.0. - [Release notes](https://github.com/actions/checkout/releases) - [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md) - [Commits](actions/checkout@692973e...d632683) --- updated-dependencies: - dependency-name: actions/checkout dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 3209e17 - Browse repository at this point
Copy the full SHA 3209e17View commit details -
build(deps): bump step-security/harden-runner from 2.8.1 to 2.10.1 (#216
) Bumps [step-security/harden-runner](https://github.com/step-security/harden-runner) from 2.8.1 to 2.10.1. - [Release notes](https://github.com/step-security/harden-runner/releases) - [Commits](step-security/harden-runner@17d0e2b...91182cc) --- updated-dependencies: - dependency-name: step-security/harden-runner dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 6428565 - Browse repository at this point
Copy the full SHA 6428565View commit details -
build(deps): bump github/codeql-action from 3.25.15 to 3.26.10 (#215)
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.25.15 to 3.26.10. - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@afb54ba...e2b3eaf) --- updated-dependencies: - dependency-name: github/codeql-action dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for e8f1c9f - Browse repository at this point
Copy the full SHA e8f1c9fView commit details
Commits on Oct 24, 2024
-
Git Error Handling Improvements + Git Error Resilient Analyze Local (#…
…222) * improving parsing of git errors to give more flexility in error handling * git not found specific error * adding interface type for all git errors * wrapping errors for better context * making the local git client resilient to git errors so poutine can be used on folders that are not in a git repo * Made local git client resilient to git failures and to work when no git repos are present. Added handling to format the output data when no git repo exists
Configuration menu - View commit details
-
Copy full SHA for 160d529 - Browse repository at this point
Copy the full SHA 160d529View commit details
This comparison is taking too long to generate.
Unfortunately it looks like we can’t render this comparison for you right now. It might be too big, or there might be something weird with your repository.
You can try running this command locally to see the comparison on your machine:
git diff v0.15.1...v0.15.2