Skip to content
Permalink

Comparing changes

Choose two branches to see what’s changed or to start a new pull request. If you need to, you can also or learn more about diff comparisons.

Open a pull request

Create a new pull request by comparing changes across two branches. If you need to, you can also . Learn more about diff comparisons here.
base repository: boostsecurityio/poutine
Failed to load repositories. Confirm that selected base ref is valid, then try again.
Loading
base: v0.16.1
Choose a base ref
...
head repository: boostsecurityio/poutine
Failed to load repositories. Confirm that selected head ref is valid, then try again.
Loading
compare: v0.17.0
Choose a head ref
  • 10 commits
  • 29 files changed
  • 6 contributors

Commits on Apr 16, 2025

  1. build(deps): bump ossf/scorecard-action from 2.4.0 to 2.4.1 (#268)

    Bumps [ossf/scorecard-action](https://github.com/ossf/scorecard-action) from 2.4.0 to 2.4.1.
    - [Release notes](https://github.com/ossf/scorecard-action/releases)
    - [Changelog](https://github.com/ossf/scorecard-action/blob/main/RELEASE.md)
    - [Commits](ossf/scorecard-action@62b2cac...f49aabe)
    
    ---
    updated-dependencies:
    - dependency-name: ossf/scorecard-action
      dependency-type: direct:production
      update-type: version-update:semver-patch
    ...
    
    Signed-off-by: dependabot[bot] <[email protected]>
    Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
    dependabot[bot] authored Apr 16, 2025
    Configuration menu
    Copy the full SHA
    b47e3e1 View commit details
    Browse the repository at this point in the history
  2. build(deps): bump step-security/harden-runner from 2.10.4 to 2.11.0 (#…

    …270)
    
    Bumps [step-security/harden-runner](https://github.com/step-security/harden-runner) from 2.10.4 to 2.11.0.
    - [Release notes](https://github.com/step-security/harden-runner/releases)
    - [Commits](step-security/harden-runner@cb605e5...4d991eb)
    
    ---
    updated-dependencies:
    - dependency-name: step-security/harden-runner
      dependency-type: direct:production
      update-type: version-update:semver-minor
    ...
    
    Signed-off-by: dependabot[bot] <[email protected]>
    Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
    dependabot[bot] authored Apr 16, 2025
    Configuration menu
    Copy the full SHA
    667c697 View commit details
    Browse the repository at this point in the history
  3. build(deps): bump github.com/spf13/cobra from 1.8.1 to 1.9.1 (#275)

    Bumps [github.com/spf13/cobra](https://github.com/spf13/cobra) from 1.8.1 to 1.9.1.
    - [Release notes](https://github.com/spf13/cobra/releases)
    - [Commits](spf13/cobra@v1.8.1...v1.9.1)
    
    ---
    updated-dependencies:
    - dependency-name: github.com/spf13/cobra
      dependency-type: direct:production
      update-type: version-update:semver-minor
    ...
    
    Signed-off-by: dependabot[bot] <[email protected]>
    Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
    dependabot[bot] authored Apr 16, 2025
    Configuration menu
    Copy the full SHA
    4a839c2 View commit details
    Browse the repository at this point in the history
  4. build(deps): bump github.com/open-policy-agent/opa from 1.1.0 to 1.3.0 (

    #277)
    
    Bumps [github.com/open-policy-agent/opa](https://github.com/open-policy-agent/opa) from 1.1.0 to 1.3.0.
    - [Release notes](https://github.com/open-policy-agent/opa/releases)
    - [Changelog](https://github.com/open-policy-agent/opa/blob/main/CHANGELOG.md)
    - [Commits](open-policy-agent/opa@v1.1.0...v1.3.0)
    
    ---
    updated-dependencies:
    - dependency-name: github.com/open-policy-agent/opa
      dependency-type: direct:production
      update-type: version-update:semver-minor
    ...
    
    Signed-off-by: dependabot[bot] <[email protected]>
    Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
    dependabot[bot] authored Apr 16, 2025
    Configuration menu
    Copy the full SHA
    5bcd7b4 View commit details
    Browse the repository at this point in the history
  5. build(deps): bump github/codeql-action from 3.28.8 to 3.28.13 (#281)

    Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.28.8 to 3.28.13.
    - [Release notes](https://github.com/github/codeql-action/releases)
    - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
    - [Commits](github/codeql-action@dd74661...1b549b9)
    
    ---
    updated-dependencies:
    - dependency-name: github/codeql-action
      dependency-type: direct:production
      update-type: version-update:semver-patch
    ...
    
    Signed-off-by: dependabot[bot] <[email protected]>
    Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
    dependabot[bot] authored Apr 16, 2025
    Configuration menu
    Copy the full SHA
    5e8a28f View commit details
    Browse the repository at this point in the history
  6. build(deps): bump goreleaser/goreleaser-action from 6.1.0 to 6.3.0 (#282

    )
    
    Bumps [goreleaser/goreleaser-action](https://github.com/goreleaser/goreleaser-action) from 6.1.0 to 6.3.0.
    - [Release notes](https://github.com/goreleaser/goreleaser-action/releases)
    - [Commits](goreleaser/goreleaser-action@9ed2f89...9c156ee)
    
    ---
    updated-dependencies:
    - dependency-name: goreleaser/goreleaser-action
      dependency-type: direct:production
      update-type: version-update:semver-minor
    ...
    
    Signed-off-by: dependabot[bot] <[email protected]>
    Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
    dependabot[bot] authored Apr 16, 2025
    Configuration menu
    Copy the full SHA
    d9d5725 View commit details
    Browse the repository at this point in the history
  7. Configuration menu
    Copy the full SHA
    de6e426 View commit details
    Browse the repository at this point in the history

Commits on Apr 18, 2025

  1. Add stale branches scannning support (#285)

    * Add stale branches scanning support
    Signed-off-by: Sébastien Graveline <[email protected]>
    Co-authored-by: Copilot <[email protected]>
    Co-authored-by: François Proulx <[email protected]>
    3 people authored Apr 18, 2025
    Configuration menu
    Copy the full SHA
    57eb93e View commit details
    Browse the repository at this point in the history
  2. Add lotp + local gha (#286)

    Talgarr authored Apr 18, 2025
    Configuration menu
    Copy the full SHA
    680725a View commit details
    Browse the repository at this point in the history
  3. Optimize skip rule (#287)

    * Optimize skip rule
    
    Do not compile rules that are going to be filtered by the config
    
    Move HasOnlyRule to valid place
    
    Add cli
    
    * Update cli message
    
    Signed-off-by: Sébastien Graveline <[email protected]>
    
    * Update opa/opa.go
    
    Co-authored-by: Alexis-Maurer Fortin <[email protected]>
    Signed-off-by: Sébastien Graveline <[email protected]>
    
    ---------
    
    Signed-off-by: Sébastien Graveline <[email protected]>
    Co-authored-by: Alexis-Maurer Fortin <[email protected]>
    Talgarr and SUSTAPLE117 authored Apr 18, 2025
    Configuration menu
    Copy the full SHA
    3185069 View commit details
    Browse the repository at this point in the history
Loading