Sourced from ossf/scorecard-action's releases.
v2.0.6
What's Changed
- Fix - Broken dockerfile by
@naveensrinivasan
in ossf/scorecard-action#979Full Changelog: https://github.com/ossf/scorecard-action/compare/v2.0.5...v2.0.6
v2.0.5
What's Changed
- Remove trailing space from example by
@jamacku
in ossf/scorecard-action#955- :seedling: Bump actions/cache from 3.0.8 to 3.0.10 by
@dependabot
in ossf/scorecard-action#956- :seedling: Bump github/codeql-action from 2.1.25 to 2.1.26 by
@dependabot
in ossf/scorecard-action#957- :seedling: Bump step-security/harden-runner from 1.4.5 to 1.5.0 by
@dependabot
in ossf/scorecard-action#958- :seedling: Bump debian from
5cf1d98
tob46fc4e
by@dependabot
in ossf/scorecard-action#959- :seedling: Bump github.com/sigstore/cosign from 1.12.1 to 1.13.0 by
@dependabot
in ossf/scorecard-action#962- :seedling: Upgrade to go 1.19 by
@naveensrinivasan
in ossf/scorecard-action#961- :seedling: Bump github.com/spf13/cobra from 1.5.0 to 1.6.0 by
@dependabot
in ossf/scorecard-action#967- :seedling: Bump golang from
c2a98a5
tob850621
by@dependabot
in ossf/scorecard-action#966- :seedling: Bump golang from
b850621
to25de7b6
by@dependabot
in ossf/scorecard-action#968- New release for Scorecard v4.8.0 by
@naveensrinivasan
in ossf/scorecard-action#969New Contributors
@jamacku
made their first contribution in ossf/scorecard-action#955Full Changelog: https://github.com/ossf/scorecard-action/compare/v2.0.4...v2.0.5
v2.0.4
Fixes #856
What's Changed
- :seedling: Bump github.com/caarlos0/env/v6 from 6.10.0 to 6.10.1 by
@dependabot
in ossf/scorecard-action#934- feat: do not run signing on pull requests by
@laurentsimon
in ossf/scorecard-action#935- :seedling: Bump debian from 11.4-slim to 11.5-slim by
@dependabot
in ossf/scorecard-action#936- :seedling: Bump github.com/sigstore/cosign from 1.11.1 to 1.12.0 by
@dependabot
in ossf/scorecard-action#938- :seedling: Bump github/codeql-action from 2.1.22 to 2.1.24 by
@dependabot
in ossf/scorecard-action#941- 🐛 Restore behavior of ignoring scorecard runtime errors by
@spencerschrock
in ossf/scorecard-action#948- :seedling: Bump actions/dependency-review-action from 2.1.0 to 2.4.0 by
@dependabot
in ossf/scorecard-action#950- :seedling: Bump github.com/sigstore/cosign from 1.12.0 to 1.12.1 by
@dependabot
in ossf/scorecard-action#947- :seedling: Bump github/codeql-action from 2.1.24 to 2.1.25 by
@dependabot
in ossf/scorecard-action#949- :seedling: Bump codecov/codecov-action from 3.1.0 to 3.1.1 by
@dependabot
in ossf/scorecard-action#942- Create v2.0.4 patch by
@spencerschrock
in ossf/scorecard-action#952New Contributors
@spencerschrock
made their first contribution in ossf/scorecard-action#948Full Changelog: https://github.com/ossf/scorecard-action/compare/v2.0.3...v2.0.4
99c5375
Fix - Broken dockerfile (#979)ff6221f
New release for Scorecard v4.8.0 (#969)608d088
:seedling: Bump golang from b850621
to 25de7b6
(#968)5e97403
:seedling: Bump golang from c2a98a5
to b850621
(#966)851b893
:seedling: Bump github.com/spf13/cobra from 1.5.0 to 1.6.0 (#967)c986617
:seedling: Upgrade to go 1.19 (#961)c3d8fd9
:seedling: Bump github.com/sigstore/cosign from 1.12.1 to 1.13.0 (#962)6075f42
:seedling: Bump debian from 5cf1d98
to b46fc4e
(#959)f300553
:seedling: Bump step-security/harden-runner from 1.4.5 to 1.5.0 (#958)de0b2c5
:seedling: Bump github/codeql-action from 2.1.25 to 2.1.26 (#957)