Commit Graph

221 Commits

Author SHA1 Message Date
Joel Kamp
a59d6f4390 Merge pull request #104 from docker/dependabot/github_actions/actions/upload-artifact-4.4.3
chore: bump actions/upload-artifact from 4.4.0 to 4.4.3
2024-10-15 08:35:36 -05:00
Joel Kamp
ccb74b9fb7 Merge branch 'main' into dependabot/github_actions/actions/upload-artifact-4.4.3 2024-10-15 08:30:59 -05:00
Joel Kamp
de6b67b3e0 Merge pull request #103 from docker/dependabot/github_actions/golangci/golangci-lint-action-6.1.1
chore: bump golangci/golangci-lint-action from 6.1.0 to 6.1.1
2024-10-15 08:30:40 -05:00
dependabot[bot]
cee30c25dd chore: bump actions/upload-artifact from 4.4.0 to 4.4.3
Bumps [actions/upload-artifact](https://github.com/actions/upload-artifact) from 4.4.0 to 4.4.3.
- [Release notes](https://github.com/actions/upload-artifact/releases)
- [Commits](50769540e7...b4b15b8c7c)

---
updated-dependencies:
- dependency-name: actions/upload-artifact
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-10-14 02:02:21 +00:00
dependabot[bot]
14f0adcaeb chore: bump golangci/golangci-lint-action from 6.1.0 to 6.1.1
Bumps [golangci/golangci-lint-action](https://github.com/golangci/golangci-lint-action) from 6.1.0 to 6.1.1.
- [Release notes](https://github.com/golangci/golangci-lint-action/releases)
- [Commits](aaa42aa062...971e284b60)

---
updated-dependencies:
- dependency-name: golangci/golangci-lint-action
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-10-07 01:17:18 +00:00
attest-release[bot]
8c3fad614c [BOT] Update attest lib (#101)
Co-authored-by: attest-release[bot] <176524748+attest-release[bot]@users.noreply.github.com>
2024-10-02 09:13:20 +00:00
Joel Kamp
7ccdc8c0d2 Merge pull request #100 from docker/feat-update-chart-010
feat: update chart for v0.1.0
attest-provider-0.1.0
2024-10-01 16:42:13 -05:00
mrjoelkamp
4e768795ee feat: update chart for v0.1.0 2024-10-01 16:37:03 -05:00
Joel Kamp
3f2789eea1 Merge pull request #99 from docker/update-attest-lib
[BOT] Update attest go lib
v0.1.0
2024-10-01 16:14:47 -05:00
Joel Kamp
005a4945ec Merge branch 'main' into update-attest-lib 2024-10-01 16:07:53 -05:00
Joel Kamp
2d4538d531 Merge pull request #98 from docker/dependabot/github_actions/github/codeql-action-3.26.10
chore: bump github/codeql-action from 3.26.6 to 3.26.10
2024-10-01 16:07:41 -05:00
attest-release[bot]
4bdeb94f2c [BOT] Update attest lib 2024-10-01 21:04:27 +00:00
Joel Kamp
7d33fc6e40 Merge branch 'main' into dependabot/github_actions/github/codeql-action-3.26.10 2024-10-01 16:00:52 -05:00
Joel Kamp
91de02cd75 Merge pull request #89 from docker/dependabot/github_actions/actions/create-github-app-token-1.11.0
chore: bump actions/create-github-app-token from 1.10.3 to 1.11.0
2024-10-01 16:00:35 -05:00
dependabot[bot]
2bfd8b6229 chore: bump github/codeql-action from 3.26.6 to 3.26.10
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.26.6 to 3.26.10.
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](4dd16135b6...e2b3eafc8d)

---
updated-dependencies:
- dependency-name: github/codeql-action
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-10-01 20:57:01 +00:00
Joel Kamp
d043f700cf Merge branch 'main' into dependabot/github_actions/actions/create-github-app-token-1.11.0 2024-10-01 15:56:08 -05:00
Joel Kamp
1fce13823c Merge pull request #85 from docker/dependabot/github_actions/step-security/harden-runner-2.10.1
chore: bump step-security/harden-runner from 2.9.1 to 2.10.1
2024-10-01 15:55:57 -05:00
Joel Kamp
f635a16795 Merge branch 'main' into dependabot/github_actions/step-security/harden-runner-2.10.1 2024-10-01 15:50:04 -05:00
Joel Kamp
66453b04e5 Merge pull request #97 from docker/dependabot/go_modules/github.com/theupdateframework/go-tuf/v2-2.0.1
chore: bump github.com/theupdateframework/go-tuf/v2 from 2.0.0 to 2.0.1
2024-10-01 15:49:51 -05:00
dependabot[bot]
81d5d173f1 chore: bump github.com/theupdateframework/go-tuf/v2 from 2.0.0 to 2.0.1
Bumps [github.com/theupdateframework/go-tuf/v2](https://github.com/theupdateframework/go-tuf) from 2.0.0 to 2.0.1.
- [Release notes](https://github.com/theupdateframework/go-tuf/releases)
- [Changelog](https://github.com/theupdateframework/go-tuf/blob/master/.goreleaser.yaml)
- [Commits](https://github.com/theupdateframework/go-tuf/compare/v2.0.0...v2.0.1)

---
updated-dependencies:
- dependency-name: github.com/theupdateframework/go-tuf/v2
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-10-01 18:15:26 +00:00
attest-release[bot]
b98dcfcf7b [BOT] Update attest lib (#94)
Co-authored-by: attest-release[bot] <176524748+attest-release[bot]@users.noreply.github.com>
2024-10-01 13:28:17 +00:00
attest-release[bot]
8729fdfa22 [BOT] Update attest lib (#92)
Co-authored-by: attest-release[bot] <176524748+attest-release[bot]@users.noreply.github.com>
2024-09-19 21:14:10 +00:00
attest-release[bot]
7716319800 [BOT] Update attest lib (#91)
Co-authored-by: attest-release[bot] <176524748+attest-release[bot]@users.noreply.github.com>
2024-09-19 13:27:41 +00:00
James Carnegie
0704470d46 chore: rev attest 2024-09-19 14:08:45 +01:00
dependabot[bot]
947c9a8cb4 chore: bump actions/create-github-app-token from 1.10.3 to 1.11.0
Bumps [actions/create-github-app-token](https://github.com/actions/create-github-app-token) from 1.10.3 to 1.11.0.
- [Release notes](https://github.com/actions/create-github-app-token/releases)
- [Commits](31c86eb3b3...5d869da34e)

---
updated-dependencies:
- dependency-name: actions/create-github-app-token
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-09-17 10:15:41 +00:00
Jonny Stoten
76d5f57447 Merge pull request #88 from docker/tuf-channel
Add `--tuf-channel` flag to set tuf prefix path
2024-09-17 10:49:50 +01:00
Jonny Stoten
d1eddd594d Add --tuf-channel flag to set tuf prefix path 2024-09-17 10:41:42 +01:00
Jonny Stoten
5e97ee0163 Merge pull request #84 from docker/update-attest-lib
[BOT] Update attest go lib
2024-09-16 09:55:37 +01:00
dependabot[bot]
c30fa57d5c chore: bump step-security/harden-runner from 2.9.1 to 2.10.1
Bumps [step-security/harden-runner](https://github.com/step-security/harden-runner) from 2.9.1 to 2.10.1.
- [Release notes](https://github.com/step-security/harden-runner/releases)
- [Commits](5c7944e73c...91182cccc0)

---
updated-dependencies:
- dependency-name: step-security/harden-runner
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-09-16 01:14:55 +00:00
Jonny Stoten
1edee384ef Fix field name change 2024-09-11 17:35:30 +01:00
attest-release[bot]
79aa16901d [BOT] Update attest lib 2024-09-11 16:32:16 +00:00
attest-release[bot]
6b99024a27 chore: update attest to 0.5.1
- also set user agent in context
2024-09-10 13:00:42 +01:00
Joel Kamp
eeeceddac4 Merge pull request #81 from docker/feat-update-chart-0011
feat: update chart to v0.0.11
attest-provider-0.0.11
2024-09-06 12:06:45 -05:00
mrjoelkamp
0d78cf9272 feat: update chart to v0.0.11 2024-09-06 11:55:51 -05:00
James Carnegie
cf8a93a0bf Merge pull request #80 from docker/kipz_rev-attest
chore: rev attest to v0.4.4
v0.0.11
2024-09-05 17:44:39 +01:00
James Carnegie
2fc4c161f5 chore: rev attest to v0.4.4 2024-09-05 17:36:28 +01:00
James Carnegie
cdb0e2e83a Merge pull request #79 from docker/update-attest-lib
Update attest go lib
2024-09-02 13:13:15 +01:00
James Carnegie
870b54ced2 Merge branch 'main' into update-attest-lib 2024-09-02 13:01:27 +01:00
Jonny Stoten
3173992fa5 Merge pull request #78 from docker/dependabot/github_actions/actions/upload-artifact-4.4.0
chore: bump actions/upload-artifact from 4.3.6 to 4.4.0
2024-09-02 11:34:50 +01:00
dependabot[bot]
367c3c8fa4 chore: bump actions/upload-artifact from 4.3.6 to 4.4.0
Bumps [actions/upload-artifact](https://github.com/actions/upload-artifact) from 4.3.6 to 4.4.0.
- [Release notes](https://github.com/actions/upload-artifact/releases)
- [Commits](834a144ee9...50769540e7)

---
updated-dependencies:
- dependency-name: actions/upload-artifact
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-09-02 10:04:18 +00:00
Jonny Stoten
950895441e Merge pull request #77 from docker/dependabot/github_actions/github/codeql-action-3.26.6
chore: bump github/codeql-action from 3.26.5 to 3.26.6
2024-09-02 11:03:11 +01:00
dependabot[bot]
cd2679a04a chore: bump github/codeql-action from 3.26.5 to 3.26.6
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.26.5 to 3.26.6.
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](2c779ab0d0...4dd16135b6)

---
updated-dependencies:
- dependency-name: github/codeql-action
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-09-02 09:43:04 +00:00
Jonny Stoten
90f5852a17 Merge pull request #66 from docker/dependabot/github_actions/step-security/harden-runner-2.9.1
chore: bump step-security/harden-runner from 2.9.0 to 2.9.1
2024-09-02 10:42:00 +01:00
James Carnegie
b5dbce5662 chore: use new verfier API 2024-09-02 09:56:35 +01:00
attest-release[bot]
de8cf19d01 [BOT] Update attest lib 2024-09-02 08:40:10 +00:00
James Carnegie
e39de4a1bc Merge branch 'main' into dependabot/github_actions/step-security/harden-runner-2.9.1 2024-08-28 10:10:55 +01:00
James Carnegie
95616b460a Merge pull request #67 from docker/dependabot/github_actions/actions/upload-artifact-4.3.6
chore: bump actions/upload-artifact from 4.3.5 to 4.3.6
2024-08-28 10:10:46 +01:00
James Carnegie
62ada11e35 Merge branch 'main' into dependabot/github_actions/step-security/harden-runner-2.9.1 2024-08-28 10:02:58 +01:00
James Carnegie
cc4b2a3506 Merge branch 'main' into dependabot/github_actions/actions/upload-artifact-4.3.6 2024-08-28 10:02:24 +01:00
James Carnegie
c7e0b1e9ae Merge pull request #72 from docker/dependabot/github_actions/github/codeql-action-3.26.5
chore: bump github/codeql-action from 3.25.15 to 3.26.5
2024-08-28 10:02:14 +01:00