Commit Graph

245 Commits

Author SHA1 Message Date
Joel Kamp
c83dfaf9c9 Merge pull request #118 from docker/dependabot/github_actions/actions/setup-go-5.1.0
chore: bump actions/setup-go from 5.0.2 to 5.1.0
2024-10-28 08:30:49 -05:00
dependabot[bot]
1f19cb823d chore: bump actions/setup-go from 5.0.2 to 5.1.0
Bumps [actions/setup-go](https://github.com/actions/setup-go) from 5.0.2 to 5.1.0.
- [Release notes](https://github.com/actions/setup-go/releases)
- [Commits](0a12ed9d6a...41dfa10bad)

---
updated-dependencies:
- dependency-name: actions/setup-go
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-10-28 01:30:54 +00:00
attest-release[bot]
c86dc3b451 [BOT] Update attest lib (#117)
Co-authored-by: attest-release[bot] <176524748+attest-release[bot]@users.noreply.github.com>
v0.1.1
2024-10-23 14:59:41 +00:00
Jonny Stoten
aa5b10565a Merge pull request #116 from docker/remove-scorecard
chore: remove scorecards workflow
2024-10-23 12:53:21 +01:00
Jonny Stoten
c5ece432ed Remove scorecards workflow
This was disabled anyway
2024-10-23 12:44:53 +01:00
Jonny Stoten
d1d9c2f6ce Merge pull request #115 from docker/no-dco-org-members
Skip DCO requirement for org members
2024-10-23 10:43:41 +01:00
Jonny Stoten
b014017b9a Skip DCO requirement for org members
Signed-off-by: Jonny Stoten <jonny.stoten@docker.com>
2024-10-23 10:35:50 +01:00
Jonny Stoten
c9aeb94c1d Merge pull request #114 from docker/fix-public-secret-access
chore: remove GitHub app usage now that attest is public
2024-10-23 10:34:02 +01:00
Jonny Stoten
56874d0b3a Remove GitHub app usage now that attest is public
Signed-off-by: Jonny Stoten <jonny.stoten@docker.com>
2024-10-23 10:29:43 +01:00
Joel Kamp
05fee12fb7 Merge pull request #111 from docker/feat-add-code-of-conduct
feat: add code of conduct
2024-10-21 10:01:44 -05:00
mrjoelkamp
f201da94aa refactor: use contributor covenant 2024-10-21 09:55:00 -05:00
mrjoelkamp
e291536024 feat: add contributing.md 2024-10-18 13:22:58 -05:00
mrjoelkamp
30a04788f0 feat: add code of conduct 2024-10-18 13:10:13 -05:00
Joel Kamp
61238cc62d Merge pull request #110 from docker/chore-license
chore: add license headers
2024-10-18 09:44:33 -05:00
mrjoelkamp
8a9489fcad refactor: remove copyright year; add newline 2024-10-18 09:33:52 -05:00
mrjoelkamp
425161028f chore: add notice 2024-10-17 14:08:54 -05:00
mrjoelkamp
bd022b3e91 chore: add license headers 2024-10-17 13:48:16 -05:00
attest-release[bot]
0500d190bc [BOT] Update attest lib (#109)
Co-authored-by: attest-release[bot] <176524748+attest-release[bot]@users.noreply.github.com>
2024-10-17 13:39:21 +00:00
James Carnegie
1f796e3f26 fix lint 2024-10-16 14:52:11 +01:00
James Carnegie
243dfbcc87 unit test for set 2024-10-16 14:52:11 +01:00
James Carnegie
395b5fe114 feat: add support for policy parameters 2024-10-16 14:52:11 +01:00
attest-release[bot]
2856a952d5 [BOT] Update attest lib (#107)
Co-authored-by: attest-release[bot] <176524748+attest-release[bot]@users.noreply.github.com>
2024-10-15 16:26:03 +00:00
Joel Kamp
677bfa4a68 Merge pull request #106 from docker/dependabot/github_actions/github/codeql-action-3.26.13
chore: bump github/codeql-action from 3.26.10 to 3.26.13
2024-10-15 08:41:24 -05:00
dependabot[bot]
1aa89f25f0 chore: bump github/codeql-action from 3.26.10 to 3.26.13
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.26.10 to 3.26.13.
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](e2b3eafc8d...f779452ac5)

---
updated-dependencies:
- dependency-name: github/codeql-action
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-10-15 13:36:41 +00:00
Joel Kamp
a59d6f4390 Merge pull request #104 from docker/dependabot/github_actions/actions/upload-artifact-4.4.3
chore: bump actions/upload-artifact from 4.4.0 to 4.4.3
2024-10-15 08:35:36 -05:00
Joel Kamp
ccb74b9fb7 Merge branch 'main' into dependabot/github_actions/actions/upload-artifact-4.4.3 2024-10-15 08:30:59 -05:00
Joel Kamp
de6b67b3e0 Merge pull request #103 from docker/dependabot/github_actions/golangci/golangci-lint-action-6.1.1
chore: bump golangci/golangci-lint-action from 6.1.0 to 6.1.1
2024-10-15 08:30:40 -05:00
dependabot[bot]
cee30c25dd chore: bump actions/upload-artifact from 4.4.0 to 4.4.3
Bumps [actions/upload-artifact](https://github.com/actions/upload-artifact) from 4.4.0 to 4.4.3.
- [Release notes](https://github.com/actions/upload-artifact/releases)
- [Commits](50769540e7...b4b15b8c7c)

---
updated-dependencies:
- dependency-name: actions/upload-artifact
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-10-14 02:02:21 +00:00
dependabot[bot]
14f0adcaeb chore: bump golangci/golangci-lint-action from 6.1.0 to 6.1.1
Bumps [golangci/golangci-lint-action](https://github.com/golangci/golangci-lint-action) from 6.1.0 to 6.1.1.
- [Release notes](https://github.com/golangci/golangci-lint-action/releases)
- [Commits](aaa42aa062...971e284b60)

---
updated-dependencies:
- dependency-name: golangci/golangci-lint-action
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-10-07 01:17:18 +00:00
attest-release[bot]
8c3fad614c [BOT] Update attest lib (#101)
Co-authored-by: attest-release[bot] <176524748+attest-release[bot]@users.noreply.github.com>
2024-10-02 09:13:20 +00:00
Joel Kamp
7ccdc8c0d2 Merge pull request #100 from docker/feat-update-chart-010
feat: update chart for v0.1.0
attest-provider-0.1.0
2024-10-01 16:42:13 -05:00
mrjoelkamp
4e768795ee feat: update chart for v0.1.0 2024-10-01 16:37:03 -05:00
Joel Kamp
3f2789eea1 Merge pull request #99 from docker/update-attest-lib
[BOT] Update attest go lib
v0.1.0
2024-10-01 16:14:47 -05:00
Joel Kamp
005a4945ec Merge branch 'main' into update-attest-lib 2024-10-01 16:07:53 -05:00
Joel Kamp
2d4538d531 Merge pull request #98 from docker/dependabot/github_actions/github/codeql-action-3.26.10
chore: bump github/codeql-action from 3.26.6 to 3.26.10
2024-10-01 16:07:41 -05:00
attest-release[bot]
4bdeb94f2c [BOT] Update attest lib 2024-10-01 21:04:27 +00:00
Joel Kamp
7d33fc6e40 Merge branch 'main' into dependabot/github_actions/github/codeql-action-3.26.10 2024-10-01 16:00:52 -05:00
Joel Kamp
91de02cd75 Merge pull request #89 from docker/dependabot/github_actions/actions/create-github-app-token-1.11.0
chore: bump actions/create-github-app-token from 1.10.3 to 1.11.0
2024-10-01 16:00:35 -05:00
dependabot[bot]
2bfd8b6229 chore: bump github/codeql-action from 3.26.6 to 3.26.10
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.26.6 to 3.26.10.
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](4dd16135b6...e2b3eafc8d)

---
updated-dependencies:
- dependency-name: github/codeql-action
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-10-01 20:57:01 +00:00
Joel Kamp
d043f700cf Merge branch 'main' into dependabot/github_actions/actions/create-github-app-token-1.11.0 2024-10-01 15:56:08 -05:00
Joel Kamp
1fce13823c Merge pull request #85 from docker/dependabot/github_actions/step-security/harden-runner-2.10.1
chore: bump step-security/harden-runner from 2.9.1 to 2.10.1
2024-10-01 15:55:57 -05:00
Joel Kamp
f635a16795 Merge branch 'main' into dependabot/github_actions/step-security/harden-runner-2.10.1 2024-10-01 15:50:04 -05:00
Joel Kamp
66453b04e5 Merge pull request #97 from docker/dependabot/go_modules/github.com/theupdateframework/go-tuf/v2-2.0.1
chore: bump github.com/theupdateframework/go-tuf/v2 from 2.0.0 to 2.0.1
2024-10-01 15:49:51 -05:00
dependabot[bot]
81d5d173f1 chore: bump github.com/theupdateframework/go-tuf/v2 from 2.0.0 to 2.0.1
Bumps [github.com/theupdateframework/go-tuf/v2](https://github.com/theupdateframework/go-tuf) from 2.0.0 to 2.0.1.
- [Release notes](https://github.com/theupdateframework/go-tuf/releases)
- [Changelog](https://github.com/theupdateframework/go-tuf/blob/master/.goreleaser.yaml)
- [Commits](https://github.com/theupdateframework/go-tuf/compare/v2.0.0...v2.0.1)

---
updated-dependencies:
- dependency-name: github.com/theupdateframework/go-tuf/v2
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-10-01 18:15:26 +00:00
attest-release[bot]
b98dcfcf7b [BOT] Update attest lib (#94)
Co-authored-by: attest-release[bot] <176524748+attest-release[bot]@users.noreply.github.com>
2024-10-01 13:28:17 +00:00
attest-release[bot]
8729fdfa22 [BOT] Update attest lib (#92)
Co-authored-by: attest-release[bot] <176524748+attest-release[bot]@users.noreply.github.com>
2024-09-19 21:14:10 +00:00
attest-release[bot]
7716319800 [BOT] Update attest lib (#91)
Co-authored-by: attest-release[bot] <176524748+attest-release[bot]@users.noreply.github.com>
2024-09-19 13:27:41 +00:00
James Carnegie
0704470d46 chore: rev attest 2024-09-19 14:08:45 +01:00
dependabot[bot]
947c9a8cb4 chore: bump actions/create-github-app-token from 1.10.3 to 1.11.0
Bumps [actions/create-github-app-token](https://github.com/actions/create-github-app-token) from 1.10.3 to 1.11.0.
- [Release notes](https://github.com/actions/create-github-app-token/releases)
- [Commits](31c86eb3b3...5d869da34e)

---
updated-dependencies:
- dependency-name: actions/create-github-app-token
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-09-17 10:15:41 +00:00
Jonny Stoten
76d5f57447 Merge pull request #88 from docker/tuf-channel
Add `--tuf-channel` flag to set tuf prefix path
2024-09-17 10:49:50 +01:00