Releases: actions/attest-sbom
Releases · actions/attest-sbom
v1.4.1
What's Changed
- Bump actions/attest from 1.4.0 to 1.4.1 by @bdehamer in #98
- Includes bug fix for issue with authenticated proxies (actions/toolkit#1798)
Full Changelog: v1.4.0...v1.4.1
v1.4.0
What's Changed
- Bump
actions/attest
from 1.3.3 to 1.4.0 by @bdehamer in #85- Add
show-summary
input - Format summary output as list
- Add
Full Changelog: v1.3.3...v1.4.0
v1.3.3
What's Changed
- Bump actions/attest from 1.3.2 to 1.3.3 by @bdehamer in #80
- Bugfix for properly handling glob exclusion patterns in
subject-path
input
- Bugfix for properly handling glob exclusion patterns in
Full Changelog: v1.3.2...v1.3.3
v1.3.2
What's Changed
Full Changelog: v1.3.1...v1.3.2
v1.3.1
What's Changed
- Bump actions/attest from 1.3.0 to 1.3.1 by @bdehamer in #72
- Bugfix when detecting support for the referrers API with OCI registries
Full Changelog: v1.3.0...v1.3.1
v1.3.0
What's Changed
- Bump actions/attest action to v1.3.0 by @bdehamer in #71
- Dynamic construction of GitHub API URLs based on GITHUB_SERVER_URL
- Improved handling of Rekor 409 responses
- Bugfix - detection of registries with support for the OCI referrers API
Full Changelog: v1.2.0...v1.3.0
v1.2.0
What's Changed
- Bump actions/attest from 1.1.2 to 1.2.0 by @bdehamer in #67
- Batch processing w/ exponential backoff
- Enforce 16MB limit on predicate size
- Bugfix when pushing attestation to OCI registry
Full Changelog: v1.1.2...v1.2.0
v1.1.2
What's Changed
- Bump actions/attest from 1.1.1 to 1.1.2 by @bdehamer in #63
- Downcase subject name for OCI images
- Fix accept header when retrieving image manifest
- Support variants of the Docker Hub registry name
Full Changelog: v1.1.1...v1.1.2
v1.1.1
What's Changed
- Bump actions/attest from v1.1.0 to v1.1.1 by @bdehamer in #61
- Bump @sigstore/sign from 2.3.0 to 2.3.1
- Bump @sigstore/oci from 0.3.0 to 0.3.2
- Include more detail in error logging
- Send API errors to GHA debug log
- Fix bug preventing failed API requests from being retried
Full Changelog: v1.1.0...v1.1.1
v1.1.0
What's Changed
- Bump actions/attest to v1.1.0 by @bdehamer in #58
- adds list support for
subjectPath
input - limit attestation subject count
- ensure subject globs match only files
- adds list support for
Full Changelog: v1.0.0...v1.1.0