forked from dexidp/dex
-
Notifications
You must be signed in to change notification settings - Fork 0
Sync with upstream master #6
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Open
cruizen
wants to merge
1,492
commits into
platform9:master
Choose a base branch
from
dexidp:master
base: master
Could not load branches
Branch not found: {{ refName }}
Loading
Could not load tags
Nothing to show
Loading
Are you sure you want to change the base?
Some commits from the old base branch may be removed from the timeline,
and old review comments may become outdated.
Open
Changes from all commits
Commits
Show all changes
1492 commits
Select commit
Hold shift + click to select a range
d4e9d54
Merge pull request #4286 from dexidp/dependabot/go_modules/api/v2/goo…
sagikazarmark e1da164
build(deps): bump github.com/stretchr/testify from 1.10.0 to 1.11.1
dependabot[bot] ad912d0
build(deps): bump aquasecurity/trivy-action from 0.32.0 to 0.33.0
dependabot[bot] f10f4d6
build(deps): bump actions/attest-build-provenance from 2.4.0 to 3.0.0
dependabot[bot] d95db82
Merge pull request #4295 from rackerlabs/avoid-hardcoded-image
sagikazarmark 33f0619
Merge pull request #4296 from dexidp/dependabot/github_actions/action…
sagikazarmark 8aa4684
Merge pull request #4293 from dexidp/dependabot/github_actions/aquase…
sagikazarmark 2dce750
Merge pull request #4292 from dexidp/dependabot/go_modules/github.com…
sagikazarmark f845e74
build(deps): bump github.com/dexidp/dex/api/v2 in /examples
dependabot[bot] 3313195
build(deps): bump github.com/spf13/cobra from 1.9.1 to 1.10.1
dependabot[bot] 18970bb
build(deps): bump actions/setup-go from 5.5.0 to 6.0.0
dependabot[bot] 6ef6797
build(deps): bump aquasecurity/trivy-action from 0.33.0 to 0.33.1
dependabot[bot] 54b5207
build(deps): bump golang from 1.25.0-alpine3.22 to 1.25.1-alpine3.22
dependabot[bot] da0ce73
build(deps): bump github.com/prometheus/client_golang
dependabot[bot] 4acd4ef
build(deps): bump golang.org/x/oauth2 from 0.30.0 to 0.31.0
dependabot[bot] d1d4f40
build(deps): bump golang.org/x/oauth2 from 0.30.0 to 0.31.0 in /examples
dependabot[bot] 9a9a900
Example app pkce (#4284)
nabokihms ed49b9e
build(deps): bump distroless/static-debian12 from `a9f88e0` to `e8a4044`
dependabot[bot] ac709a4
build(deps): bump oras-project/setup-oras from 1.2.3 to 1.2.4
dependabot[bot] 2f6ec82
build(deps): bump tonistiigi/xx from 1.6.1 to 1.7.0
dependabot[bot] af872f2
build(deps): bump github/codeql-action from 3.29.11 to 3.30.3
dependabot[bot] f6f906d
build(deps): bump sigstore/cosign-installer from 3.9.2 to 3.10.0
dependabot[bot] 796f5ce
ADOPTERS: Update Elastisys entry for product rename
Zash 25d7061
Merge pull request #4327 from Zash/welkin
sagikazarmark 40c20c3
Merge pull request #4299 from dexidp/dependabot/go_modules/examples/g…
sagikazarmark 595babf
Merge pull request #4304 from dexidp/dependabot/github_actions/action…
sagikazarmark 4d1ba88
Merge pull request #4305 from dexidp/dependabot/github_actions/aquase…
sagikazarmark 84a009c
Merge pull request #4307 from dexidp/dependabot/docker/golang-1.25.1-…
sagikazarmark 32c77d6
Merge pull request #4313 from dexidp/dependabot/docker/distroless/sta…
sagikazarmark 5091567
Merge pull request #4314 from dexidp/dependabot/github_actions/oras-p…
sagikazarmark 7cca78d
Merge pull request #4320 from dexidp/dependabot/github_actions/github…
sagikazarmark 0726feb
Merge pull request #4324 from dexidp/dependabot/github_actions/sigsto…
sagikazarmark 8e1d68a
Merge pull request #4302 from dexidp/dependabot/go_modules/github.com…
sagikazarmark d56447e
Merge pull request #4309 from dexidp/dependabot/go_modules/github.com…
sagikazarmark 614ff0b
Merge pull request #4317 from dexidp/dependabot/docker/tonistiigi/xx-…
sagikazarmark 4f62237
Merge pull request #4310 from dexidp/dependabot/go_modules/golang.org…
sagikazarmark ea20d6e
Merge pull request #4311 from dexidp/dependabot/go_modules/examples/g…
sagikazarmark 50bf779
build(deps): bump anchore/sbom-action from 0.20.5 to 0.20.6
dependabot[bot] 1fa6594
build(deps): bump golang.org/x/net from 0.43.0 to 0.44.0
dependabot[bot] 65b4f82
build(deps): bump google.golang.org/protobuf from 1.36.8 to 1.36.9
dependabot[bot] d277f65
build(deps): bump github/codeql-action from 3.30.3 to 3.30.4
dependabot[bot] a07da5c
Merge pull request #4339 from dexidp/dependabot/github_actions/github…
sagikazarmark d242c9d
Merge pull request #4335 from dexidp/dependabot/go_modules/google.gol…
sagikazarmark bfe2375
Merge pull request #4334 from dexidp/dependabot/go_modules/golang.org…
sagikazarmark d768071
Merge pull request #4332 from dexidp/dependabot/github_actions/anchor…
sagikazarmark 7d7d21a
build(deps): bump actions/cache from 4.2.4 to 4.3.0
dependabot[bot] ecaa916
build(deps): bump the etcd group with 2 updates
dependabot[bot] accd2bf
build(deps): bump docker/login-action from 3.5.0 to 3.6.0
dependabot[bot] 4c682b5
build(deps): bump ossf/scorecard-action from 2.4.2 to 2.4.3
dependabot[bot] 53c2511
build(deps): bump google.golang.org/grpc in /examples
dependabot[bot] 9ab8d96
build(deps): bump google.golang.org/api from 0.248.0 to 0.252.0
dependabot[bot] e4c4289
build(deps): bump github/codeql-action from 3.30.4 to 4.30.8
dependabot[bot] 79a5ea4
build(deps): bump actions/dependency-review-action from 4.7.3 to 4.8.1
dependabot[bot] 41ef064
build(deps): bump golang from 1.25.1-alpine3.22 to 1.25.3-alpine3.22
dependabot[bot] fdb70c9
Merge pull request #4368 from dexidp/dependabot/docker/golang-1.25.3-…
sagikazarmark 087d91e
Merge pull request #4366 from dexidp/dependabot/github_actions/action…
sagikazarmark 5a2d773
build(deps): bump alpine from 3.22.1 to 3.22.2
dependabot[bot] d4fd87c
Merge pull request #4365 from dexidp/dependabot/github_actions/github…
sagikazarmark 6fd11e4
Merge pull request #4360 from dexidp/dependabot/go_modules/google.gol…
sagikazarmark 1818fb8
Merge pull request #4357 from dexidp/dependabot/go_modules/examples/g…
sagikazarmark 2b428f5
build(deps): bump github.com/coreos/go-oidc/v3 in /examples
dependabot[bot] 6cfddab
Merge pull request #4350 from dexidp/dependabot/github_actions/ossf/s…
sagikazarmark 001447c
Merge pull request #4348 from dexidp/dependabot/github_actions/docker…
sagikazarmark 592bdf8
Merge pull request #4338 from dexidp/dependabot/github_actions/action…
sagikazarmark 7c80f49
Merge pull request #4333 from dexidp/dependabot/go_modules/etcd-0a9fe…
sagikazarmark 59abb28
Merge pull request #4361 from dexidp/dependabot/docker/alpine-3.22.2
sagikazarmark c56c12a
build(deps): bump google.golang.org/grpc from 1.75.0 to 1.76.0
dependabot[bot] 93fbd90
Merge pull request #4354 from dexidp/dependabot/go_modules/examples/g…
sagikazarmark 5426f17
build(deps): bump golang.org/x/oauth2 from 0.31.0 to 0.32.0 in /examples
dependabot[bot] 4a4e970
Merge pull request #4355 from dexidp/dependabot/go_modules/google.gol…
sagikazarmark 9207486
Merge pull request #4362 from dexidp/dependabot/go_modules/examples/g…
sagikazarmark 72cffab
build(deps): bump google.golang.org/grpc in /api/v2
dependabot[bot] 53bbcce
build(deps): bump github.com/go-jose/go-jose/v4 from 4.1.2 to 4.1.3
dependabot[bot] a396240
build(deps): bump golang.org/x/crypto from 0.42.0 to 0.43.0
dependabot[bot] 73c37c9
build(deps): bump tonistiigi/xx from 1.7.0 to 1.8.0
dependabot[bot] 7e2225c
Do not wrap Kubernetes Address in brackets (#4363)
nabokihms 3273c3b
build(deps): bump anchore/sbom-action from 0.20.6 to 0.20.9
dependabot[bot] 8646644
build(deps): bump actions/upload-artifact from 4.6.2 to 5.0.0
dependabot[bot] 74a66cb
build(deps): bump github/codeql-action from 4.30.8 to 4.31.2
dependabot[bot] ce6ace5
Merge pull request #4398 from dexidp/dependabot/github_actions/github…
sagikazarmark 451d281
Merge pull request #4395 from dexidp/dependabot/github_actions/action…
sagikazarmark e7fcced
Merge pull request #4393 from dexidp/dependabot/github_actions/anchor…
sagikazarmark fead09d
Merge pull request #4386 from dexidp/dependabot/docker/tonistiigi/xx-…
sagikazarmark 9a27a4a
build(deps): bump sigstore/cosign-installer from 3.10.0 to 4.0.0
dependabot[bot] 523a2ff
build(deps): bump golang from `20ee0b6` to `aee43c3`
dependabot[bot] 7b43080
Merge pull request #4376 from dexidp/dependabot/go_modules/golang.org…
sagikazarmark b2d9028
build(deps): bump golang.org/x/net from 0.44.0 to 0.46.0
dependabot[bot] 7360083
Merge pull request #4356 from dexidp/dependabot/go_modules/api/v2/goo…
sagikazarmark 9d3c17d
Merge pull request #4380 from dexidp/dependabot/github_actions/sigsto…
sagikazarmark b652b55
Merge pull request #4374 from dexidp/dependabot/go_modules/golang.org…
sagikazarmark b0a321e
Merge pull request #4373 from dexidp/dependabot/go_modules/github.com…
sagikazarmark f9d257a
Merge pull request #4371 from dexidp/dependabot/docker/golang-aee43c3
sagikazarmark a51ccea
build(deps): bump golang.org/x/oauth2 from 0.31.0 to 0.32.0
dependabot[bot] a498511
build(deps): bump github.com/spf13/cobra in /examples
dependabot[bot] 4206407
build(deps): bump google.golang.org/protobuf in /api/v2
dependabot[bot] 9355759
fix(storage/kubernetes): Only wrap IPv6 addresses in brackets (#4388)
rene-dekker e551db9
Merge pull request #4300 from dexidp/dependabot/go_modules/examples/g…
sagikazarmark 788bc19
Merge pull request #4375 from dexidp/dependabot/go_modules/golang.org…
sagikazarmark 1d3b2b5
Add Terrakube to Adopters (#4316)
shurup e35542e
Merge pull request #4352 from dexidp/dependabot/go_modules/api/v2/goo…
sagikazarmark ae58fdd
build(deps): bump helm/kind-action from 1.12.0 to 1.13.0
dependabot[bot] c425652
build(deps): bump github.com/go-ldap/ldap/v3 from 3.4.11 to 3.4.12
dependabot[bot] 5be29e9
build(deps): bump docker/metadata-action from 5.8.0 to 5.9.0
dependabot[bot] 7869639
build(deps): bump docker/setup-qemu-action from 3.6.0 to 3.7.0
dependabot[bot] 0705d28
build(deps): bump actions/dependency-review-action from 4.8.1 to 4.8.2
dependabot[bot] ac3ccad
build(deps): bump github/codeql-action from 4.31.2 to 4.31.3
dependabot[bot] df0b519
build(deps): bump golang.org/x/crypto from 0.43.0 to 0.45.0
dependabot[bot] 7300d82
build(deps): bump distroless/static-debian12 from `e8a4044` to `2b7c93f`
dependabot[bot] 3e09c4a
build(deps): bump tonistiigi/xx from 1.8.0 to 1.9.0
dependabot[bot] a72ac95
build(deps): bump golang.org/x/oauth2 from 0.32.0 to 0.34.0 in /examples
dependabot[bot] 356f207
Merge pull request #4430 from dexidp/dependabot/docker/tonistiigi/xx-…
sagikazarmark bf77fcf
Merge pull request #4427 from dexidp/dependabot/docker/distroless/sta…
sagikazarmark c301f78
build(deps): bump golang from 1.25.3-alpine3.22 to 1.25.5-alpine3.22
dependabot[bot] cfa31c4
build(deps): bump alpine from 3.22.2 to 3.23.0
dependabot[bot] 719e405
Merge pull request #4419 from dexidp/dependabot/go_modules/golang.org…
sagikazarmark 24cd880
Merge pull request #4414 from dexidp/dependabot/github_actions/github…
sagikazarmark 7fd0ba9
Merge pull request #4411 from dexidp/dependabot/github_actions/action…
sagikazarmark 1dac07d
Merge pull request #4405 from dexidp/dependabot/github_actions/docker…
sagikazarmark a1e5d58
Merge pull request #4402 from dexidp/dependabot/github_actions/docker…
sagikazarmark 7b3063d
build(deps): bump google.golang.org/api from 0.252.0 to 0.256.0
dependabot[bot] 30b1d6e
Merge pull request #4399 from dexidp/dependabot/github_actions/helm/k…
sagikazarmark f9d49f7
Merge pull request #4425 from dexidp/dependabot/docker/alpine-3.23.0
sagikazarmark 1fa99f3
Merge pull request #4424 from dexidp/dependabot/docker/golang-1.25.5-…
sagikazarmark a6b3152
Merge pull request #4413 from dexidp/dependabot/go_modules/google.gol…
sagikazarmark 06c5a3d
build(deps): bump golang.org/x/oauth2 from 0.32.0 to 0.33.0
dependabot[bot] 9a93f64
build(deps): bump golang.org/x/crypto from 0.43.0 to 0.44.0
dependabot[bot] 93a3732
Merge pull request #4409 from dexidp/dependabot/go_modules/golang.org…
sagikazarmark be38c21
Merge pull request #4412 from dexidp/dependabot/go_modules/golang.org…
sagikazarmark 99df040
Merge pull request #4401 from dexidp/dependabot/go_modules/github.com…
sagikazarmark 7953b07
Merge pull request #4431 from dexidp/dependabot/go_modules/examples/g…
sagikazarmark c0c4408
build(deps): bump google.golang.org/grpc in /examples
dependabot[bot] c71068f
build(deps): bump google.golang.org/grpc in /api/v2
dependabot[bot] 8b10369
Merge pull request #4417 from dexidp/dependabot/go_modules/examples/g…
sagikazarmark 31cfdd7
Merge pull request #4416 from dexidp/dependabot/go_modules/api/v2/goo…
sagikazarmark cfdf8d4
build(deps): bump github.com/spf13/cobra in /examples
dependabot[bot] 8ab38eb
Merge pull request #4426 from dexidp/dependabot/go_modules/examples/g…
sagikazarmark c13246c
build(deps): bump github.com/coreos/go-oidc/v3 in /examples
dependabot[bot] 2da2a22
build(deps): bump actions/setup-go from 6.0.0 to 6.1.0
dependabot[bot] 4d1d54c
build(deps): bump docker/metadata-action from 5.9.0 to 5.10.0
dependabot[bot] 3dea4ba
build(deps): bump anchore/sbom-action from 0.20.9 to 0.20.11
dependabot[bot] 71b893e
build(deps): bump actions/checkout from 5.0.0 to 6.0.1
dependabot[bot] 95bf3d0
build(deps): bump golang.org/x/net from 0.47.0 to 0.48.0
dependabot[bot] ab8306c
build(deps): bump github.com/spf13/cobra from 1.10.1 to 1.10.2
dependabot[bot] 78363ec
build(deps): bump github/codeql-action from 4.31.3 to 4.31.7
dependabot[bot] 8be9fc3
build(deps): bump github.com/coreos/go-oidc/v3 from 3.14.1 to 3.17.0
dependabot[bot] a023784
build(deps): bump google.golang.org/protobuf from 1.36.10 to 1.36.11
dependabot[bot] 2c5f06e
build(deps): bump google.golang.org/grpc in /examples
dependabot[bot] 895a748
Update distroless base image to debian13 (#4453)
loosebazooka dcbb7bb
fix: device callback URL needs to handle a / (#4448)
cardoe 2d7ecd3
build(deps): bump alpine from 3.23.0 to 3.23.2 (#4455)
dependabot[bot] d1b2722
feat: support groups and preferred_username for staticPasswords (#4456)
Jabejixo debcb5c
fix: hide internal server error details from users
Jabejixo b0a6ee9
fix: hide internal server error details from users
Jabejixo 701c83a
Merge pull request #4457 from Jabejixo/fix/hide-internal-500-error-de…
sagikazarmark 6a65189
Merge pull request #4460 from dexidp/dependabot/go_modules/examples/g…
sagikazarmark e8f5eeb
Merge pull request #4449 from dexidp/dependabot/go_modules/google.gol…
sagikazarmark 30d89fd
Merge pull request #4440 from dexidp/dependabot/github_actions/github…
sagikazarmark 3b06f75
Merge pull request #4439 from dexidp/dependabot/go_modules/github.com…
sagikazarmark 2b15108
Merge pull request #4438 from dexidp/dependabot/go_modules/golang.org…
sagikazarmark 1c0c0b0
Merge pull request #4437 from dexidp/dependabot/github_actions/action…
sagikazarmark a03588a
Merge pull request #4435 from dexidp/dependabot/github_actions/anchor…
sagikazarmark 4646f9f
Merge pull request #4434 from dexidp/dependabot/github_actions/docker…
sagikazarmark 0257f55
Merge pull request #4433 from dexidp/dependabot/github_actions/action…
sagikazarmark 4bd5919
build(deps): bump google.golang.org/protobuf in /api/v2
dependabot[bot] bce74e7
fix: failing go-oidc test after 3.15
sagikazarmark 8fc1f97
Merge pull request #4441 from dexidp/dependabot/go_modules/github.com…
sagikazarmark 4ffb7a2
Merge pull request #4450 from dexidp/dependabot/go_modules/api/v2/goo…
sagikazarmark adf3c82
Merge pull request #4420 from dexidp/dependabot/go_modules/examples/g…
sagikazarmark c44f771
build(deps): bump the etcd group with 2 updates
dependabot[bot] e674097
Merge pull request #4436 from dexidp/dependabot/go_modules/etcd-4fbb4…
sagikazarmark 5cd3432
build(deps): bump golang from 1.25.5-alpine3.22 to 1.25.6-alpine3.22 …
dependabot[bot] ecdd0b8
build(deps): bump distroless/static-debian13 from `b5b9fd0` to `f9f84…
dependabot[bot] 7942817
build(deps): bump actions/setup-go from 6.1.0 to 6.2.0 (#4476)
dependabot[bot] a956bf3
build(deps): bump golang.org/x/crypto from 0.46.0 to 0.47.0 (#4472)
dependabot[bot] 9ed6bf7
build(deps): bump github.com/mattn/go-sqlite3 from 1.14.32 to 1.14.33…
dependabot[bot] 281c177
build(deps): bump golang.org/x/net from 0.48.0 to 0.49.0 (#4475)
dependabot[bot] 09fee7f
build(deps): bump google.golang.org/grpc from 1.77.0 to 1.78.0 (#4469)
dependabot[bot] f0a9fa4
build(deps): bump actions/upload-artifact from 5.0.0 to 6.0.0 (#4477)
dependabot[bot] 1a49fc3
build(deps): bump actions/cache from 4.3.0 to 5.0.1 (#4473)
dependabot[bot] 9f199ac
build(deps): bump github/codeql-action from 4.31.7 to 4.31.10 (#4470)
dependabot[bot] 2725903
build(deps): bump docker/setup-buildx-action from 3.11.1 to 3.12.0 (#…
dependabot[bot] da180b9
build(deps): bump google.golang.org/api from 0.257.0 to 0.259.0 (#4478)
dependabot[bot] 4d103d6
build(deps): bump google.golang.org/grpc in /api/v2 (#4459)
dependabot[bot] 5f0c542
build(deps): bump actions/cache from 5.0.1 to 5.0.2 (#4484)
dependabot[bot] 47f2040
build(deps): bump golang from `d9c983d` to `ad295fc` (#4493)
dependabot[bot] 25d62b7
build(deps): bump actions/attest-build-provenance from 3.0.0 to 3.1.0…
dependabot[bot] dcbaa9d
build(deps): bump anchore/sbom-action from 0.20.11 to 0.22.0 (#4487)
dependabot[bot] d8acc5a
build(deps): bump actions/checkout from 6.0.1 to 6.0.2 (#4489)
dependabot[bot] b13e020
build(deps): bump github/codeql-action from 4.31.10 to 4.31.11 (#4492)
dependabot[bot] 45b1941
build(deps): bump google.golang.org/api from 0.260.0 to 0.263.0 (#4494)
dependabot[bot] 06b3079
build(deps): bump alpine from 3.23.2 to 3.23.3
dependabot[bot] 227aeb8
build(deps): bump anchore/sbom-action from 0.22.0 to 0.22.1
dependabot[bot] f817d8b
build(deps): bump actions/attest-build-provenance from 3.1.0 to 3.2.0
dependabot[bot] c78b28b
build(deps): bump github/codeql-action from 4.31.11 to 4.32.0
dependabot[bot] 9362179
build(deps): bump actions/cache from 5.0.2 to 5.0.3
dependabot[bot] 0e97ad5
build(deps): bump github.com/lib/pq from 1.10.9 to 1.11.1
dependabot[bot] f7691ce
gitlab: support custom rootCAData (#4496)
Jabejixo a522202
Merge pull request #4505 from dexidp/dependabot/go_modules/github.com…
sagikazarmark 5f6d1b1
Merge pull request #4504 from dexidp/dependabot/github_actions/action…
sagikazarmark 228deee
Merge pull request #4502 from dexidp/dependabot/github_actions/github…
sagikazarmark f976660
Merge pull request #4501 from dexidp/dependabot/github_actions/action…
sagikazarmark 087d4bd
Merge pull request #4499 from dexidp/dependabot/github_actions/anchor…
sagikazarmark 743730f
Merge pull request #4498 from dexidp/dependabot/docker/alpine-3.23.3
sagikazarmark f3a24b2
build(deps): bump google.golang.org/api from 0.263.0 to 0.265.0
dependabot[bot] a15c4a6
Merge pull request #4508 from dexidp/dependabot/go_modules/google.gol…
sagikazarmark 1997f63
build(deps): bump docker/login-action from 3.6.0 to 3.7.0
dependabot[bot] 167ea52
Merge pull request #4503 from dexidp/dependabot/github_actions/docker…
sagikazarmark ec564f2
Enable ContinueOnConnectorFailure feature flag (#4495)
manojVivek 4bdb4f2
chore: extend example configs for idEnv and public (#4443)
cardoe be791c0
feat: add unprivileged user setup in Dockerfile (#4517)
nabokihms e0268e2
build(deps): bump golang from 1.25.6-alpine3.22 to 1.25.7-alpine3.22 …
dependabot[bot] 894af72
build(deps): bump golang.org/x/oauth2 from 0.34.0 to 0.35.0 (#4515)
dependabot[bot] cee32d6
build(deps): bump github/codeql-action from 4.32.0 to 4.32.2 (#4509)
dependabot[bot] 246124e
build(deps): bump anchore/sbom-action from 0.22.1 to 0.22.2 (#4510)
dependabot[bot] 4c94d8a
build(deps): bump golang.org/x/oauth2 from 0.34.0 to 0.35.0 in /examp…
dependabot[bot] b09a9e7
build(deps): bump golang.org/x/crypto from 0.47.0 to 0.48.0 (#4518)
dependabot[bot] 79e28f5
build(deps): bump golang.org/x/net from 0.49.0 to 0.50.0 (#4519)
dependabot[bot] 56958b1
feat: Add Vault signer for JWT (#4512)
nabokihms 2f6a185
test: Add conformance tests for Vault signer integration (#4520)
nabokihms c016300
build(deps): bump google.golang.org/api from 0.265.0 to 0.266.0 (#4523)
dependabot[bot] 9e37771
feat: add name and emailVerified fields for static passwords (#4526)
Jabejixo 27b5f29
build(deps): bump docker/build-push-action from 6.18.0 to 6.19.1 (#4530)
dependabot[bot] 52c243f
build(deps): bump golang from 1.25.7-alpine3.22 to 1.26.0-alpine3.22 …
dependabot[bot] 5c32fad
build(deps): bump github.com/mattn/go-sqlite3 from 1.14.33 to 1.14.34…
dependabot[bot] 1855a9a
build(deps): bump github.com/lib/pq from 1.11.1 to 1.11.2 (#4525)
dependabot[bot] 9bee0b0
build(deps): bump google.golang.org/grpc in /examples (#4537)
dependabot[bot] f2c2526
build(deps): bump google.golang.org/grpc from 1.78.0 to 1.79.0 (#4534)
dependabot[bot] 4955d43
build(deps): bump docker/build-push-action from 6.19.1 to 6.19.2 (#4535)
dependabot[bot] 76d7ed4
build(deps): bump aquasecurity/trivy-action from 0.33.1 to 0.34.0 (#4…
dependabot[bot] 489e37d
fix: suppress deprecation warning for userAttr when not set (#4539)
nabokihms d90827c
fix: use correct id value for label (#4541)
loganripplinger 7850337
feat: refactor signer configuration with local and vault options (#4532)
nabokihms ad3a83e
build(gomplate): update gomplate version to v5.0.0 and add update scr…
nabokihms 9bee809
feat(crd): add CRD handling behavior and configuration options (#4543)
nabokihms a5f4956
Add permissions section to trivydb-cache workflow (#4544)
nabokihms 7c74dd8
build(deps): bump distroless/static-debian13 from `f9f84bd` to `01e55…
dependabot[bot] 2976b23
build(deps): bump google.golang.org/grpc in /examples (#4551)
dependabot[bot] e640a40
build(deps): bump google.golang.org/grpc from 1.79.0 to 1.79.1 (#4549)
dependabot[bot] c331bb9
build(deps): bump the etcd group with 2 updates (#4548)
dependabot[bot] 5593fb7
build(deps): bump github/codeql-action from 4.32.2 to 4.32.3 (#4547)
dependabot[bot] eb9f04b
Debug trivy scans (#4545)
nabokihms adec8b4
Add steps to fetch and extract OCI image tarball (#4552)
nabokihms 955142b
feat: enhance git-version script to generate pseudo-versions with tim…
nabokihms dce4638
build(deps): update gRPC to v1.79.1 and other dependencies (#4554)
nabokihms be13b1f
build(deps): bump helm/kind-action from 1.13.0 to 1.14.0 (#4557)
dependabot[bot] 69f9b7e
build(deps): bump google.golang.org/api from 0.266.0 to 0.267.0 (#4558)
dependabot[bot] 29c7b6f
feat: validate redirect URIs and safely append parameters (#4559)
nabokihms 548b0f5
build(deps): bump filippo.io/edwards25519 from 1.1.0 to 1.1.1 (#4562)
dependabot[bot] 0108be9
feat: add skopeo copy command to transfer image from OCI layout (#4564)
nabokihms 49c8228
build(deps): bump actions/dependency-review-action from 4.8.2 to 4.8.…
dependabot[bot] File filter
Filter by extension
Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
There are no files selected for viewing
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| Original file line number | Diff line number | Diff line change |
|---|---|---|
| @@ -1,4 +1,2 @@ | ||
| .github/ | ||
| .gitpod.yml | ||
| bin/ | ||
| tmp/ |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| Original file line number | Diff line number | Diff line change |
|---|---|---|
|
|
@@ -19,3 +19,6 @@ indent_style = tab | |
|
|
||
| [{config.yaml.dist,config.dev.yaml}] | ||
| indent_size = 2 | ||
|
|
||
| [.golangci.yaml] | ||
| indent_size = 2 | ||
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| Original file line number | Diff line number | Diff line change |
|---|---|---|
| @@ -1,6 +1,6 @@ | ||
| if ! has nix_direnv_version || ! nix_direnv_version 1.5.0; then | ||
| source_url "https://raw.githubusercontent.com/nix-community/nix-direnv/1.5.0/direnvrc" "sha256-carKk9aUFHMuHt+IWh74hFj58nY4K3uywpZbwXX0BTI=" | ||
| if ! has nix_direnv_version || ! nix_direnv_version 3.0.6; then | ||
| source_url "https://raw.githubusercontent.com/nix-community/nix-direnv/3.0.6/direnvrc" "sha256-RYcUJaRMf8oF5LznDrlCXbkOQrywm0HDv1VjYGaJGdM=" | ||
| fi | ||
| use flake | ||
| use flake . --impure | ||
|
|
||
| dotenv_if_exists |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| Original file line number | Diff line number | Diff line change |
|---|---|---|
| @@ -0,0 +1,47 @@ | ||
| name: OpenSSF Scorecard | ||
|
|
||
| on: | ||
| branch_protection_rule: | ||
| push: | ||
| branches: [ main ] | ||
| schedule: | ||
| - cron: '30 0 * * 5' | ||
|
|
||
| permissions: | ||
| contents: read | ||
|
|
||
| jobs: | ||
| analyze: | ||
| name: Analyze | ||
| runs-on: ubuntu-latest | ||
|
|
||
| permissions: | ||
| actions: read | ||
| contents: read | ||
| id-token: write | ||
| security-events: write | ||
|
|
||
| steps: | ||
| - name: Checkout repository | ||
| uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2 | ||
| with: | ||
| persist-credentials: false | ||
|
|
||
| - name: Run analysis | ||
| uses: ossf/scorecard-action@4eaacf0543bb3f2c246792bd56e8cdeffafb205a # v2.4.3 | ||
| with: | ||
| results_file: results.sarif | ||
| results_format: sarif | ||
| publish_results: true | ||
|
|
||
| - name: Upload results as artifact | ||
| uses: actions/upload-artifact@b7c566a772e6b6bfb58ed0dc250532a479d7789f # v6.0.0 | ||
| with: | ||
| name: OpenSSF Scorecard results | ||
| path: results.sarif | ||
| retention-days: 5 | ||
|
|
||
| - name: Upload results to GitHub Security tab | ||
| uses: github/codeql-action/upload-sarif@9e907b5e64f6b83e7804b09294d44122997950d6 # v3.29.5 | ||
| with: | ||
| sarif_file: results.sarif | ||
Oops, something went wrong.
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Scorecard workflow targets
maininstead ofmasterLow Severity
The new
analysis-scorecard.yamlworkflow triggers on pushes tobranches: [ main ], but this fork's default branch ismaster(as seen inci.yaml). The scorecard push trigger will never fire. The workflow only runs on the weeklyscheduleandbranch_protection_ruleevents, which may not be the intent.