8000 Comparing v0.4.3...main · bomctl/bomctl · GitHub
[go: up one dir, main page]
More Web Proxy on the site http://driver.im/
Skip to content
Permalink

Comparing changes

Choose two branches to see what’s changed or to start a new pull request. If you need to, you can also or learn more about diff comparisons.

Open a pull request

Create a new pull request by comparing changes across two branches. If you need to, you can also . Learn more about diff comparisons here.
base repository: bomctl/bomctl
Failed to load repositories. Confirm that selected base ref is valid, then try again.
Loading
base: v0.4.3
Choose a base ref
...
head repository: bomctl/bomctl
Failed to load repositories. Confirm that selected head ref is valid, then try again.
Loading
compare: main
Choose a head ref
  • 5 commits
  • 11 files changed
  • 4 contributors

Commits on May 2, 2025

  1. :dependabot: chore(deps): Bump actions/create-github-app-token (#303)

    Bumps [actions/create-github-app-token](https://github.com/actions/create-github-app-token) from 1.11.5 to 2.0.2.
    - [Release notes](https://github.com/actions/create-github-app-token/releases)
    - [Commits](actions/create-github-app-token@0d56448...3ff1caa)
    
    ---
    updated-dependencies:
    - dependency-name: actions/create-github-app-token
      dependency-version: 2.0.2
      dependency-type: direct:production
      update-type: version-update:semver-major
    ...
    
    Signed-off-by: dependabot[bot] <support@github.com>
    Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
    dependabot[bot] authored May 2, 2025
    Configuration menu
    Copy the full SHA
    aa8c64c View commit details
    Browse the repository at this point in the history
  2. :dependabot: chore(deps): Bump golang.org/x/net from 0.34.0 to 0.38.0 (#300)

    Bumps [golang.org/x/net](https://github.com/golang/net) from 0.34.0 to 0.38.0.
    - [Commits](golang/net@v0.34.0...v0.38.0)
    
    ---
    updated-dependencies:
    - dependency-name: golang.org/x/net
      dependency-version: 0.38.0
      dependency-type: indirect
    ...
    
    Signed-off-by: dependabot[bot] <support@github.com>
    Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
    Co-authored-by: Ian Dunbar-Hall <100151740+idunbarh@users.noreply.github.com>
    dependabot[bot] and idunbarh authored May 2, 2025
    Configuration menu
    Copy the full SHA
    7ded12c View commit details
    Browse the repository at this point in the history

Commits on May 28, 2025

  1. :dependabot: chore(deps): Bump the actions group across 1 directory with 7 updat…

    …es (#305)
    
    Bumps the actions group with 7 updates in the / directory:
    
    | Package | From | To |
    | --- | --- | --- |
    | [actions/setup-go](https://github.com/actions/setup-go) | `5.4.0` | `5.5.0` |
    | [actions/dependency-review-action](https://github.com/actions/dependency-review-action) | `4.6.0` | `4.7.0` |
    | [sigstore/cosign-installer](https://github.com/sigstore/cosign-installer) | `3.8.1` | `3.8.2` |
    | [anchore/sbom-action](https://github.com/anchore/sbom-action) | `0.18.0` | `0.19.0` |
    | [actions/create-github-app-token](https://github.com/actions/create-github-app-token) | `2.0.2` | `2.0.6` |
    | [actions/attest-build-provenance](https://github.com/actions/attest-build-provenance) | `2.2.3` | `2.3.0` |
    | [github/codeql-action](https://github.com/github/codeql-action) | `3.28.15` | `3.28.17` |
    
    
    
    Updates `actions/setup-go` from 5.4.0 to 5.5.0
    - [Release notes](https://github.com/actions/setup-go/releases)
    - [Commits](actions/setup-go@0aaccfd...d35c59a)
    
    Updates `actions/dependency-review-action` from 4.6.0 to 4.7.0
    - [Release notes](https://github.com/actions/dependency-review-action/releases)
    - [Commits](actions/dependency-review-action@ce3cf95...38ecb5b)
    
    Updates `sigstore/cosign-installer` from 3.8.1 to 3.8.2
    - [Release notes](https://github.com/sigstore/cosign-installer/releases)
    - [Commits](sigstore/cosign-installer@d7d6bc7...3454372)
    
    Updates `anchore/sbom-action` from 0.18.0 to 0.19.0
    - [Release notes](https://github.com/anchore/sbom-action/releases)
    - [Changelog](https://github.com/anchore/sbom-action/blob/main/RELEASE.md)
    - [Commits](anchore/sbom-action@f325610...9f73021)
    
    Updates `actions/create-github-app-token` from 2.0.2 to 2.0.6
    - [Release notes](https://github.com/actions/create-github-app-token/releases)
    - [Commits](actions/create-github-app-token@3ff1caa...df432ce)
    
    Updates `actions/attest-build-provenance` from 2.2.3 to 2.3.0
    - [Release notes](https://github.com/actions/attest-build-provenance/releases)
    - [Changelog](https://github.com/actions/attest-build-provenance/blob/main/RELEASE.md)
    - [Commits](actions/attest-build-provenance@c074443...db473fd)
    
    Updates `github/codeql-action` from 3.28.15 to 3.28.17
    - [Release notes](https://github.com/github/codeql-action/releases)
    - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
    - [Commits](github/codeql-action@45775bd...60168ef)
    
    ---
    updated-dependencies:
    - dependency-name: actions/setup-go
      dependency-version: 5.5.0
      dependency-type: direct:production
      update-type: version-update:semver-minor
      dependency-group: actions
    - dependency-name: actions/dependency-review-action
      dependency-version: 4.7.0
      dependency-type: direct:production
      update-type: version-update:semver-minor
      dependency-group: actions
    - dependency-name: sigstore/cosign-installer
      dependency-version: 3.8.2
      dependency-type: direct:production
      update-type: version-update:semver-patch
      dependency-group: actions
    - dependency-name: anchore/sbom-action
      dependency-version: 0.19.0
      dependency-type: direct:production
      update-type: version-update:semver-minor
      dependency-group: actions
    - dependency-name: actions/create-github-app-token
      dependency-version: 2.0.6
      dependency-type: direct:production
      update-type: version-update:semver-patch
      dependency-group: actions
    - dependency-name: actions/attest-build-provenance
      dependency-version: 2.3.0
      dependency-type: direct:production
      update-type: version-update:semver-minor
      dependency-group: actions
    - dependency-name: github/codeql-action
      dependency-version: 3.28.17
      dependency-type: direct:production
      update-type: version-update:semver-patch
      dependency-group: actions
    ...
    
    Signed-off-by: dependabot[bot] <support@github.com>
    Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
    dependabot[bot] authored May 28, 2025
    Configuration menu
    Copy the full SHA
    b70ce18 View commit details
    Browse the repository at this point in the history
  2. Move charter to top level and update meeting info in readme (#306)

    Signed-off-by: Jeff Diecks <55294502+GeauxJD@users.noreply.github.com>
    GeauxJD authored May 28, 2025
    Configuration menu
    Copy the full SHA
    65e8cb0 View commit details
    Browse the repository at this point in the history

Commits on Jun 18, 2025

  1. docs: Update ROADMAP.md (#311)

    Signed-off-by: Allen Shearin <allen.p.shearin@gmail.com>
    ashearin authored Jun 18, 2025
    Configuration menu
    Copy the full SHA
    242bfd3 View commit details
    Browse the repository at this point in the history
Loading
0