PackageTrack

Go modules · #1954

github.com/sigstore/fulcio

v1.8.8sigstore/fulcio

Release timeline

1070 releases since 2021
202120222023202420252026

Releases

  1. v0.4.2-0.20220505230101-152c20daa7855 May 2022pre-release

    Nothing published for this version

  2. v0.4.2-0.20220505205756-a08e6a73669b5 May 2022pre-release

    Nothing published for this version

  3. v0.4.2-0.20220504160753-05aa4bb8d2b54 May 2022pre-release

    Nothing published for this version

  4. v0.4.13 May 2022
    Release notes2 sources agree

    Bug Fixes

    • Fix key usage for issued certificates (https://github.com/sigstore/fulcio/pull/549)

    Documentation

    • Add note about the status of the legacy HTTP API. (https://github.com/sigstore/fulcio/pull/531)

    Others

    • Bump google.golang.org/api from 0.76.0 to 0.77.0 (https://github.com/sigstore/fulcio/pull/552)
    • chore(deps): Included dependency review (https://github.com/sigstore/fulcio/pull/540)
    • Add @haydentherapper to CODEOWNERS (https://github.com/sigstore/fulcio/pull/548)
    • Bump github.com/google/go-cmp from 0.5.7 to 0.5.8 (https://github.com/sigstore/fulcio/pull/544)
    • Bump github.com/fsnotify/fsnotify from 1.5.3 to 1.5.4 (https://github.com/sigstore/fulcio/pull/543)
    • Bump google.golang.org/api from 0.75.0 to 0.76.0 (https://github.com/sigstore/fulcio/pull/542)
    • Bump github/codeql-action from 2.1.8 to 2.1.9 (https://github.com/sigstore/fulcio/pull/545)
    • Bump github.com/googleapis/api-linter in /hack/tools (https://github.com/sigstore/fulcio/pull/546)
    • Bump google.golang.org/grpc from 1.45.0 to 1.46.0 (https://github.com/sigstore/fulcio/pull/541)

    Contributors

    • Bob Callaway (@bobcallaway)
    • Hayden Blauzvern (@haydentherapper)
    • Naveen (@naveensrinivasan)
    • Zack Newman (@znewman01)
    Open source →
  5. v0.4.1-0.20220503121307-6964133204413 May 2022pre-release

    Nothing published for this version

  6. v0.4.1-0.20220503113213-1765ce936c4f3 May 2022pre-release

    Nothing published for this version

  7. v0.4.1-0.20220502224409-3e07daa302492 May 2022pre-release

    Nothing published for this version

  8. v0.4.1-0.20220501184550-3729384bd6381 May 2022pre-release

    Nothing published for this version

  9. v0.4.1-0.20220430130229-412c051fe7a930 Apr 2022pre-release

    Nothing published for this version

  10. v0.4.1-0.20220430001742-040241bfc23830 Apr 2022pre-release

    Nothing published for this version

  11. v0.4.1-0.20220429141545-851d95a0aa3d29 Apr 2022pre-release

    Nothing published for this version

  12. v0.4.1-0.20220428134335-e2d16dd01d7e28 Apr 2022pre-release

    Nothing published for this version

  13. v0.4.1-0.20220425110053-f6be9a63ef2c25 Apr 2022pre-release

    Nothing published for this version

  14. v0.4.023 Apr 2022
    Release notes2 sources agree

    Enhancements

    • Add CSR support for key delivery and proof of possession (https://github.com/sigstore/fulcio/pull/527)
    • Remove checked in binary (https://github.com/sigstore/fulcio/pull/524)
    • add GRPC interface (https://github.com/sigstore/fulcio/pull/472)
    • Embed SCTs in issued certificates (https://github.com/sigstore/fulcio/pull/507)
    • Add intermediate CA implementation with KMS-backed signer (https://github.com/sigstore/fulcio/pull/496)

    Bug Fixes

    • Fix null pointer crash and incorrect error statuses (https://github.com/sigstore/fulcio/pull/526)

    Documentation

    • Add documentation for setting up Fulcio instance (https://github.com/sigstore/fulcio/pull/521)
    • Add documentation for CT log (https://github.com/sigstore/fulcio/pull/514)
    • examples: This adds example code on how to fetch a fulcio certificate (https://github.com/sigstore/fulcio/pull/324)

    Others

    • Bump github.com/grpc-ecosystem/grpc-gateway/v2 from 2.8.0 to 2.10.0 (https://github.com/sigstore/fulcio/pull/523)
    • Bump actions/checkout from 3.0.0 to 3.0.1 (https://github.com/sigstore/fulcio/pull/522)
    • Bump google.golang.org/protobuf from 1.27.1 to 1.28.0 in /hack/tools (https://github.com/sigstore/fulcio/pull/520)
    • Update release images (https://github.com/sigstore/fulcio/pull/517)
    • Bump github.com/spf13/viper from 1.10.1 to 1.11.0 (https://github.com/sigstore/fulcio/pull/516)
    • Bump github/codeql-action from 2.1.7 to 2.1.8 (https://github.com/sigstore/fulcio/pull/513)
    • add changelog for v0.3.0 release (https://github.com/sigstore/fulcio/pull/508)

    Contributors

    • Bob Callaway (@bobcallaway)
    • Carlos Tadeu Panato Junior (@cpanato)
    • Hayden Blauzvern (@haydentherapper)
    • Morten Linderud (@Foxboron)
    Open source →
  15. v0.3.1-0.20220423142934-88742474865523 Apr 2022pre-release

    Nothing published for this version

  16. v0.3.1-0.20220422133312-be77c26f5ed422 Apr 2022pre-release

    Nothing published for this version

  17. v0.3.1-0.20220421134832-f6016fda1ec621 Apr 2022pre-release

    Nothing published for this version

  18. v0.3.1-0.20220420153015-59f9be8fdec020 Apr 2022pre-release

    Nothing published for this version

  19. v0.3.1-0.20220420135321-ca16b54a258e20 Apr 2022pre-release

    Nothing published for this version

  20. v0.3.1-0.20220416012614-38798fe6933d16 Apr 2022pre-release

    Nothing published for this version

  21. v0.3.1-0.20220415180754-d834c553ee3215 Apr 2022pre-release

    Nothing published for this version

  22. v0.3.1-0.20220414154350-d4642197501d14 Apr 2022pre-release

    Nothing published for this version

  23. v0.3.1-0.20220411122740-8fca631d467211 Apr 2022pre-release

    Nothing published for this version

  24. v0.3.06 Apr 2022
    Release notes2 sources agree

    Enhancements

    • Generate larger, compliant serial numbers (https://github.com/sigstore/fulcio/pull/500)
    • Use provided HTTP client instead when fetching root cert (https://github.com/sigstore/fulcio/pull/502)
    • Add missing reader lock to File CA when reading certificate chain (https://github.com/sigstore/fulcio/pull/493)
    • Add validation of public keys to prevent certifying weak keys (https://github.com/sigstore/fulcio/pull/490)
    • Refactor API tests (https://github.com/sigstore/fulcio/pull/483)
    • Update Username OIDC flow based on comments (https://github.com/sigstore/fulcio/pull/463)

    Bug Fixes

    • fix_certificate_readme_typos (https://github.com/sigstore/fulcio/pull/487)
    • Fix minor typs in security model README (https://github.com/sigstore/fulcio/pull/488)
    • Fix minor typos in README (https://github.com/sigstore/fulcio/pull/486)
    • fix build date format for version command (https://github.com/sigstore/fulcio/pull/484)

    Others

    • update cosign and golang-cross images (https://github.com/sigstore/fulcio/pull/506)
    • Bump codecov/codecov-action from 2.1.0 to 3 (https://github.com/sigstore/fulcio/pull/505)
    • Bump github/codeql-action from 2.1.6 to 2.1.7 (https://github.com/sigstore/fulcio/pull/504)
    • Bump go.step.sm/crypto from 0.16.0 to 0.16.1 (https://github.com/sigstore/fulcio/pull/498)
    • Bump github/codeql-action from 1.1.5 to 2.1.6 (https://github.com/sigstore/fulcio/pull/497)
    • Bump google.golang.org/api from 0.73.0 to 0.74.0 (https://github.com/sigstore/fulcio/pull/499)
    • Bump github.com/prometheus/common from 0.32.1 to 0.33.0 (https://github.com/sigstore/fulcio/pull/491)
    • Bump google.golang.org/protobuf from 1.27.1 to 1.28.0 (https://github.com/sigstore/fulcio/pull/485)
    • Fix concurrency properly in File CA implementation (https://github.com/sigstore/fulcio/pull/495)
    • Bump go.step.sm/crypto from 0.15.3 to 0.16.0 (https://github.com/sigstore/fulcio/pull/482)
    • Bump google.golang.org/api from 0.72.0 to 0.73.0 (https://github.com/sigstore/fulcio/pull/479)
    • Bump github.com/stretchr/testify from 1.7.0 to 1.7.1 (https://github.com/sigstore/fulcio/pull/478)
    • Bump github/codeql-action from 1.1.4 to 1.1.5 (https://github.com/sigstore/fulcio/pull/477)
    • Bump google.golang.org/api from 0.71.0 to 0.72.0 (https://github.com/sigstore/fulcio/pull/476)
    • Bump go.step.sm/crypto from 0.15.2 to 0.15.3 (https://github.com/sigstore/fulcio/pull/473)

    Contributors

    • Carlos Tadeu Panato Junior (@cpanato)
    • Hayden Blauzvern (@haydentherapper)
    • Jason Hall (@imjasonh)
    • John Speed Meyers (@jspeed-meyers)
    Open source →
  25. v0.2.1-0.20220402171744-0b972e84bfec2 Apr 2022pre-release

    Nothing published for this version

  26. v0.2.1-0.20220331225221-56c15d68101f31 Mar 2022pre-release

    Nothing published for this version

  27. v0.2.1-0.20220328202134-97da7395200a28 Mar 2022pre-release

    Nothing published for this version

  28. v0.2.1-0.20220322141320-720eba882f6522 Mar 2022pre-release

    Nothing published for this version

  29. v0.2.1-0.20220319004827-374ebab70bdf19 Mar 2022pre-release

    Nothing published for this version

  30. v0.2.1-0.20220316122627-965df11aa88e16 Mar 2022pre-release

    Nothing published for this version

  31. v0.2.1-0.20220315104525-1cffed1ee19e15 Mar 2022pre-release

    Nothing published for this version

  32. v0.2.08 Mar 2022
    Release notes2 sources agree

    Enhancements

    • Use fulcio-system ns and drop -dev suffix for sa (https://github.com/sigstore/fulcio/pull/418)
    • Return an error if we fail get get the Root cert. (https://github.com/sigstore/fulcio/pull/416)
    • Add unit tests for oidc-EmailFromIDToken method (https://github.com/sigstore/fulcio/pull/413)
    • extract CA/KMS support info to separate file (https://github.com/sigstore/fulcio/pull/409)
    • add securityContext to deployment (https://github.com/sigstore/fulcio/pull/420)
    • Count HTTP request error codes with prometheus (https://github.com/sigstore/fulcio/pull/396)
    • Remove organization from subject for GCP CAS issuer (https://github.com/sigstore/fulcio/pull/391)
    • Update warning text. (https://github.com/sigstore/fulcio/pull/389)
    • Improve error messages returned by SigningCert (https://github.com/sigstore/fulcio/pull/388)
    • Allow parameterized application/json content types (https://github.com/sigstore/fulcio/pull/386)
    • Add AKS MetaIssuer (https://github.com/sigstore/fulcio/pull/384)
    • Move CTL logging logic over to CTL package (https://github.com/sigstore/fulcio/pull/353)
    • Move OID information to docs directory and reformat (https://github.com/sigstore/fulcio/pull/378)
    • Upgrade miekg/pkcs11 using 'go get github.com/miekg/[email protected]' (https://github.com/sigstore/fulcio/pull/376)
    • Address signingCert panic with the last-byte calculation of finalChainPEM (https://github.com/sigstore/fulcio/pull/370)
    • Include instructions to download verify the fulcio root certificate with TUF (https://github.com/sigstore/fulcio/pull/361)
    • Make CA explicit dependency of API handler (https://github.com/sigstore/fulcio/pull/354)
    • Improve error message when an invalid OIDC issuer is provided (https://github.com/sigstore/fulcio/pull/357)
    • Make the the invalid CA error message actionable (https://github.com/sigstore/fulcio/pull/356)
    • Initialize CT log client once (https://github.com/sigstore/fulcio/pull/350)
    • Generate subject key ID correctly for non-GCP certs (https://github.com/sigstore/fulcio/pull/345)
    • Add chain in response for all CAs, fix newlines in response (https://github.com/sigstore/fulcio/pull/341)
    • Add some reasonable timeouts to API server (https://github.com/sigstore/fulcio/pull/337)
    • fileca: add support for intermediate certificates (https://github.com/sigstore/fulcio/pull/320)
    • Set max request size to 4MiB (https://github.com/sigstore/fulcio/pull/338)
    • Extract additional claims from github-workflow token (https://github.com/sigstore/fulcio/pull/306)
    • Enable server settings via config file and env vars (https://github.com/sigstore/fulcio/pull/315)
    • Add file backed certificate authority (https://github.com/sigstore/fulcio/pull/280)
    • Handle error when there are no roots returned by CA Service (https://github.com/sigstore/fulcio/pull/298)
    • Add RootCert method to client + tests (https://github.com/sigstore/fulcio/pull/290)
    • Add back support for building with CGO_ENABLED=0 (https://github.com/sigstore/fulcio/pull/293)
    • add usersnames list to the codeonwers to make it easier to check (https://github.com/sigstore/fulcio/pull/295)
    • Add a Root Cert method to the CA interface, and implement it. (https://github.com/sigstore/fulcio/pull/287)
    • Update readme for V1 CA Service (https://github.com/sigstore/fulcio/pull/286)
    • Fail fast if private key is not found when using PKCS11 CA (https://github.com/sigstore/fulcio/pull/285)
    • Do not close the PKCS11 context on startup (https://github.com/sigstore/fulcio/pull/282)
    • Localize flags to each subcommand (https://github.com/sigstore/fulcio/pull/274)
    • Make client request timeout configurable with WithTimeout client option (https://github.com/sigstore/fulcio/pull/272)
    • add the ability to set the user-agent string on requests from the Client (https://github.com/sigstore/fulcio/pull/264)
    • Consolidate the source-of-truth. (https://github.com/sigstore/fulcio/pull/263)
    • Move the deployment to the new v1 cert. (https://github.com/sigstore/fulcio/pull/261)
    • The v1 GCP CA requires this field to be set. (https://github.com/sigstore/fulcio/pull/260)
    • Experiment with FulcioConfig pulling from context.Context (https://github.com/sigstore/fulcio/pull/249)
    • Upgrade fulcios to use of the google privateca api at v1 (https://github.com/sigstore/fulcio/pull/218)
    • plumb through !cgo golang tags that removes pkcs11 support (https://github.com/sigstore/fulcio/pull/244)
    • break out CA-specific implementation from common API class (https://github.com/sigstore/fulcio/pull/220)
    • Add support for recoginizing allow.pub as an spiffe issuer (https://github.com/sigstore/fulcio/pull/228)
    • Various nits trying SoftHSM (https://github.com/sigstore/fulcio/pull/217)
    • Use MetaIssuers to simular EKS / GKE in e2e test. (https://github.com/sigstore/fulcio/pull/225)
    • Add support for "meta issuers". (https://github.com/sigstore/fulcio/pull/223)
    • Remove the cluster-local block by default. (https://github.com/sigstore/fulcio/pull/224)
    • Refactor the way we access Config (https://github.com/sigstore/fulcio/pull/222)
    • Enable Fulcio e2e testing. (https://github.com/sigstore/fulcio/pull/219)
    • use sigstore/sigstore instead of directly calling RSA/ECDSA verify calls (https://github.com/sigstore/fulcio/pull/221)
    • Refactor the kind e2e test. (https://github.com/sigstore/fulcio/pull/215)
    • Add issuer information to code signing certificates (https://github.com/sigstore/fulcio/pull/204)
    • Extract the OIDC issuer URL. (https://github.com/sigstore/fulcio/pull/211)
    • use request ID logger where possible (https://github.com/sigstore/fulcio/pull/209)
    • Rewrite "FulcioCA" to "PKCS11CA" and add AWS support (https://github.com/sigstore/fulcio/pull/187)
    • add pkcs11-config-path command line parameter (https://github.com/sigstore/fulcio/pull/192)
    • Add GitHub OIDC to Fulcio (https://github.com/sigstore/fulcio/pull/181)
    • Changes fulcio-server to fulcio (https://github.com/sigstore/fulcio/pull/186)
    • Add Github to fulcioca path. (https://github.com/sigstore/fulcio/pull/184)
    • Add support for Github OIDC (https://github.com/sigstore/fulcio/pull/180)
    • Generate client code with swagger in Makefile (https://github.com/sigstore/fulcio/pull/176)
    • Switch to the JSON logger in prod (https://github.com/sigstore/fulcio/pull/175)
    • add SCT as HTTP response header (https://github.com/sigstore/fulcio/pull/163)
    • fulcio: add version command (https://github.com/sigstore/fulcio/pull/155)
    • Script and process to generate OIDC config from federation directory. (https://github.com/sigstore/fulcio/pull/139)

    Bug Fixes

    • Fix the SCT header return value from the API to base64 encode it. (https://github.com/sigstore/fulcio/pull/288)
    • Fix the k8s subject parsing. (https://github.com/sigstore/fulcio/pull/254)
    • [Correction] Upgrade fulcios to use of the google privateca api at v1 (https://github.com/sigstore/fulcio/pull/252)
    • fix: go get complain missing version when dir not in module (https://github.com/sigstore/fulcio/pull/248)
    • Fix street-address and postal-code descriptions to be more descriptive. (https://github.com/sigstore/fulcio/pull/245)
    • fix cutpaste error, sets cpu correctly (https://github.com/sigstore/fulcio/pull/237)
    • Fix nil pointer, update dev docs (https://github.com/sigstore/fulcio/pull/236)
    • Fix the Github OIDC challenge endpoint (https://github.com/sigstore/fulcio/pull/206)
    • Fix misspellings. (https://github.com/sigstore/fulcio/pull/177)

    Documentation

    • extract development documentation from README (https://github.com/sigstore/fulcio/pull/410)
    • fixing link to external resources (https://github.com/sigstore/fulcio/pull/411)
    • Add feature stability and deprecation docs (https://github.com/sigstore/fulcio/pull/400)
    • docs: overview of certificate issuing (https://github.com/sigstore/fulcio/pull/383)
    • Add Logo to README (https://github.com/sigstore/fulcio/pull/381)
    • Move sec model out of readme (https://github.com/sigstore/fulcio/pull/382)
    • Update README for V1 Fulcio cert (https://github.com/sigstore/fulcio/pull/355)
    • fix link for SECURITY.md (https://github.com/sigstore/fulcio/pull/340)
    • Remove root CA whitespaces on README.md (https://github.com/sigstore/fulcio/pull/325)
    • Add Locust load test and README (https://github.com/sigstore/fulcio/pull/311)
    • add oid documentation (https://github.com/sigstore/fulcio/pull/307)
    • Add documentation for testing with ephemeralca as well as document (https://github.com/sigstore/fulcio/pull/296)

    Others

    • Bump actions/upload-artifact from 2.3.1 to 3 (https://github.com/sigstore/fulcio/pull/452)
    • Go update to 1.17.8 and cosign to 1.6.0 (https://github.com/sigstore/fulcio/pull/453)
    • add missing target name (https://github.com/sigstore/fulcio/pull/450)
    • Bump cloud.google.com/go/security from 1.2.1 to 1.3.0 (https://github.com/sigstore/fulcio/pull/448)
    • Bump golang from c2ca472 to b983574 (https://github.com/sigstore/fulcio/pull/447)
    • Move CI private-ca YAML to subdir (https://github.com/sigstore/fulcio/pull/446)
    • Add step in release to mirror signed image to ghcr (https://github.com/sigstore/fulcio/pull/441)
    • Bump actions/checkout from 2 to 3 (https://github.com/sigstore/fulcio/pull/443)
    • Bump golang from e06c834 to c2ca472 (https://github.com/sigstore/fulcio/pull/442)
    • Bump actions/setup-go from 2.2.0 to 3.0.0 (https://github.com/sigstore/fulcio/pull/440)
    • Bump golangci/golangci-lint-action from 3.0.0 to 3.1.0 (https://github.com/sigstore/fulcio/pull/439)
    • Bump golangci/golangci-lint-action from 2.5.2 to 3 (https://github.com/sigstore/fulcio/pull/438)
    • Bump github/codeql-action from 1.1.2 to 1.1.3 (https://github.com/sigstore/fulcio/pull/435)
    • Bump github.com/magiconair/properties from 1.8.5 to 1.8.6 (https://github.com/sigstore/fulcio/pull/436)
    • add indent to fix yaml error (https://github.com/sigstore/fulcio/pull/434)
    • Bump cloud.google.com/go/security from 1.2.0 to 1.2.1 (https://github.com/sigstore/fulcio/pull/431)
    • explicitly set permissions for github workflows (https://github.com/sigstore/fulcio/pull/433)
    • Bump google.golang.org/api from 0.69.0 to 0.70.0 (https://github.com/sigstore/fulcio/pull/432)
    • Add missing testing dependency (https://github.com/sigstore/fulcio/pull/429)
    • Workflow to kick off release. (https://github.com/sigstore/fulcio/pull/407)
    • Take advantage of Chainguard maintained versions of various actions. (https://github.com/sigstore/fulcio/pull/427)
    • Bump golang from 2c92978 to e06c834 (https://github.com/sigstore/fulcio/pull/426)
    • create namespace as part of config yaml (https://github.com/sigstore/fulcio/pull/422)
    • Bump golang from 1a35cc2 to 2c92978 (https://github.com/sigstore/fulcio/pull/423)
    • Bump ossf/scorecard-action from 1.0.3 to 1.0.4 (https://github.com/sigstore/fulcio/pull/425)
    • Bump github/codeql-action from 1.1.0 to 1.1.2 (https://github.com/sigstore/fulcio/pull/424)
    • Bump google.golang.org/api from 0.68.0 to 0.69.0 (https://github.com/sigstore/fulcio/pull/412)
    • Bump cloud.google.com/go/security from 1.1.1 to 1.2.0 (https://github.com/sigstore/fulcio/pull/408)
    • Bump github/codeql-action from 1.0.32 to 1.1.0 (https://github.com/sigstore/fulcio/pull/406)
    • update cross-build to use go 1.17.7 (https://github.com/sigstore/fulcio/pull/404)
    • Bump golang from 1.17.6 to 1.17.7 (https://github.com/sigstore/fulcio/pull/403)
    • Bump golang from 301609e to fff998d (https://github.com/sigstore/fulcio/pull/401)
    • Bump actions/setup-go from 2.1.5 to 2.2.0 (https://github.com/sigstore/fulcio/pull/402)
    • Bump google.golang.org/api from 0.67.0 to 0.68.0 (https://github.com/sigstore/fulcio/pull/399)
    • Bump go.uber.org/zap from 1.20.0 to 1.21.0 (https://github.com/sigstore/fulcio/pull/393)
    • Bump github/codeql-action from 1.0.31 to 1.0.32 (https://github.com/sigstore/fulcio/pull/392)
    • Bump google.golang.org/api from 0.66.0 to 0.67.0 (https://github.com/sigstore/fulcio/pull/385)
    • Bump github/codeql-action from 1.0.30 to 1.0.31 (https://github.com/sigstore/fulcio/pull/366)
    • Bump ossf/scorecard-action from 1.0.2 to 1.0.3 (https://github.com/sigstore/fulcio/pull/367)
    • Bump go.step.sm/crypto from 0.15.0 to 0.15.1 (https://github.com/sigstore/fulcio/pull/377)
    • Bump google.golang.org/api from 0.65.0 to 0.66.0 (https://github.com/sigstore/fulcio/pull/363)
    • Bump github.com/prometheus/client_golang from 1.12.0 to 1.12.1 (https://github.com/sigstore/fulcio/pull/362)
    • Bump golang from d7f2f6f to 301609e (https://github.com/sigstore/fulcio/pull/358)
    • Bump go.step.sm/crypto from 0.14.0 to 0.15.0 (https://github.com/sigstore/fulcio/pull/359)
    • Bump golang from 0fa6504 to d7f2f6f (https://github.com/sigstore/fulcio/pull/352)
    • createca: Address panic when no private key pair matches (https://github.com/sigstore/fulcio/pull/351)
    • update version marker (https://github.com/sigstore/fulcio/pull/346)
    • Remove Google CA v1beta1 API and associated config (https://github.com/sigstore/fulcio/pull/349)
    • Bump ossf/scorecard-action from 1.0.1 to 1.0.2 (https://github.com/sigstore/fulcio/pull/347)
    • update to v1.0.29 of codeql-action (https://github.com/sigstore/fulcio/pull/344)
    • Bump github.com/prometheus/client_golang from 1.11.0 to 1.12.0 (https://github.com/sigstore/fulcio/pull/333)
    • Bump github.com/google/go-cmp from 0.5.6 to 0.5.7 (https://github.com/sigstore/fulcio/pull/334)
    • Update github/codeql-action requirement to 8a4b243fbf9a03a93e93a71c1ec257347041f9c4 (https://github.com/sigstore/fulcio/pull/332)
    • Bump ossf/scorecard-action from 0fe1afdc40f536c78e3dc69147b91b3ecec2cc8a to 1.0.1 (https://github.com/sigstore/fulcio/pull/331)
    • pin one additional set of actions (https://github.com/sigstore/fulcio/pull/329)
    • Bump google.golang.org/api from 0.64.0 to 0.65.0 (https://github.com/sigstore/fulcio/pull/321)
    • add OSSF scorecard action (https://github.com/sigstore/fulcio/pull/328)
    • Bump golang from 8c0269d to 0fa6504 (https://github.com/sigstore/fulcio/pull/326)
    • pin github actions by digest instead of tag (https://github.com/sigstore/fulcio/pull/323)
    • release: add cloudbuild to run the release for fulcio (https://github.com/sigstore/fulcio/pull/322)
    • Fix docker-compose dexidp startup (https://github.com/sigstore/fulcio/pull/316)
    • Bump go.step.sm/crypto from 0.13.0 to 0.14.0 (https://github.com/sigstore/fulcio/pull/319)
    • Bump golang from 1.17.5 to 1.17.6 (https://github.com/sigstore/fulcio/pull/317)
    • Switch to use fileca in e2e tests (https://github.com/sigstore/fulcio/pull/309)
    • Bump google.golang.org/api from 0.63.0 to 0.64.0 (https://github.com/sigstore/fulcio/pull/318)
    • Remove hack/tools (https://github.com/sigstore/fulcio/pull/308)
    • Bump cloud.google.com/go/security from 1.1.0 to 1.1.1 (https://github.com/sigstore/fulcio/pull/312)
    • Bump go.uber.org/zap from 1.19.1 to 1.20.0 (https://github.com/sigstore/fulcio/pull/313)
    • Bump github.com/sigstore/sigstore from 1.0.1 to 1.1.0 (https://github.com/sigstore/fulcio/pull/299)
    • Change ports for docker compose to avoid conflict with Rekor (https://github.com/sigstore/fulcio/pull/297)
    • Bump github.com/spf13/viper from 1.10.0 to 1.10.1 (https://github.com/sigstore/fulcio/pull/283)
    • Bump github.com/spf13/cobra from 1.2.1 to 1.3.0 (https://github.com/sigstore/fulcio/pull/278)
    • Bump golang from 1.17.4 to 1.17.5 (https://github.com/sigstore/fulcio/pull/269)
    • Bump github.com/prometheus/common from 0.29.0 to 0.32.1 (https://github.com/sigstore/fulcio/pull/270)
    • Bump golang from 1.17.3 to 1.17.4 (https://github.com/sigstore/fulcio/pull/265)
    • Wrap the server with the Prometheus so we get metrics + add an e2e te… (https://github.com/sigstore/fulcio/pull/267)
    • While working on #267 noticed this, but didn't want to bake into it. (https://github.com/sigstore/fulcio/pull/268)
    • Drop OpenAPI from Fulcio (https://github.com/sigstore/fulcio/pull/262)
    • Drop useless package. (https://github.com/sigstore/fulcio/pull/259)
    • Drop gratuitous sync.Once in google CAs. (https://github.com/sigstore/fulcio/pull/258)
    • Remove viper from pkg/. (https://github.com/sigstore/fulcio/pull/257)
    • Bump github.com/mitchellh/mapstructure from 1.4.2 to 1.4.3 (https://github.com/sigstore/fulcio/pull/256)
    • Consolidate viper usage in pkg/ca/ca.go (https://github.com/sigstore/fulcio/pull/255)
    • Bump cloud.google.com/go/security from 0.1.0 to 1.1.0 (https://github.com/sigstore/fulcio/pull/246)
    • Bump github.com/go-openapi/strfmt from 0.21.0 to 0.21.1 (https://github.com/sigstore/fulcio/pull/247)
    • Use CGO_ENABLED=1 via .ko.yaml. (https://github.com/sigstore/fulcio/pull/242)
    • Bump github.com/sigstore/sigstore from 1.0.0 to 1.0.1 (https://github.com/sigstore/fulcio/pull/239)
    • Add commit sha and trigger to github workflow (https://github.com/sigstore/fulcio/pull/232)
    • Bump golang from 1.17.2 to 1.17.3 (https://github.com/sigstore/fulcio/pull/234)
    • Bump actions/checkout from 2.3.5 to 2.4.0 (https://github.com/sigstore/fulcio/pull/233)
    • Bump github.com/go-openapi/runtime from 0.20.0 to 0.21.0 (https://github.com/sigstore/fulcio/pull/229)
    • Bump github.com/go-openapi/strfmt from 0.20.3 to 0.21.0 (https://github.com/sigstore/fulcio/pull/226)
    • Bump github.com/hashicorp/golang-lru from 0.5.3 to 0.5.4 (https://github.com/sigstore/fulcio/pull/227)
    • bump go-swagger to v0.28.0 (https://github.com/sigstore/fulcio/pull/213)
    • Reproducible builds with trimpath (https://github.com/sigstore/fulcio/pull/210)
    • Bump actions/checkout from 2.3.4 to 2.3.5 (https://github.com/sigstore/fulcio/pull/207)
    • Bump github.com/go-openapi/runtime from 0.19.31 to 0.20.0 (https://github.com/sigstore/fulcio/pull/202)
    • Bump github.com/go-openapi/spec from 0.20.3 to 0.20.4 (https://github.com/sigstore/fulcio/pull/201)
    • Bump github.com/go-openapi/validate from 0.20.2 to 0.20.3 (https://github.com/sigstore/fulcio/pull/198)
    • update go.sum (https://github.com/sigstore/fulcio/pull/205)
    • Bump github.com/go-openapi/loads from 0.20.2 to 0.20.3 (https://github.com/sigstore/fulcio/pull/200)
    • Bump github.com/go-openapi/strfmt from 0.20.2 to 0.20.3 (https://github.com/sigstore/fulcio/pull/199)
    • Bump golang from 1.17.1 to 1.17.2 (https://github.com/sigstore/fulcio/pull/197)
    • Bump github.com/spf13/viper from 1.8.1 to 1.9.0 (https://github.com/sigstore/fulcio/pull/189)
    • Bump github.com/coreos/go-oidc/v3 from 3.0.0 to 3.1.0 (https://github.com/sigstore/fulcio/pull/188)
    • Bump github.com/mitchellh/mapstructure from 1.4.1 to 1.4.2 (https://github.com/sigstore/fulcio/pull/185)
    • Bump github.com/ThalesIgnite/crypto11 from 1.2.4 to 1.2.5 (https://github.com/sigstore/fulcio/pull/182)
    • Bump golang from 1.17.0 to 1.17.1 (https://github.com/sigstore/fulcio/pull/179)
    • Bump go.uber.org/zap from 1.19.0 to 1.19.1 (https://github.com/sigstore/fulcio/pull/178)
    • Bump github.com/go-openapi/runtime from 0.19.30 to 0.19.31 (https://github.com/sigstore/fulcio/pull/171)
    • Bump github.com/go-openapi/errors from 0.20.0 to 0.20.1 (https://github.com/sigstore/fulcio/pull/169)
    • Bump github.com/go-openapi/strfmt from 0.20.1 to 0.20.2 (https://github.com/sigstore/fulcio/pull/168)
    • Bump golang from 1.16.7 to 1.17.0 (https://github.com/sigstore/fulcio/pull/166)
    • Bump cloud.google.com/go from 0.91.1 to 0.92.3 (https://github.com/sigstore/fulcio/pull/167)
    • Bump cloud.google.com/go from 0.90.0 to 0.91.1 (https://github.com/sigstore/fulcio/pull/162)
    • Bump github.com/go-openapi/runtime from 0.19.29 to 0.19.30 (https://github.com/sigstore/fulcio/pull/161)
    • Bump go.uber.org/zap from 1.18.1 to 1.19.0 (https://github.com/sigstore/fulcio/pull/160)
    • Bump golang from 1.16.6 to 1.16.7 (https://github.com/sigstore/fulcio/pull/159)
    • Bump cloud.google.com/go from 0.89.0 to 0.90.0 (https://github.com/sigstore/fulcio/pull/158)
    • Bump cloud.google.com/go from 0.88.0 to 0.89.0 (https://github.com/sigstore/fulcio/pull/156)
    • makefile: add rule to download and set swagger and make rule to build the dist (https://github.com/sigstore/fulcio/pull/154)
    • Add missing code of conduct (stock sigstore one) (https://github.com/sigstore/fulcio/pull/153)

    Contributors

    • Appu (@loosebazooka)
    • Asra Ali (@asraa)
    • Bob Callaway (@bobcallaway)
    • Carlos Tadeu Panato Junior (@cpanato)
    • Christian Kotzbauer (@ckotzbauer)
    • Dan Lorenc (@dlorenc)
    • Elizabeth Thomas (@elizabetht)
    • Evan Phoenix (@evanphx)
    • Hayden Blauzvern (@haydentherapper)
    • Jake Sanders (@dekkagaijin)
    • Josh Dolitsky (@jdolitsky)
    • Jyotsna (@jyotsna-penumaka)
    • Kenny Leung (@k4leung4)
    • Luke Hinds (@lukehinds)
    • Mark Bestavros (@mbestavros)
    • Matt Moore (@mattmoor)
    • Matthew Suozzo (@msuozzo)
    • Nathan Smith (@nsmith5)
    • Naveen (@naveensrinivasan)
    • Nghia Tran (@tcnghias)
    • Priya Wadhwa (@priyawadhwa)
    • Radoslav Gerganov (@rgerganov)
    • Rafael Fernández López (@ereslibre)
    • Scott Nichols (@n3wscott)
    • Thomas Strömberg (@tstromberg)
    • Tuan Anh Tran (@tuananh)
    • Viacheslav Vasilyev (@avoidik)
    • Ville Aikas (@vaikas)
    • Zack Newman (@znewman01)
    • endorama (@endorama)
    Open source →
  33. v0.1.2-0.20220311143233-d6405053ff0a11 Mar 2022pre-release

    Nothing published for this version

  34. v0.1.2-0.20220228143925-1658059321e128 Feb 2022pre-release

    Nothing published for this version

  35. v0.1.2-0.20220228122236-182b810af91528 Feb 2022pre-release

    Nothing published for this version

  36. v0.1.2-0.20220216100350-475e48fe1fd116 Feb 2022pre-release

    Nothing published for this version

  37. v0.1.2-0.20220210030946-fb6a86f9176410 Feb 2022pre-release

    Nothing published for this version

  38. v0.1.2-0.20220114150912-86a2036f9bc714 Jan 2022pre-release

    Nothing published for this version

  39. v0.1.2-0.20220110181937-d890471d804710 Jan 2022pre-release

    Nothing published for this version

  40. v0.1.2-0.20220107182406-71f212cf118a7 Jan 2022pre-release

    Nothing published for this version

  41. v0.1.2-0.20220105121349-11b0c0dbd1705 Jan 2022pre-release

    Nothing published for this version

  42. v0.1.2-0.20220103193424-0df42390d3923 Jan 2022pre-release

    Nothing published for this version

  43. v0.1.2-0.20211229194048-f2e24d2c780f29 Dec 2021pre-release

    Nothing published for this version

  44. v0.1.2-0.20211229092814-754b833b168d29 Dec 2021pre-release

    Nothing published for this version

  45. v0.1.2-0.20211223140821-ebfaab43325323 Dec 2021pre-release

    Nothing published for this version

  46. v0.1.2-0.20211221142212-c1cba214f3e921 Dec 2021pre-release

    Nothing published for this version

  47. v0.1.2-0.20211221131117-cdbc88b1da2a21 Dec 2021pre-release

    Nothing published for this version

  48. v0.1.2-0.20211217042128-d77d444350a117 Dec 2021pre-release

    Nothing published for this version

  49. v0.1.2-0.20211216173338-98dbae6c4d6216 Dec 2021pre-release

    Nothing published for this version

  50. v0.1.2-0.20211210133755-94047c6efe6710 Dec 2021pre-release

    Nothing published for this version

  51. v0.1.2-0.20211209145914-3d034fd843719 Dec 2021pre-release

    Nothing published for this version

  52. v0.1.2-0.20211207184413-f4746cc4ff3d7 Dec 2021pre-release

    Nothing published for this version

  53. v0.1.2-0.20211204001059-48e1a254cf104 Dec 2021pre-release

    Nothing published for this version

  54. v0.1.2-0.20211124165801-48b5188f501f24 Nov 2021pre-release

    Nothing published for this version

  55. v0.1.2-0.20211124140716-51348413229724 Nov 2021pre-release

    Nothing published for this version

  56. v0.1.2-0.20211124101638-815db4f8f7e324 Nov 2021pre-release

    Nothing published for this version

  57. v0.1.2-0.20211123150220-69e042af622623 Nov 2021pre-release

    Nothing published for this version

  58. v0.1.2-0.20211117151042-ae43aff01bc717 Nov 2021pre-release

    Nothing published for this version

  59. v0.1.2-0.20211112064848-60a53fb9423c12 Nov 2021pre-release

    Nothing published for this version

  60. v0.1.2-0.20211110073949-c0645e1123d110 Nov 2021pre-release

    Nothing published for this version