Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Bump github.com/sigstore/fulcio from 1.4.5 to 1.5.1 (#199)
Bumps [github.com/sigstore/fulcio](https://github.com/sigstore/fulcio) from 1.4.5 to 1.5.1. <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/sigstore/fulcio/releases">github.com/sigstore/fulcio's releases</a>.</em></p> <blockquote> <h2>v1.5.1</h2> <h2>Bug Fixes</h2> <ul> <li>Surface the right <code>Name()</code> from our principal. by <a href="https://github.com/mattmoor"><code>@mattmoor</code></a> in <a href="https://redirect.github.com/sigstore/fulcio/pull/1726">sigstore/fulcio#1726</a></li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/sigstore/fulcio/compare/v1.5.0...v1.5.1">https://github.com/sigstore/fulcio/compare/v1.5.0...v1.5.1</a></p> <h1>v1.5.0</h1> <h2>Features</h2> <ul> <li>Add Chainguard OIDC provider. (<a href="https://redirect.github.com/sigstore/fulcio/issues/1703">#1703</a>)</li> <li>Adding support for configuration from yaml file (<a href="https://redirect.github.com/sigstore/fulcio/issues/1687">#1687</a>)</li> <li>Upgrade go to 1.22 (<a href="https://redirect.github.com/sigstore/fulcio/issues/1625">#1625</a>)</li> </ul> <h2>Documentation</h2> <ul> <li>oid-info: fix table render (<a href="https://redirect.github.com/sigstore/fulcio/issues/1662">#1662</a>)</li> <li>docs: Fix extensions for digest values requiring a type prefix (<a href="https://redirect.github.com/sigstore/fulcio/issues/1661">#1661</a>)</li> </ul> <h2>Contributors</h2> <ul> <li>Bob Callaway</li> <li>Carlos Tadeu Panato Junior</li> <li>Facundo Tuesca</li> <li>Javan Lacerda</li> <li>Matt Moore</li> <li>Tomas Turek</li> <li>William Woodruff</li> </ul> </blockquote> </details> <details> <summary>Changelog</summary> <p><em>Sourced from <a href="https://github.com/sigstore/fulcio/blob/main/CHANGELOG.md">github.com/sigstore/fulcio's changelog</a>.</em></p> <blockquote> <h1>v1.5.1</h1> <h2>Bug Fixes</h2> <ul> <li>Surface the right <code>Name()</code> from our principal. (<a href="https://redirect.github.com/sigstore/fulcio/issues/1726">#1726</a>)</li> </ul> <h2>Contributors</h2> <ul> <li>Matt Moore</li> </ul> <h1>v1.5.0</h1> <h2>Features</h2> <ul> <li>Add Chainguard OIDC provider. (<a href="https://redirect.github.com/sigstore/fulcio/issues/1703">#1703</a>)</li> <li>Adding support for configuration from yaml file (<a href="https://redirect.github.com/sigstore/fulcio/issues/1687">#1687</a>)</li> <li>Upgrade go to 1.22 (<a href="https://redirect.github.com/sigstore/fulcio/issues/1625">#1625</a>)</li> </ul> <h2>Documentation</h2> <ul> <li>oid-info: fix table render (<a href="https://redirect.github.com/sigstore/fulcio/issues/1662">#1662</a>)</li> <li>docs: Fix extensions for digest values requiring a type prefix (<a href="https://redirect.github.com/sigstore/fulcio/issues/1661">#1661</a>)</li> </ul> <h2>Contributors</h2> <ul> <li>Bob Callaway</li> <li>Carlos Tadeu Panato Junior</li> <li>Facundo Tuesca</li> <li>Javan Lacerda</li> <li>Matt Moore</li> <li>Tomas Turek</li> <li>William Woodruff</li> </ul> </blockquote> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/sigstore/fulcio/commit/f11344b67252fbfada3774ce17426df9f85b87ae"><code>f11344b</code></a> Revert "CiProvider as a new OIDCIssuer type (<a href="https://redirect.github.com/sigstore/fulcio/issues/1679">#1679</a>)" (<a href="https://redirect.github.com/sigstore/fulcio/issues/1727">#1727</a>)</li> <li><a href="https://github.com/sigstore/fulcio/commit/d16be8db673de5fbc7d64063bf4920674378da2b"><code>d16be8d</code></a> Surface the right <code>Name()</code> from our principal. (<a href="https://redirect.github.com/sigstore/fulcio/issues/1726">#1726</a>)</li> <li><a href="https://github.com/sigstore/fulcio/commit/9f49a8b6e090ec4e01b77760fd8306dd3c2c1b84"><code>9f49a8b</code></a> Bump google.golang.org/grpc in the go_modules group (<a href="https://redirect.github.com/sigstore/fulcio/issues/1724">#1724</a>)</li> <li><a href="https://github.com/sigstore/fulcio/commit/66485b693867adc650aea85777f1899286c3c7ce"><code>66485b6</code></a> CiProvider as a new OIDCIssuer type (<a href="https://redirect.github.com/sigstore/fulcio/issues/1679">#1679</a>)</li> <li><a href="https://github.com/sigstore/fulcio/commit/781fb652c8f9e08dc52903cba0b7680120f82467"><code>781fb65</code></a> Add changelog for v1.5.0 (<a href="https://redirect.github.com/sigstore/fulcio/issues/1723">#1723</a>)</li> <li><a href="https://github.com/sigstore/fulcio/commit/93664b4bb09e0b47e9de1834f0e3396d0d87e3dc"><code>93664b4</code></a> Bump actions/upload-artifact from 4.3.3 to 4.3.4 in the all group</li> <li><a href="https://github.com/sigstore/fulcio/commit/b5358c719f6dd742fe2201793f882e4c9feec652"><code>b5358c7</code></a> Bump golang from 1.22.4 to 1.22.5 in the all group</li> <li><a href="https://github.com/sigstore/fulcio/commit/07b19da442b418ebcf072ac65a7abb25f0e3d5c8"><code>07b19da</code></a> Update main.yml</li> <li><a href="https://github.com/sigstore/fulcio/commit/b13cbef778b20c3f6ad529613d6817f57d20dc77"><code>b13cbef</code></a> Bump protocolbuffers/protobuf from 27.1 to 27.2 in the all group</li> <li><a href="https://github.com/sigstore/fulcio/commit/acebf8b7584998a69b64de5b6b406d4d9b3b0d3c"><code>acebf8b</code></a> Bump github.com/prometheus/common from 0.54.0 to 0.55.0</li> <li>Additional commits viewable in <a href="https://github.com/sigstore/fulcio/compare/v1.4.5...v1.5.1">compare view</a></li> </ul> </details> <br /> [![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=github.com/sigstore/fulcio&package-manager=go_modules&previous-version=1.4.5&new-version=1.5.1)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores) Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. [//]: # (dependabot-automerge-start) [//]: # (dependabot-automerge-end) --- <details> <summary>Dependabot commands and options</summary> <br /> You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show <dependency name> ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) </details> --------- Signed-off-by: dependabot[bot] <support@github.com> Signed-off-by: Kenny Leung <kleung@chainguard.dev> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Co-authored-by: Kenny Leung <kleung@chainguard.dev>
- Loading branch information