generated from oracle/template-repo
-
Notifications
You must be signed in to change notification settings - Fork 24
Pull requests: oracle/macaron
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
feat: detect vulnerable GitHub Actions
OCA Verified
All contributors have signed the Oracle Contributor Agreement.
feat: add GitHub attestation discovery
OCA Verified
All contributors have signed the Oracle Contributor Agreement.
chore(deps): bump github/codeql-action from 3.28.10 to 3.28.11
dependencies
Pull requests that update a dependency file
github_actions
Pull requests that update GitHub Actions code
OCA Verified
All contributors have signed the Oracle Contributor Agreement.
#1008
opened Mar 10, 2025 by
dependabot
bot
Loading…
chore(deps): update cyclonedx-python-lib and other required dependencies
OCA Verified
All contributors have signed the Oracle Contributor Agreement.
chore(deps): bump actions/download-artifact from 4.1.7 to 4.1.9
dependencies
Pull requests that update a dependency file
github_actions
Pull requests that update GitHub Actions code
OCA Verified
All contributors have signed the Oracle Contributor Agreement.
#999
opened Mar 3, 2025 by
dependabot
bot
Loading…
chore(deps): update cyclonedx-python-lib[validation] requirement from <8.0.0,>=7.3.4 to >=7.3.4,<10.0.0
dependencies
Pull requests that update a dependency file
OCA Verified
All contributors have signed the Oracle Contributor Agreement.
python
Pull requests that update Python code
#998
opened Mar 3, 2025 by
dependabot
bot
Loading…
chore(deps): bump actions/upload-artifact from 4.3.3 to 4.6.1
dependencies
Pull requests that update a dependency file
github_actions
Pull requests that update GitHub Actions code
OCA Verified
All contributors have signed the Oracle Contributor Agreement.
#995
opened Feb 24, 2025 by
dependabot
bot
Loading…
feat: check PyPI registry when deps.dev fails to find a source repository
OCA Verified
All contributors have signed the Oracle Contributor Agreement.
#982
opened Feb 10, 2025 by
benmss
Loading…
4 tasks done
chore: store provenance asset info
OCA Verified
All contributors have signed the Oracle Contributor Agreement.
#975
opened Feb 3, 2025 by
benmss
Loading…
chore(deps): bump actions/setup-java from 4.4.0 to 4.7.0
dependencies
Pull requests that update a dependency file
github_actions
Pull requests that update GitHub Actions code
OCA Verified
All contributors have signed the Oracle Contributor Agreement.
#972
opened Feb 3, 2025 by
dependabot
bot
Loading…
refactor: improve experimental source code pattern analysis of pypi packages
OCA Verified
All contributors have signed the Oracle Contributor Agreement.
#965
opened Jan 17, 2025 by
art1f1c3R
Loading…
chore(deps): update twine requirement from <6.0.0,>=5.0.0 to >=5.0.0,<7.0.0
dependencies
Pull requests that update a dependency file
OCA Verified
All contributors have signed the Oracle Contributor Agreement.
python
Pull requests that update Python code
#933
opened Dec 2, 2024 by
dependabot
bot
Loading…
chore(deps): bump actions/checkout from 4.2.0 to 4.2.2
dependencies
Pull requests that update a dependency file
github_actions
Pull requests that update GitHub Actions code
OCA Verified
All contributors have signed the Oracle Contributor Agreement.
#909
opened Oct 28, 2024 by
dependabot
bot
Loading…
feat: add a new check to validate npm provenance and extract facts for policy engine
OCA Verified
All contributors have signed the Oracle Contributor Agreement.
chore(deps): update cyclonedx-bom requirement from <5.0.0,>=4.0.0 to >=4.0.0,<6.0.0
dependencies
Pull requests that update a dependency file
OCA Verified
All contributors have signed the Oracle Contributor Agreement.
python
Pull requests that update Python code
#900
opened Oct 21, 2024 by
dependabot
bot
Loading…
chore: fix pylint message redefined-variable-type
OCA Verified
All contributors have signed the Oracle Contributor Agreement.
#889
opened Oct 1, 2024 by
jenstroeger
•
Draft
feat: add a timestamp validation check
OCA Verified
All contributors have signed the Oracle Contributor Agreement.
#850
opened Sep 3, 2024 by
AnshulDadhwal
Loading…
chore(deps): bump actions/configure-pages from 4.0.0 to 5.0.0
dependencies
Pull requests that update a dependency file
github_actions
Pull requests that update GitHub Actions code
OCA Verified
All contributors have signed the Oracle Contributor Agreement.
#690
opened Apr 1, 2024 by
dependabot
bot
Loading…
chore(deps): bump actions/deploy-pages from 4.0.3 to 4.0.5
dependencies
Pull requests that update a dependency file
github_actions
Pull requests that update GitHub Actions code
OCA Verified
All contributors have signed the Oracle Contributor Agreement.
#680
opened Mar 25, 2024 by
dependabot
bot
Loading…
chore(deps): bump actions/upload-pages-artifact from 3.0.0 to 3.0.1
dependencies
Pull requests that update a dependency file
github_actions
Pull requests that update GitHub Actions code
OCA Verified
All contributors have signed the Oracle Contributor Agreement.
#635
opened Feb 12, 2024 by
dependabot
bot
Loading…
chore: add base64 encode and decode functions for in-toto attestation payload
OCA Verified
All contributors have signed the Oracle Contributor Agreement.
feat: allow excluding paths in build tool detection
OCA Verified
All contributors have signed the Oracle Contributor Agreement.
feat: use database to store and retrieve found repos
OCA Verified
All contributors have signed the Oracle Contributor Agreement.
repository_finder
The issues related to the repository finder
#263
opened May 30, 2023 by
benmss
Loading…
feat: add problog rule inference to build as code check
OCA Verified
All contributors have signed the Oracle Contributor Agreement.
#260
opened May 30, 2023 by
sophie-bates
•
Draft
11 of 21 tasks
chore(deps): update CycloneDX Maven plugin
OCA Verified
All contributors have signed the Oracle Contributor Agreement.
#128
opened Mar 28, 2023 by
behnazh-w
Loading…
ProTip!
Type g p on any issue or pull request to go back to the pull request listing page.