Skip to content

Releases: sonatype/actions

Release 1.1.2

10 Jan 20:02
Compare
Choose a tag to compare
  • Added support for GitHub Enterprise Server runners to use upload-artifact@v3
  • Fixed spawn E2BIG error when scan targets resolved to a big list of files
  • Implemented post-execution tasks to leave self-hosted runners in a clean state

Release 1.1.1

12 Dec 13:23
Compare
Choose a tag to compare
  • Added support for container: style scan patterns
  • Fixed issue where environment variables were not recognized by the evaluate and run-iq-cli actions

Release 1.1.0

22 Nov 20:42
Compare
Choose a tag to compare
  • Added support to generate a SARIF file, as an artifact, with policy violations findings
  • Added support to upload evaluation results to GitHub Advanced Security

Release 1.0.5

08 Nov 18:54
Compare
Choose a tag to compare
  • Maintenance release

Release 1.0.4

10 Oct 20:03
Compare
Choose a tag to compare
  • Added optional download-url parameter for setup-iq-cli action
  • Added support for CycloneDX v1.6 to fetch-sbom action
  • Added IQ report link to the summary screen
  • Improved the overall error message for run-iq-cli action failures

Release 1.0.3

05 Sep 13:08
Compare
Choose a tag to compare
  • Maintenance release

v1.0.2

19 Aug 20:56
Compare
Choose a tag to compare
  • Updated internal dependencies to ensure compatibility with Lifecycle 181

Release 1.0.1

15 Aug 20:13
Compare
Choose a tag to compare
  • Updated internal dependencies to ensure compatibility with Lifecycle 180
  • Fixed issue where the sonatype-iq-cli.jar file was incorrectly identified as a component
  • The moduleExclude parameter now correctly supports a list of space-separated module names

Release 1.0.0

24 Jul 17:40
Compare
Choose a tag to compare