Releases: Malwarebytes/ghas-cli
v1.6.2
This releases brings a few new features/quality of life improvements, and update dependencies:
-
Added randomness into the CodeQL configuration, so that each repository will have a scheduled scan running at a different time. Until now, all repositories used the same schedule which was causing issues, for instance spike load on self-hosted runners.
Thanks @JoshuaJackson-jobvite for the PR! -
Enable CodeQL support for GH Actions by default.
## What's Changed
* Bump idna from 3.6 to 3.7 by @dependabot in https://github.com/Malwarebytes/ghas-cli/pull/104
* Update dependabot.py by @jboursier-mwb in https://github.com/Malwarebytes/ghas-cli/pull/105
* Bump certifi from 2024.2.2 to 2024.7.4 by @dependabot in https://github.com/Malwarebytes/ghas-cli/pull/106
* Update to Python3.8 and update dependencies by @jboursier-mwb in https://github.com/Malwarebytes/ghas-cli/pull/107
* Bump click from 8.1.7 to 8.1.8 by @dependabot in https://github.com/Malwarebytes/ghas-cli/pull/109
* Feat: Add randomness to the codeql scanning time by @JoshuaJackson-jobvite in https://github.com/Malwarebytes/ghas-cli/pull/110
* Enable CodeQL for GH Actions by @jboursier-mwb in https://github.com/Malwarebytes/ghas-cli/pull/108
* Version 1.6.2 by @jboursier-mwb in https://github.com/Malwarebytes/ghas-cli/pull/111
## New Contributors
* @JoshuaJackson-jobvite made their first contribution in https://github.com/Malwarebytes/ghas-cli/pull/110
Full Changelog: v1.6.1...v.1.6.2
v1.6.1
- See 1.6.0 changelog: https://github.com/Malwarebytes/ghas-cli/releases/tag/v1.6.0
Full Changelog: v1.6.0...v1.6.1
v1.6.0
New dependabot commands: https://github.com/Malwarebytes/ghas-cli/wiki/Export-dependencies-for-a-repository
What's Changed
- Bump urllib3 from 2.0.2 to 2.0.3 by @dependabot in #89
- Bump click from 8.1.3 to 8.1.4 by @dependabot in #92
- Bump click from 8.1.4 to 8.1.5 by @dependabot in #93
- Bump urllib3 from 2.0.3 to 2.0.4 by @dependabot in #94
- Bump click from 8.1.5 to 8.1.6 by @dependabot in #95
- Bump click from 8.1.6 to 8.1.7 by @dependabot in #96
- Bump certifi from 2023.5.7 to 2023.7.22 by @dependabot in #97
- Bump urllib3 from 2.0.4 to 2.0.7 by @dependabot in #100
- Support for Dependabot commands by @jboursier-mwb in #41
Full Changelog: v1.5.1...v1.6.0
1.5.1
What's Changed
- Update the user-agent by @jboursier-mwb in #81
- Handle rate limit correctly by @SecurityAndStuff in #82
- Bump urllib3 from 1.26.15 to 2.0.2 by @dependabot in #84
- Bump requests from 2.30.0 to 2.31.0 by @dependabot in #85
- Add README badges by @jboursier-mwb in #87
- Default filename by @SecurityAndStuff in #86
- Implement unarchiving one or many repositories by @jboursier-mwb in #69
Full Changelog: v1.5.0...v1.5.1
1.5.0
What's Changed
- Support CodeQL configuration update by @SecurityAndStuff in #80
Full Changelog: v1.4.2...v1.5.0
1.4.2
What's Changed
- Bump urllib3 from 1.26.14 to 1.26.15 by @dependabot in #70
- Add authorization check by @SecurityAndStuff in #71
- Allow filtering secret type by @SecurityAndStuff in #72
- Make security-extended a default by @SecurityAndStuff in #74
- Bump requests from 2.28.2 to 2.29.0 by @dependabot in #77
- Bump requests from 2.29.0 to 2.30.0 by @dependabot in #78
- Support updating CodeQL config by @SecurityAndStuff in #75
- Update README.md by @SecurityAndStuff in #76
New Contributors
- @SecurityAndStuff made their first contribution in #71
Full Changelog: v1.4.1...v1.4.2
1.4.1
Minor bugfixes due to typos.
What's Changed
- Release 1.4.1 by @jboursier-mwb in #68
Full Changelog: v1.4.0...v1.4.1
1.4.0
This release adds two major new features: 1. support for custom roles, 2. find and archive legacy repositories.
It also improves the wiki content: https://github.com/Malwarebytes/ghas-cli/wiki
What's Changed
- Bump certifi from 2022.9.24 to 2022.12.7 by @dependabot in #62
- Ability to export a list of repositories last updated before a specified time by @jboursier-mwb in #65
- Pass X-GitHub-Api-Version header to use the new calendar versioning by @jboursier-mwb in #66
- Draft support for custom roles by @jboursier-mwb in #55
- Release 1.4.0 by @jboursier-mwb in #67
Full Changelog: v1.3.0...v1.4.0
1.3.0
What's Changed
- Update Dependency Reviewer action to v3 by @jboursier-mwb in #56
- Bump urllib3 from 1.26.12 to 1.26.13 by @dependabot in #57
- Implement secrets export to CSV by @jboursier-mwb in #59
Full Changelog: 1.2.1...v1.3.0
1.2.1
What's Changed
- Release 1.2.0 by @jboursier-mwb in #50
- Fix Homepage and repository links by @jboursier-mwb in #51
- Add Pypi installation method in the Readme by @jboursier-mwb in #52
- Fix GitHub case by @jboursier-mwb in #53
Full Changelog: v1.2.0...1.2.1