Azure / ShieldGuard

Enables best security practices for your project from day zero.
MIT License
8 stars 6 forks source link

chore(deps): bump github.com/open-policy-agent/opa from 0.63.0 to 0.65.0 in /sg #110

Closed dependabot[bot] closed 2 months ago

dependabot[bot] commented 3 months ago

Bumps github.com/open-policy-agent/opa from 0.63.0 to 0.65.0.

Release notes

Sourced from github.com/open-policy-agent/opa's releases.

v0.65.0

This release contains a mix of features and bugfixes.

Runtime, Tooling, SDK

Topdown and Rego

Miscellaneous

  • docs: Add arrays to composite values section (#6727) authored by @​anderseknert reported by @​SpecLad
  • docs: Add remainder operator to grammar (#6767) authored by @​anderseknert
  • docs: Fix dynamic metadata object in docs (#6709) authored by @​antonioberben
  • docs: Use best practice package name in test examples (#6731) authored by @​asleire
  • docs: Update query API doc with details about overriding the def decision path (#6745) authored by @​ashutosh-narkar
  • ci: pin GitHub Actions macos runner version and build for darwin/amd64 (#6720) reported and authored by @​suzuki-shunsuke
  • Dependency updates; notably:
    • build(go): bump golang from 1.22.2 to 1.22.3
    • build(deps): bump github.com/containerd/containerd from 1.7.15 to 1.7.17
    • build(deps): bump github.com/prometheus/client_golang
    • build(deps): bump golang.org/x/net from 0.24.0 to 0.25.0
    • build(deps): bump google.golang.org/grpc from 1.63.2 to 1.64.0

Breaking changes

A new IsSetStmt statement has been added to the intermediate representation (IR). This is a breaking change for custom IR evaluators, which must interpret this statement in IR plans generated by this OPA version and later. No actions are required for Wasm users, as long as Wasm modules are built by this OPA version or later.

v0.64.1

This is a bug fix release addressing the following issues:

  • ci: Pin GitHub Actions macos runner version. The architecture of the GitHub Actions Runner macos-latest was changed from amd64 to arm64 and as a result darwin/amd64 binary wasn't released (#6720) authored by @​suzuki-shunsuke
  • plugins/discovery: Update comparison logic used in the discovery plugin for handling overrides. This fixes a panic that resulted from the comparison of uncomparable types (#6723) authored by @​ashutosh-narkar

v0.64.0

NOTES:

  • The minimum version of Go required to build the OPA module is 1.21

... (truncated)

Changelog

Sourced from github.com/open-policy-agent/opa's changelog.

0.65.0

This release contains a mix of features and bugfixes.

Runtime, Tooling, SDK

Topdown and Rego

Miscellaneous

  • docs: Add arrays to composite values section (#6727) authored by @​anderseknert reported by @​SpecLad
  • docs: Add remainder operator to grammar (#6767) authored by @​anderseknert
  • docs: Fix dynamic metadata object in docs (#6709) authored by @​antonioberben
  • docs: Use best practice package name in test examples (#6731) authored by @​asleire
  • docs: Update query API doc with details about overriding the def decision path (#6745) authored by @​ashutosh-narkar
  • ci: pin GitHub Actions macos runner version and build for darwin/amd64 (#6720) reported and authored by @​suzuki-shunsuke
  • Dependency updates; notably:
    • build(go): bump golang from 1.22.2 to 1.22.3
    • build(deps): bump github.com/containerd/containerd from 1.7.15 to 1.7.17
    • build(deps): bump github.com/prometheus/client_golang
    • build(deps): bump golang.org/x/net from 0.24.0 to 0.25.0
    • build(deps): bump google.golang.org/grpc from 1.63.2 to 1.64.0

Breaking changes

A new IsSetStmt statement has been added to the intermediate representation (IR). This is a breaking change for custom IR evaluators, which must interpret this statement in IR plans generated by this OPA version and later. No actions are required for Wasm users, as long as Wasm modules are built by this OPA version or later.

0.64.1

This is a bug fix release addressing the following issues:

  • ci: Pin GitHub Actions macos runner version. The architecture of the GitHub Actions Runner macos-latest was changed from amd64 to arm64 and as a result darwin/amd64 binary wasn't released (#6720) authored by @​suzuki-shunsuke
  • plugins/discovery: Update comparison logic used in the discovery plugin for handling overrides. This fixes a panic that resulted from the comparison of uncomparable types (#6723) authored by @​ashutosh-narkar

0.64.0

NOTES:

  • The minimum version of Go required to build the OPA module is 1.21

... (truncated)

Commits
  • f054975 Updating changelog for v0.65.0 (#6774)
  • 5a49efd Release v0.65.0 (#6772)
  • 4e5c36d Include annotations in rule AST (#6771)
  • 02c565a Add remainder operator to grammar (#6767)
  • cb9d347 Adding documentation for new IsSetStmt IR statement (#6764)
  • 62834a2 Asserting every domain is an collection type before evaluation (#6763)
  • 27da341 build(deps): bump aquasecurity/trivy-action from 0.20.0 to 0.21.0
  • 3a198e0 ---
  • a8ac7b3 plugins/logs: Include http request context in decision logs
  • a751084 build(deps): bump github.com/containerd/containerd from 1.7.16 to 1.7.17
  • Additional commits viewable in compare view


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)