Azure / ShieldGuard

Enables best security practices for your project from day zero.
MIT License
8 stars 6 forks source link

chore(deps): bump github.com/open-policy-agent/conftest from 0.39.2 to 0.40.0 in /sg #54

Closed dependabot[bot] closed 1 year ago

dependabot[bot] commented 1 year ago

Bumps github.com/open-policy-agent/conftest from 0.39.2 to 0.40.0.

Release notes

Sourced from github.com/open-policy-agent/conftest's releases.

v0.40.0

Changelog

OPA Changes

  • 70810f1cebae0133d04d661b8cfadc74eda112d8: build(deps): bump github.com/open-policy-agent/opa from 0.49.0 to 0.49.1 (#779) (@​dependabot[bot])
  • 3392e219c86c0d06f116dee54bcf475561b424ff: build(deps): bump github.com/open-policy-agent/opa from 0.49.1 to 0.49.2 (#784) (@​dependabot[bot])
  • dfefaf49212ba7a63c8d69ea3fa104c98d1d238e: build(deps): bump github.com/open-policy-agent/opa from 0.49.2 to 0.50.2 (#797) (@​dependabot[bot])

Other Changes

  • 0e6576adcad7cdf2df941235441fc351d1694488: Use docker buildx for multi-platform builds (@​jalseth)
  • 72667ce84fa437db831dc3a41ed5e30c4030d7a5: build(deps): bump alpine from 3.17.1 to 3.17.2 (#774) (@​dependabot[bot])
  • 7b4d18d485391732b35ef731c99712e4026971f0: build(deps): bump golang from 1.19.5-alpine to 1.20.1-alpine (#777) (@​dependabot[bot])
  • c0ef54f10ddc00bf1c45cec41dcf8d5a3a931bc9: build(deps): bump golang from 1.20.1-alpine to 1.20.2-alpine (#792) (@​dependabot[bot])
  • 2d6f45319b089d84ff0ab4ba7cb32f74846836f5: ci: Bump Go in CI to v1.20.1 (#778) (@​jalseth)
  • ff9edd15f94c64690530c0549394796328cb843d: cleanup: Address issues from golang-lint (#799) (@​jalseth)
  • e6c5bac6cf93a376c0da91856eff20c81c0c930d: feat: Add --config-file, -c; allow users to set the config file (#787) (@​s33dunda)
  • 3de2c904847e0e6d2c468c1fe7e4d5e1273e3d80: feat: add strict compilation rules to policies being evaluated (#798) (@​boranx)
  • 496585fe6edbd77d27a75073c210c462b93cc2db: feat: support multi-arch docker build (linux/arm64 and linux/amd64) (#789) (@​vtorikianupgrade)
  • 347708d2fd1326263b74a7ba6defc00c89e0d676: feat: upgrade to ORAS Go v2 (#788) (@​zregvart)
  • 13c4bed6600218a70d7127e49b7a909e67b88938: fix: Remove scheme from OCI URL before parsing it (#796) (@​lcarva)
  • a9b07e7837d8752251cd73a35c7bcb381e69a778: fix: Use docker buildx for multi-platform builds (#804) (@​jalseth)
  • 96c44d360a2e3c524f4157dc1c8e46b3d775cdd4: fix: no policies found (#794) (@​boranx)
Commits
  • a9b07e7 fix: Use docker buildx for multi-platform builds (#804)
  • 0e6576a Use docker buildx for multi-platform builds
  • 96c44d3 fix: no policies found (#794)
  • 13c4bed fix: Remove scheme from OCI URL before parsing it (#796)
  • 3de2c90 feat: add strict compilation rules to policies being evaluated (#798)
  • dfefaf4 build(deps): bump github.com/open-policy-agent/opa from 0.49.2 to 0.50.2 (#797)
  • ff9edd1 cleanup: Address issues from golang-lint (#799)
  • c0ef54f build(deps): bump golang from 1.20.1-alpine to 1.20.2-alpine (#792)
  • 496585f feat: support multi-arch docker build (linux/arm64 and linux/amd64) (#789)
  • e6c5bac feat: Add --config-file, -c; allow users to set the config file (#787)
  • Additional commits viewable in compare view


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)