Ecosyste.ms: Issues

An open API service for providing issue and pull request metadata for open source projects.

GitHub / deislabs/ratify issues and pull requests

#836 - Update all sample code to use v1alpha1 in Ratify docs

Issue - State: open - Opened by FeynmanZhou about 1 year ago

#835 - Add a new certstore for HashiCorp Vault

Issue - State: open - Opened by FeynmanZhou about 1 year ago
Labels: enhancement

#834 - Support TLS cert rotation in Ratify.

Issue - State: open - Opened by binbin-li about 1 year ago
Labels: enhancement

#833 - feat: upgrade go to 1.20 to use coverage profiling for integration tests.

Pull Request - State: open - Opened by binbin-li about 1 year ago - 2 comments

#832 - chore: bump github.com/cloudflare/circl from 1.1.0 to 1.3.3

Pull Request - State: closed - Opened by dependabot[bot] about 1 year ago - 1 comment
Labels: dependencies, go

#831 - [prototype] feat: support tls cert rotation

Pull Request - State: open - Opened by akashsinghal about 1 year ago - 2 comments
Labels: DO NOT MERGE

#830 - chore: Bump codecov/codecov-action from 3.1.3 to 3.1.4

Pull Request - State: closed - Opened by dependabot[bot] about 1 year ago - 1 comment
Labels: dependencies, github_actions

#829 - chore: Bump actions/setup-go from 4.0.0 to 4.0.1

Pull Request - State: closed - Opened by dependabot[bot] about 1 year ago - 1 comment
Labels: dependencies, github_actions

#828 - chore: Bump github.com/aws/aws-sdk-go-v2/config from 1.18.23 to 1.18.25

Pull Request - State: closed - Opened by dependabot[bot] about 1 year ago - 1 comment
Labels: dependencies, go

#827 - chore: Bump github.com/docker/cli from 23.0.5+incompatible to 23.0.6+incompatible

Pull Request - State: closed - Opened by dependabot[bot] about 1 year ago - 1 comment
Labels: dependencies, go

#826 - chore: Bump github.com/aws/aws-sdk-go-v2/credentials from 1.13.22 to 1.13.24

Pull Request - State: closed - Opened by dependabot[bot] about 1 year ago - 1 comment
Labels: dependencies, go

#825 - chore: prepare chart for rc4 release

Pull Request - State: closed - Opened by akashsinghal about 1 year ago - 1 comment

#824 - docs: Update AWS docs to reference notation and IRSA

Pull Request - State: closed - Opened by byronchien about 1 year ago - 1 comment

#823 - docs: Add new notation-validation sample policy

Pull Request - State: closed - Opened by byronchien about 1 year ago - 1 comment

#822 - chore: Bump github.com/docker/distribution from 2.8.1+incompatible to 2.8.2+incompatible

Pull Request - State: closed - Opened by dependabot[bot] about 1 year ago - 1 comment
Labels: dependencies, go

#821 - [bug] tls: bad certificate when gatekeeper cert gets rotated

Issue - State: open - Opened by fseldow about 1 year ago - 1 comment
Labels: bug

#819 - [Doc] Update documentation for using Ratify on AWS

Issue - State: open - Opened by byronchien about 1 year ago - 1 comment
Labels: enhancement

#818 - Evaluate performance impact from certificate revocation in notation verifier.

Issue - State: open - Opened by binbin-li about 1 year ago
Labels: enhancement

#817 - chore: Bump github.com/aws/aws-sdk-go-v2/credentials from 1.13.21 to 1.13.22

Pull Request - State: closed - Opened by dependabot[bot] about 1 year ago - 2 comments
Labels: dependencies, go

#816 - chore: Bump github.com/aws/aws-sdk-go-v2/config from 1.18.22 to 1.18.23

Pull Request - State: closed - Opened by dependabot[bot] about 1 year ago - 1 comment
Labels: dependencies, go

#815 - fix: update notation plugin manager directory

Pull Request - State: closed - Opened by akashsinghal about 1 year ago - 1 comment

#814 - chore: Bump actions/upload-artifact from 3.1.0 to 3.1.2

Pull Request - State: closed - Opened by dependabot[bot] about 1 year ago - 1 comment
Labels: dependencies, github_actions

#813 - chore: Bump github/codeql-action from 2.3.2 to 2.3.3

Pull Request - State: closed - Opened by dependabot[bot] about 1 year ago - 1 comment
Labels: dependencies, github_actions

#812 - chore: bump rekor to 1.1, cosign to 2.0, msal-go to 1.0

Pull Request - State: closed - Opened by dependabot[bot] about 1 year ago - 3 comments
Labels: dependencies, go

#811 - feat: unify caches, add ristretto and redis cache provider

Pull Request - State: open - Opened by akashsinghal about 1 year ago - 1 comment
Labels: DO NOT MERGE

#810 - Support configurable plugin directories for notaryv2 verifier

Issue - State: closed - Opened by byronchien about 1 year ago
Labels: enhancement

#809 - chore: Bump github.com/opencontainers/image-spec from 1.1.0-rc2 to 1.1.0-rc.3

Pull Request - State: open - Opened by dependabot[bot] about 1 year ago - 3 comments
Labels: dependencies, go, DO NOT MERGE

#808 - chore: Bump github.com/docker/cli from 23.0.4+incompatible to 23.0.5+incompatible

Pull Request - State: closed - Opened by dependabot[bot] about 1 year ago - 1 comment
Labels: dependencies, go

#807 - chore: Bump github.com/aws/aws-sdk-go-v2/config from 1.18.21 to 1.18.22

Pull Request - State: closed - Opened by dependabot[bot] about 1 year ago - 1 comment
Labels: dependencies, go

#806 - chore: Bump github.com/Azure/go-autorest/autorest from 0.11.28 to 0.11.29

Pull Request - State: closed - Opened by dependabot[bot] about 1 year ago - 1 comment
Labels: dependencies, go

#805 - chore: Bump github.com/aws/aws-sdk-go-v2/credentials from 1.13.20 to 1.13.21

Pull Request - State: closed - Opened by dependabot[bot] about 1 year ago - 2 comments
Labels: dependencies, go

#804 - feat: ECR basic auth registry parse and add notation plugin manager

Pull Request - State: closed - Opened by byronchien about 1 year ago - 2 comments

#803 - Support Ratify as a containerd plugin

Issue - State: open - Opened by akashsinghal about 1 year ago
Labels: enhancement

#802 - chore: Bump github/codeql-action from 2.3.1 to 2.3.2

Pull Request - State: closed - Opened by dependabot[bot] about 1 year ago - 1 comment
Labels: dependencies, github_actions

#801 - chore: Bump github/codeql-action from 2.3.0 to 2.3.1

Pull Request - State: closed - Opened by dependabot[bot] about 1 year ago - 1 comment

#800 - chore: Bump actions/checkout from 3.1.0 to 3.5.2

Pull Request - State: closed - Opened by dependabot[bot] about 1 year ago - 1 comment
Labels: dependencies, github_actions

#799 - [DO NOT REVIEW] feat: unify in-memory caches

Pull Request - State: closed - Opened by akashsinghal about 1 year ago - 1 comment
Labels: DO NOT MERGE

#798 - feat: add opa engine and support Rego policy

Pull Request - State: open - Opened by binbin-li about 1 year ago - 1 comment
Labels: DO NOT MERGE

#797 - ci: Harden GitHub Actions

Pull Request - State: closed - Opened by step-security-bot about 1 year ago - 1 comment

#796 - Support Fail Open/Close Policy with Gatekeeper

Issue - State: open - Opened by akashsinghal about 1 year ago
Labels: enhancement

#795 - chore: Bump github.com/notaryproject/notation-core-go from 1.0.0-rc.2 to 1.0.0-rc.3

Pull Request - State: closed - Opened by dependabot[bot] about 1 year ago - 3 comments
Labels: dependencies, go

#794 - chore: Bump github.com/notaryproject/notation-go from 1.0.0-rc.3 to 1.0.0-rc.4

Pull Request - State: closed - Opened by dependabot[bot] about 1 year ago - 3 comments
Labels: dependencies, go

#793 - chore: Bump github.com/docker/cli from 23.0.3+incompatible to 23.0.4+incompatible

Pull Request - State: closed - Opened by dependabot[bot] about 1 year ago - 1 comment
Labels: dependencies, go

#792 - chore: Bump github/codeql-action from 2.2.12 to 2.3.0

Pull Request - State: closed - Opened by dependabot[bot] about 1 year ago - 1 comment
Labels: dependencies, github_actions

#791 - Use code coverage profiling provided by Go 1.20 to increase test coverage.

Issue - State: open - Opened by binbin-li about 1 year ago - 1 comment
Labels: enhancement

#789 - Add Redis cache provider for memory cache

Issue - State: open - Opened by akashsinghal about 1 year ago
Labels: enhancement

#788 - Add support for OCI Store backed by PVC

Issue - State: open - Opened by akashsinghal about 1 year ago
Labels: enhancement

#787 - Unify in memory caches

Issue - State: open - Opened by akashsinghal about 1 year ago - 1 comment
Labels: enhancement

#786 - docs: add cache doc

Pull Request - State: closed - Opened by akashsinghal about 1 year ago - 1 comment

#785 - docs: update community meeting schedule

Pull Request - State: closed - Opened by akashsinghal about 1 year ago - 2 comments

#784 - feat: add multi signature report in verifier report for cosign

Pull Request - State: closed - Opened by akashsinghal about 1 year ago - 2 comments

#783 - ci: enforce semantic title on PR

Pull Request - State: closed - Opened by binbin-li about 1 year ago - 1 comment

#782 - chore: Bump k8s.io/apimachinery from 0.24.12 to 0.24.13

Pull Request - State: closed - Opened by dependabot[bot] about 1 year ago - 1 comment
Labels: dependencies, go

#781 - chore: Bump github.com/aws/aws-sdk-go-v2/credentials from 1.13.19 to 1.13.20

Pull Request - State: closed - Opened by dependabot[bot] about 1 year ago - 1 comment
Labels: dependencies, go

#780 - chore: Bump github.com/aws/aws-sdk-go-v2/config from 1.18.20 to 1.18.21

Pull Request - State: closed - Opened by dependabot[bot] about 1 year ago - 1 comment
Labels: dependencies, go

#779 - chore: Bump k8s.io/api from 0.24.12 to 0.24.13

Pull Request - State: closed - Opened by dependabot[bot] about 1 year ago - 2 comments
Labels: dependencies, go

#778 - chore: Bump k8s.io/client-go from 0.24.12 to 0.24.13

Pull Request - State: closed - Opened by dependabot[bot] about 1 year ago - 1 comment
Labels: dependencies, go

#777 - Support in-toto as a provider to allow users to use an existing attestation framework

Issue - State: open - Opened by FeynmanZhou about 1 year ago - 1 comment
Labels: enhancement

#776 - chore: Bump github/codeql-action from 2.2.11 to 2.2.12

Pull Request - State: closed - Opened by dependabot[bot] about 1 year ago - 1 comment
Labels: dependencies, github_actions

#775 - Add metrics for in-memory cache

Issue - State: open - Opened by akashsinghal about 1 year ago
Labels: enhancement

#774 - feat: add dependency metrics

Pull Request - State: closed - Opened by akashsinghal about 1 year ago - 1 comment

#773 - Add dependency metrics

Issue - State: closed - Opened by akashsinghal about 1 year ago - 1 comment
Labels: enhancement

#772 - feat: add pre-install hook to Ratify CRs

Pull Request - State: closed - Opened by binbin-li about 1 year ago - 1 comment

#771 - chore: update chart for rc3 release

Pull Request - State: closed - Opened by akashsinghal about 1 year ago - 1 comment

#770 - fix: add time delay for prometheus exporter test

Pull Request - State: closed - Opened by akashsinghal about 1 year ago - 1 comment

#769 - feat: xregion aws ecr auth

Pull Request - State: closed - Opened by jimmyraywv about 1 year ago - 1 comment

#768 - chore: Bump spdx tools-golang to 0.5.0 and associated refactor

Pull Request - State: closed - Opened by jeremyrickard about 1 year ago - 3 comments

#767 - doc: delete CRDs when uninstalling Ratify

Pull Request - State: closed - Opened by binbin-li about 1 year ago - 1 comment

#766 - Update the `github.com/spdx/tools-golang`dependency to `v0.5.0`.

Issue - State: closed - Opened by jeremyrickard about 1 year ago
Labels: enhancement

#765 - CRD upgrade from alpha to beta fails with error

Issue - State: closed - Opened by akashsinghal about 1 year ago - 2 comments
Labels: bug

#763 - chore: Bump github.com/aws/aws-sdk-go-v2/credentials from 1.13.18 to 1.13.19

Pull Request - State: closed - Opened by dependabot[bot] about 1 year ago - 2 comments
Labels: dependencies, go

#760 - doc: cert store status doc

Pull Request - State: closed - Opened by susanshi about 1 year ago - 1 comment

#758 - Add documentation for local k8s setup

Issue - State: open - Opened by akashsinghal about 1 year ago - 4 comments
Labels: documentation

#756 - fix: update k8s version matrix for Azure e2e test

Pull Request - State: closed - Opened by binbin-li over 1 year ago - 4 comments

#755 - ci: Harden GitHub Actions

Pull Request - State: closed - Opened by step-security-bot over 1 year ago - 9 comments

#750 - Cosign: add bundle verification result to verifier report

Issue - State: closed - Opened by akashsinghal over 1 year ago
Labels: enhancement

#739 - feat: certificate revocation

Issue - State: open - Opened by yizha1 over 1 year ago - 1 comment
Labels: enhancement

#737 - feat: multiple signatures verification

Issue - State: open - Opened by yizha1 over 1 year ago - 6 comments
Labels: enhancement

#735 - Add intra-artifact signature reports to verifier report

Issue - State: closed - Opened by akashsinghal over 1 year ago - 1 comment
Labels: enhancement

#734 - Ratify should have a BOT to prefix our pull request so titles are consistent

Issue - State: closed - Opened by susanshi over 1 year ago
Labels: enhancement, good first issue, help wanted

#731 - [Bug ]reduce e2e aks test cost

Issue - State: open - Opened by susanshi over 1 year ago
Labels: bug

#727 - feat: xregion aws ecr auth

Pull Request - State: closed - Opened by jimmyraywv over 1 year ago - 3 comments

#725 - feat: Certificate store CRD status

Pull Request - State: closed - Opened by susanshi over 1 year ago - 15 comments

#719 - [Doc] Ratify should provide docs on various of level of cache we use today

Issue - State: closed - Opened by susanshi over 1 year ago
Labels: documentation, enhancement

#718 - [Doc] Ratify doc should be versioned

Issue - State: open - Opened by susanshi over 1 year ago
Labels: documentation, enhancement

#710 - Support mutating multi-arch images

Issue - State: open - Opened by binbin-li over 1 year ago - 2 comments
Labels: enhancement

#702 - CertificateStore - Add Status to display cert status

Issue - State: closed - Opened by susanshi over 1 year ago - 2 comments

#701 - [Epic] Ratify as a replica set

Issue - State: open - Opened by akashsinghal over 1 year ago - 5 comments
Labels: enhancement

#700 - Add ORAS OCI store blob eviction

Issue - State: open - Opened by akashsinghal over 1 year ago
Labels: enhancement

#695 - Ratify should retrieve the entire cert chain from AKV

Issue - State: open - Opened by binbin-li over 1 year ago - 5 comments
Labels: bug

#685 - Exclude doc files from running PR checks

Issue - State: open - Opened by akashsinghal over 1 year ago - 1 comment
Labels: enhancement, good first issue

#678 - AWS ECR Auth needs to support cross region

Issue - State: closed - Opened by jimmyraywv over 1 year ago
Labels: bug

#603 - Build the threat model

Issue - State: open - Opened by binbin-li over 1 year ago
Labels: enhancement

#592 - docs should not pin ratify versions that is not latest

Issue - State: open - Opened by sozercan over 1 year ago
Labels: bug, documentation

#560 - chore: Add contribution ladder

Pull Request - State: open - Opened by sajayantony over 1 year ago - 2 comments

#528 - Decouple nested references from verifiers

Issue - State: open - Opened by cmaclaughlin over 1 year ago - 2 comments
Labels: enhancement

#351 - Fix Config Policy Provider for Nested References

Issue - State: open - Opened by akashsinghal over 1 year ago - 3 comments
Labels: bug

#323 - Implement Performance Test Framework

Issue - State: open - Opened by dtzar almost 2 years ago
Labels: enhancement, epic