Ecosyste.ms: Issues

An open API service for providing issue and pull request metadata for open source projects.

GitHub / sigstore/sigstore-python issues and pull requests

#1055 - build(deps): bump github/codeql-action from 3.25.10 to 3.25.11 in the actions group

Pull Request - State: closed - Opened by dependabot[bot] 3 days ago - 1 comment
Labels: dependencies, github_actions

#1054 - Add functionality to sign DSSE envelopes with arbitrary payloads

Pull Request - State: open - Opened by susperius 3 days ago - 1 comment

#1053 - build(deps): update ruff requirement from <0.4.11 to <0.5.1

Pull Request - State: closed - Opened by dependabot[bot] 4 days ago - 1 comment
Labels: dependencies, python

#1052 - sigstore: type cleanup

Pull Request - State: closed - Opened by woodruffw 10 days ago
Labels: refactoring, chore

#1051 - build(deps): bump softprops/action-gh-release from 2.0.5 to 2.0.6 in the actions group

Pull Request - State: closed - Opened by dependabot[bot] 11 days ago - 3 comments
Labels: dependencies, github_actions

#1050 - build(deps): update ruff requirement from <0.4.10 to <0.4.11

Pull Request - State: closed - Opened by dependabot[bot] 11 days ago - 1 comment
Labels: dependencies, python

#1049 - Refactor: remove `betterproto` dep

Issue - State: open - Opened by woodruffw 11 days ago
Labels: enhancement, refactoring

#1048 - build(deps): bump peter-evans/create-pull-request from 6.0.5 to 6.1.0 in the actions group

Pull Request - State: closed - Opened by dependabot[bot] 13 days ago - 1 comment
Labels: dependencies, github_actions

#1047 - build(deps): bump urllib3 from 2.2.1 to 2.2.2 in /install

Pull Request - State: closed - Opened by dependabot[bot] 14 days ago - 1 comment
Labels: dependencies, python

#1046 - build(deps): bump pypa/gh-action-pypi-publish from 1.8.14 to 1.9.0 in the actions group

Pull Request - State: closed - Opened by dependabot[bot] 14 days ago - 1 comment
Labels: dependencies, github_actions

#1045 - build(deps): update ruff requirement from <0.4.9 to <0.4.10

Pull Request - State: closed - Opened by dependabot[bot] 17 days ago - 1 comment
Labels: dependencies, python

#1044 - build(deps): bump github/codeql-action from 3.25.9 to 3.25.10 in the actions group

Pull Request - State: closed - Opened by dependabot[bot] 18 days ago - 1 comment
Labels: dependencies, github_actions

#1043 - Refactor: remove `sigstore.hashes`, merge into `sigstore.models`

Issue - State: open - Opened by woodruffw 19 days ago - 1 comment
Labels: enhancement, refactoring

#1042 - build(deps): bump the actions group with 2 updates

Pull Request - State: closed - Opened by dependabot[bot] 19 days ago - 1 comment
Labels: dependencies, github_actions

#1041 - build(deps): bump rfc8785 from 0.1.2 to 0.1.3

Pull Request - State: closed - Opened by dependabot[bot] 21 days ago - 1 comment
Labels: dependencies, python

#1040 - Refactor: replace `requests` with `urllib3`

Issue - State: open - Opened by woodruffw 24 days ago
Labels: enhancement, refactoring, chore

#1039 - dsse: add Envelope._from_json

Pull Request - State: closed - Opened by woodruffw 26 days ago
Labels: enhancement, component:api

#1038 - build(deps): bump cryptography from 42.0.7 to 42.0.8

Pull Request - State: closed - Opened by dependabot[bot] 26 days ago - 1 comment
Labels: dependencies, python

#1037 - build(deps): update ruff requirement from <0.4.8 to <0.4.9

Pull Request - State: closed - Opened by dependabot[bot] 26 days ago - 1 comment
Labels: dependencies, python

#1036 - checkpoint: fix a typo

Pull Request - State: closed - Opened by woodruffw 26 days ago
Labels: chore

#1035 - build(deps): bump github/codeql-action from 3.25.7 to 3.25.8 in the actions group

Pull Request - State: closed - Opened by dependabot[bot] 27 days ago - 3 comments
Labels: dependencies, github_actions

#1034 - build(deps): update ruff requirement from <0.4.7 to <0.4.8

Pull Request - State: closed - Opened by dependabot[bot] 28 days ago - 1 comment
Labels: dependencies, python

#1033 - build(deps): bump github/codeql-action from 3.25.6 to 3.25.7 in the actions group

Pull Request - State: closed - Opened by dependabot[bot] about 1 month ago - 1 comment
Labels: dependencies, github_actions

#1032 - build(deps): update ruff requirement from <0.4.6 to <0.4.7

Pull Request - State: closed - Opened by dependabot[bot] about 1 month ago - 1 comment
Labels: dependencies, python

#1031 - build(deps): update ruff requirement from <0.4.5 to <0.4.6

Pull Request - State: closed - Opened by dependabot[bot] about 1 month ago - 1 comment
Labels: dependencies, python

#1030 - Enable staging tests in CI again

Pull Request - State: closed - Opened by jku about 1 month ago - 1 comment

#1029 - Allow setting of redirect uri port

Issue - State: open - Opened by ashearin about 1 month ago - 2 comments
Labels: enhancement, good first issue, help wanted

#1028 - build(deps): bump requests from 2.31.0 to 2.32.0 in /install

Pull Request - State: closed - Opened by dependabot[bot] about 1 month ago - 2 comments
Labels: dependencies, python

#1027 - build(deps): bump github/codeql-action from 3.25.5 to 3.25.6 in the actions group

Pull Request - State: closed - Opened by dependabot[bot] about 1 month ago - 1 comment
Labels: dependencies, github_actions

#1026 - build(deps): bump github/codeql-action from 2.13.4 to 3.25.5 in the actions group

Pull Request - State: closed - Opened by dependabot[bot] about 2 months ago - 3 comments
Labels: dependencies, github_actions

#1025 - release: remove pip cache usage

Pull Request - State: closed - Opened by woodruffw about 2 months ago
Labels: component:cicd

#1024 - build(deps): bump actions/checkout from 4.1.5 to 4.1.6 in the actions group

Pull Request - State: closed - Opened by dependabot[bot] about 2 months ago - 1 comment
Labels: dependencies, github_actions

#1023 - Update pinned requirements for v3.0.0

Pull Request - State: closed - Opened by github-actions[bot] about 2 months ago - 3 comments

#1022 - release: switch to non-deprecated setting

Pull Request - State: closed - Opened by woodruffw about 2 months ago
Labels: component:cicd, chore

#1021 - sigstore: 3.0.0

Pull Request - State: closed - Opened by woodruffw about 2 months ago
Labels: chore

#1020 - README: improve `verify github` examples

Pull Request - State: closed - Opened by woodruffw about 2 months ago
Labels: documentation

#1019 - Public API: Expose `ClientTrustConfig`

Issue - State: open - Opened by woodruffw about 2 months ago
Labels: enhancement

#1018 - Custom hash for intoto payload

Issue - State: closed - Opened by laurentsimon about 2 months ago - 14 comments
Labels: enhancement

#1017 - Upgrade tuf dependency

Pull Request - State: closed - Opened by jku about 2 months ago - 1 comment

#1016 - oidc: rename expected_certificate_subject -> federated_issuer

Pull Request - State: closed - Opened by woodruffw about 2 months ago
Labels: component:api

#1015 - cli: allow DSSE verification

Pull Request - State: closed - Opened by woodruffw about 2 months ago - 1 comment
Labels: component:cli, component:verification

#1014 - lint fails on main

Issue - State: closed - Opened by jku about 2 months ago - 2 comments
Labels: bug

#1013 - bump sigstore-protobuf-specs

Pull Request - State: closed - Opened by woodruffw about 2 months ago - 1 comment
Labels: refactoring, chore

#1012 - build(deps): bump sigstore-protobuf-specs from 0.2.2 to 0.3.2

Pull Request - State: closed - Opened by dependabot[bot] about 2 months ago - 2 comments
Labels: dependencies, python

#1011 - build(deps): bump ossf/scorecard-action from 2.3.1 to 2.3.3 in the actions group

Pull Request - State: closed - Opened by dependabot[bot] about 2 months ago - 1 comment
Labels: dependencies, github_actions

#1010 - Refactor client trust/trust root management

Pull Request - State: closed - Opened by woodruffw about 2 months ago - 2 comments
Labels: component:signing, component:verification, component:api, refactoring

#1009 - build(deps): update ruff requirement from <0.4.4 to <0.4.5

Pull Request - State: closed - Opened by dependabot[bot] about 2 months ago - 1 comment
Labels: dependencies, python

#1008 - sigstore: uniform user-agent with sigstore version

Pull Request - State: closed - Opened by woodruffw about 2 months ago

#1007 - _cli: emit .sigstore.json by default

Pull Request - State: closed - Opened by woodruffw about 2 months ago

#1006 - build(deps): bump softprops/action-gh-release from 2.0.4 to 2.0.5 in the actions group

Pull Request - State: closed - Opened by dependabot[bot] about 2 months ago - 1 comment
Labels: dependencies, github_actions

#1005 - sigstore: 3.0.0rc2

Pull Request - State: closed - Opened by facutuesca about 2 months ago - 2 comments

#1004 - sigstore: add new verification policies for missing extensions

Pull Request - State: closed - Opened by facutuesca about 2 months ago - 2 comments
Labels: component:verification, component:api

#1003 - sigstore: add `py.typed` marker for type checking

Pull Request - State: closed - Opened by facutuesca about 2 months ago - 2 comments
Labels: enhancement, component:api

#1002 - build(deps): bump actions/checkout from 4.1.4 to 4.1.5 in the actions group

Pull Request - State: closed - Opened by dependabot[bot] about 2 months ago - 1 comment
Labels: dependencies, github_actions

#1001 - build(deps): bump cryptography from 42.0.5 to 42.0.7

Pull Request - State: closed - Opened by dependabot[bot] about 2 months ago - 1 comment
Labels: dependencies, python

#1000 - build(deps): update ruff requirement from <0.4.3 to <0.4.4

Pull Request - State: closed - Opened by dependabot[bot] about 2 months ago - 1 comment
Labels: dependencies, python

#999 - Expose DSSE verification in the CLI

Issue - State: closed - Opened by woodruffw about 2 months ago - 1 comment
Labels: enhancement, component:cli, component:verification

#998 - sigstore: 3.0.0rc1

Pull Request - State: closed - Opened by woodruffw 2 months ago
Labels: chore

#997 - test_sign: disable more staging tests

Pull Request - State: closed - Opened by woodruffw 2 months ago
Labels: component:cicd, component:tests

#996 - Tests: make our fixtures/pytest usage less magical

Issue - State: open - Opened by woodruffw 2 months ago
Labels: enhancement, component:tests

#995 - Tests: re-enable staging tests in CI

Issue - State: closed - Opened by woodruffw 2 months ago
Labels: bug, component:cicd, component:tests

#994 - [CI] Integration failure: staging instance

Issue - State: closed - Opened by github-actions[bot] 2 months ago
Labels: bug, component:cicd, component:tests

#993 - Disable staging in tests

Pull Request - State: closed - Opened by jku 2 months ago - 3 comments

#992 - sigstore: extract LogEntry conversions to their own functions

Pull Request - State: closed - Opened by facutuesca 2 months ago - 3 comments
Labels: enhancement

#991 - Switch to towncrier or similar for CHANGELOG automation

Issue - State: open - Opened by woodruffw 2 months ago
Labels: documentation, chore

#990 - sigstore: flatten models into sigstore.models

Pull Request - State: closed - Opened by woodruffw 2 months ago - 1 comment
Labels: component:api, refactoring

#989 - Circular import on latest commit

Issue - State: closed - Opened by facutuesca 2 months ago - 3 comments
Labels: bug

#988 - Add a switch to test suite to skip staging tests

Issue - State: closed - Opened by jku 2 months ago - 1 comment
Labels: enhancement

#987 - build(deps): bump the actions group across 1 directory with 3 updates

Pull Request - State: closed - Opened by dependabot[bot] 2 months ago - 1 comment
Labels: dependencies, github_actions

#986 - build(deps): update ruff requirement from <0.4.2 to <0.4.3

Pull Request - State: closed - Opened by dependabot[bot] 2 months ago - 2 comments
Labels: dependencies, python

#985 - Set user-agent in all HTTP requests

Issue - State: closed - Opened by jku 2 months ago - 2 comments
Labels: enhancement

#984 - build(deps): bump id from 1.3.0 to 1.4.0

Pull Request - State: closed - Opened by dependabot[bot] 2 months ago - 1 comment
Labels: dependencies, python

#983 - build(deps): bump the actions group with 2 updates

Pull Request - State: closed - Opened by dependabot[bot] 2 months ago - 1 comment
Labels: dependencies, github_actions

#982 - Support for DSSE signatures over binary payloads

Issue - State: open - Opened by laurentsimon 2 months ago - 19 comments
Labels: enhancement, component:signing, component:api

#981 - bump sigstore-rekor-types, add NOTE

Pull Request - State: closed - Opened by woodruffw 2 months ago
Labels: dependencies

#980 - build(deps): bump the actions group with 3 updates

Pull Request - State: closed - Opened by dependabot[bot] 2 months ago - 1 comment
Labels: dependencies, github_actions

#979 - build(deps): bump actions/upload-artifact from 4.3.2 to 4.3.3 in /.github/actions/upload-coverage in the actions group

Pull Request - State: closed - Opened by dependabot[bot] 2 months ago - 2 comments
Labels: dependencies, github_actions

#978 - build(deps): bump actions/checkout from 4.1.2 to 4.1.3 in the actions group

Pull Request - State: closed - Opened by dependabot[bot] 2 months ago - 1 comment
Labels: dependencies, github_actions

#977 - build(deps): update ruff requirement from <0.4.1 to <0.4.2

Pull Request - State: closed - Opened by dependabot[bot] 2 months ago - 1 comment
Labels: dependencies, python

#976 - build(deps): update ruff requirement from <0.3.8 to <0.4.1

Pull Request - State: closed - Opened by dependabot[bot] 2 months ago - 1 comment
Labels: dependencies, python

#975 - build(deps): bump the actions group with 2 updates

Pull Request - State: closed - Opened by dependabot[bot] 2 months ago - 1 comment
Labels: dependencies, github_actions

#974 - build(deps): bump actions/upload-artifact from 4.3.1 to 4.3.2 in /.github/actions/upload-coverage in the actions group

Pull Request - State: closed - Opened by dependabot[bot] 2 months ago - 1 comment
Labels: dependencies, github_actions

#973 - build(deps): bump peter-evans/create-pull-request from 6.0.3 to 6.0.4 in the actions group

Pull Request - State: closed - Opened by dependabot[bot] 3 months ago
Labels: dependencies, github_actions

#972 - rename sign_intoto -> sign_dsse

Pull Request - State: closed - Opened by woodruffw 3 months ago
Labels: component:signing, component:api, refactoring

#971 - build(deps): bump dnspython from 2.4.2 to 2.6.1 in /install

Pull Request - State: closed - Opened by dependabot[bot] 3 months ago - 1 comment
Labels: dependencies, python

#970 - Wrong identity provider

Issue - State: closed - Opened by laurentsimon 3 months ago - 8 comments

#969 - build(deps): bump peter-evans/create-pull-request from 6.0.2 to 6.0.3 in the actions group

Pull Request - State: closed - Opened by dependabot[bot] 3 months ago - 1 comment
Labels: dependencies, github_actions

#968 - build(deps): update ruff requirement from <0.3.7 to <0.3.8

Pull Request - State: closed - Opened by dependabot[bot] 3 months ago - 1 comment
Labels: dependencies, python

#967 - build(deps): bump idna from 3.6 to 3.7 in /install

Pull Request - State: closed - Opened by dependabot[bot] 3 months ago - 1 comment
Labels: dependencies, python

#966 - build(deps): update ruff requirement from <0.3.6 to <0.3.7

Pull Request - State: closed - Opened by dependabot[bot] 3 months ago - 1 comment
Labels: dependencies, python

#965 - build(deps): bump sigstore from 2.1.3 to 2.1.5

Pull Request - State: closed - Opened by dependabot[bot] 3 months ago - 1 comment
Labels: dependencies, python

#964 - Forward ports from series/2.1.x

Pull Request - State: closed - Opened by jku 3 months ago

#963 - Backport slsa upgrade

Pull Request - State: closed - Opened by jku 3 months ago

#962 - Initial DSSE verify APIs

Pull Request - State: closed - Opened by woodruffw 3 months ago - 3 comments
Labels: component:verification, refactoring

#961 - Prepare 2.1.4 release

Pull Request - State: closed - Opened by jku 3 months ago - 4 comments

#960 - pin securesystemslib in 2.1.x series

Issue - State: closed - Opened by jku 3 months ago - 1 comment
Labels: enhancement

#960 - pin securesystemslib in 2.1.x series

Issue - State: closed - Opened by jku 3 months ago - 1 comment
Labels: enhancement

#959 - sigstore, test: drastically simplify error types

Pull Request - State: closed - Opened by woodruffw 3 months ago
Labels: refactoring, chore

#958 - build(deps-dev): bump tuf from 3.1.1 to 4.0.0

Pull Request - State: closed - Opened by dependabot[bot] 3 months ago - 2 comments
Labels: dependencies, python

#957 - build(deps-dev): bump sigstore-rekor-types from 0.0.12 to 0.0.13

Pull Request - State: closed - Opened by dependabot[bot] 3 months ago - 5 comments
Labels: dependencies, python