This release keeps dependencies and maintenance posture current for teams operating this tool.
✓ No known CVEs patched in this version
Topics
+14 more
Summary
AI summaryMinor fixes and improvements.
Full changelog
What's Changed
- Tighten README and dashboard onboarding by @msaad00 in https://github.com/msaad00/agent-bom/pull/1333
- Tighten operator UI and trace review by @msaad00 in https://github.com/msaad00/agent-bom/pull/1334
- Focus operator graph views by @msaad00 in https://github.com/msaad00/agent-bom/pull/1335
- Tighten README visuals and simplify primary navigation by @msaad00 in https://github.com/msaad00/agent-bom/pull/1336
- chore(deps-dev): bump @types/node from 25.5.2 to 25.6.0 in /sdks/typescript by @dependabot[bot] in https://github.com/msaad00/agent-bom/pull/1340
- chore(deps-dev): bump vitest from 4.1.3 to 4.1.4 in /ui by @dependabot[bot] in https://github.com/msaad00/agent-bom/pull/1339
- chore(deps-dev): bump @types/node from 25.5.2 to 25.6.0 in /ui by @dependabot[bot] in https://github.com/msaad00/agent-bom/pull/1338
- chore(deps): bump actions/github-script from 8.0.0 to 9.0.0 by @dependabot[bot] in https://github.com/msaad00/agent-bom/pull/1337
- Fix local vulnerability enrichment and UI lint baseline by @msaad00 in https://github.com/msaad00/agent-bom/pull/1341
- Refresh MITRE catalogs with bundled default sync by @msaad00 in https://github.com/msaad00/agent-bom/pull/1342
- Tighten README graph and architecture SVGs by @msaad00 in https://github.com/msaad00/agent-bom/pull/1343
- Improve validator-aware AST guard modeling by @msaad00 in https://github.com/msaad00/agent-bom/pull/1344
- Expand notebook credential detection by @msaad00 in https://github.com/msaad00/agent-bom/pull/1345
- Tighten README architecture card spacing by @msaad00 in https://github.com/msaad00/agent-bom/pull/1346
- Improve sanitizer-aware early guard exits by @msaad00 in https://github.com/msaad00/agent-bom/pull/1347
- Add Go template sink parity by @msaad00 in https://github.com/msaad00/agent-bom/pull/1348
- Improve JS/TS validator guard modeling by @msaad00 in https://github.com/msaad00/agent-bom/pull/1349
- Improve JS/TS early-exit validator guards by @msaad00 in https://github.com/msaad00/agent-bom/pull/1350
- Improve JS/TS default-export flow parity by @msaad00 in https://github.com/msaad00/agent-bom/pull/1351
- Refresh latest image and actionable rescan alerts by @msaad00 in https://github.com/msaad00/agent-bom/pull/1352
- Model JS/TS validated return helpers by @msaad00 in https://github.com/msaad00/agent-bom/pull/1353
- Fix dashboard summary loading and API hydration by @msaad00 in https://github.com/msaad00/agent-bom/pull/1354
- Improve modular loading for mesh, context, and insights by @msaad00 in https://github.com/msaad00/agent-bom/pull/1355
- Improve summary-first loading for dashboard and vulnerabilities by @msaad00 in https://github.com/msaad00/agent-bom/pull/1356
- Polish README visuals and release surfaces by @msaad00 in https://github.com/msaad00/agent-bom/pull/1357
- Harden Snowflake notebook and days SQL inputs by @msaad00 in https://github.com/msaad00/agent-bom/pull/1358
- Make jobs summary-first by default by @msaad00 in https://github.com/msaad00/agent-bom/pull/1359
- Decouple dashboard jobs and agents loading by @msaad00 in https://github.com/msaad00/agent-bom/pull/1360
- Fix pushed result completion metadata by @msaad00 in https://github.com/msaad00/agent-bom/pull/1361
- Polish 0.76.4 release surfaces and UI drilldowns by @msaad00 in https://github.com/msaad00/agent-bom/pull/1362
- Fix release 0.76.4 build and summary alignment by @msaad00 in https://github.com/msaad00/agent-bom/pull/1363
- Prepare 0.76.4 release by @msaad00 in https://github.com/msaad00/agent-bom/pull/1364
Full Changelog: https://github.com/msaad00/agent-bom/compare/v0...v0.76.4
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
About msaad00/agent-bom
AI supply chain security scanner with 18 MCP tools. Auto-discovers 20 MCP clients, scans dependencies for CVEs (OSV/NVD/EPSS/CISA KEV), maps blast radius from vulnerabilities to exposed credentials and tools, runs CIS benchmarks, generates CycloneDX/SPDX SBOMs, and enforces compliance across OWASP LLM Top 10, MITRE ATLAS, NIST AI RMF, and EU AI Act.
Related context
Related tools
Beta — feedback welcome: [email protected]