Skip to content

Supply Chain Security

SBOM generation, software signing, policy-as-code, and dependency vulnerability scanning.

Subscribe
← Releases
Review required
msaad00/agent-bom v0.98.1 Breaking risk
Auth Breaking upgrade

deploy, auth, trial, ui, readme

Review required
msaad00/agent-bom v0.95.0 Breaking risk
Auth RBAC Dependencies

UI, CLI, Deploy, Compliance, API

Review required
wazuh v4.14.6 Breaking risk
Auth RBAC Dependencies

SSL removal, FIM hardening, dependency updates

Review required
pentest-ai v1.0.0 Breaking risk

Machine‑oracle verification

v3.18.0 (1mo) BOLA false‑positive fix
v3.17.0 (1mo) VG126 behavior change
v3.16.0 (1mo) AST‑aware VG950 suppression
v3.15.0 (1mo) AST/dataflow engine + VG406 improvements
v3.14.2 (1mo) VG964 false‑positive fix
v3.6.0 (1mo) SSRF false‑positive reduction
Upgrade now
FreeRADIUS release_3_0_28 Breaking risk
Breaking upgrade

Message-Authenticator + Mellanox dict

v0.11.0 (2mo) SPA probes + CVE engine + Agent loop
No immediate action
qwexvf/aegis-cli v0.8.0 Breaking risk

Signal handling + completion + grouped help + JSON

v3.1.16 (2mo) Credential‑required connection strings
v3.1.4 (2mo) ADD matching, USER/HEALTHCHECK skipping, .env file restriction
v3.0.57 (2mo) SDK flag removals
v3.0.54 (2mo) Removed markdown library names
cerbos v0.52.0 Breaking risk
Breaking changes
  • Breaking changes to OpenTelemetry support
  • Removal of default auxData.jwt.disableVerification configuration value
Notable features
  • Permissions advisor workflow
  • Path functions added to Cerbos CEL library
  • TraceBatch format for compact trace representation

Beta — feedback welcome: [email protected]