Releases: OpenRAE/env-packs
Releases · OpenRAE/env-packs
Release list
v4.0.1
v4.0.0
⚠ BREAKING CHANGES
- adopt RAES environment-pack identity
- provenance schema_version is now scenario-pack-provenance/v2 with sources[].kind removed; the scenario-pack contract version is 3; a challenges[].category field is rejected by validation (ADR 0014).
- remove bespoke oracle model (#109)
- validate pack sdl/ through ACES and cross-check flag placement (#92)
Features
- add reusable infrastructure kit authoring (#226) (ff8149d)
- add scenario-pack validation and release tooling (16a5889)
- add single-pack consumer validation API (#104) (5d73177)
- add single-pack consumer validation API (#104) (fa1383d)
- add TechVault example scenario pack (#228) (49a3d56)
- add the TechVault environment pack (#238) (462dc23)
- adopt RAES environment-pack identity (1fe4e57)
- adopt RAES environment-pack identity (#164) (1fe4e57)
- align pack vocabularies to ACES concept-authority (#111) (e8a20e6)
- catalog: render pack cards and a machine-readable catalog index (#206) (58013af)
- cli: add beginner-safe static pack check with actionable diagnostics (#193) (2d8b29f)
- consume ACES associated-artifact manifests (#98) (2b3f730)
- consumer-api: public single-open pack artifact resolver (#209) (f05338e)
- define the environment-pack publication profile for artifact satisfaction (#184) (9af729d)
- discover all supported pack checks (#117) (a8ddd35)
- distribution: add verified pack supply-chain workflows (#257) (759ec95)
- remove bespoke oracle model (#109) (6cadaf3)
- require the compatibility-tested RAES 3.x runtime contract (b7fafc4)
- require the compatibility-tested RAES 3.x runtime contract (5ad5d9c), closes #217
- scaffold: replace the monolithic scaffold with a progressive wizard (#211) (2acc73a)
- strip ACES semantic extensions and add an anti-extension guard (#91) (7892dcf), closes #83
- techvault: author operator-access proxies + capture sidecar as component builds (7cf97fb)
- techvault: author the indexer internal_users.yml (58e79a9)
- techvault: declare aptl-tempo config and startup command (18d2f10)
- techvault: declare Cortex job index as ADR-088 initial service state (#269) (d5385f8)
- techvault: declare misp-db and shuffle-opensearch runtime environment (a1a1211)
- techvault: declare SOC app configs (otel, grafana, cortex, thehive) (#259) (d448316)
- techvault: declare suricata run config + cortex-index-init placement (#259) (02314a8)
- techvault: declare wazuh cluster env desired-state (#259) (4ef0569)
- techvault: declare wazuh loopback published ports (c318349)
- techvault: declare wazuh sidecar agent environment (6abf245)
- techvault: declare wazuh-dashboard config content (#259) (a2a2ddc)
- techvault: declare wazuh-indexer opensearch.yml security config (#259) (499bd04)
- techvault: fully declare cortex-index-init (image, entrypoint, script) (99973e7)
- techvault: replace subset SDL with the full canonical TechVault scenario (0122582)
- techvault: replace subset SDL with the full canonical TechVault scenario (7fb9bc5)
- validate pack sdl/ through ACES and cross-check flag placement (#92) (f7129ea)
Bug Fixes
- accept explicit pack validation roots (#116) (74dbac8)
- adopt ACES schema $id namespace and schema_version string form (#110) (7c2f305)
- adopt RAES 2 and recover interrupted releases (#171) (687418e)
- deps: bump aces-sdl from 0.21.0 to 0.23.0 (#123) (db7035d)
- deps: bump aces-sdl from 0.23.0 to 0.23.1 (#131) (6e65fd7)
- deps: bump annotated-doc from 0.0.4 to 0.0.5 (#201) (c2811a9)
- deps: bump coverage from 7.13.1 to 7.15.2 (#145) (81df034)
- deps: bump cyclonedx-bom from 7.3.0 to 7.3.1 (#150) (412f11a)
- deps: bump fastapi from 0.140.0 to 0.140.7 (#167) (bf743a4)
- deps: bump fastapi from 0.140.7 to 0.141.1 (#199) (6535ff5)
- deps: bump furo from 2025.7.19 to 2025.12.19 ([#149](https://github.com/OpenRAE/env-packs/...
v3.9.0
v3.8.0
Features
- techvault: author operator-access proxies + capture sidecar as component builds (7cf97fb)
- techvault: author the indexer internal_users.yml (58e79a9)
- techvault: declare aptl-tempo config and startup command (18d2f10)
- techvault: declare misp-db and shuffle-opensearch runtime environment (a1a1211)
- techvault: declare SOC app configs (otel, grafana, cortex, thehive) (#259) (d448316)
- techvault: declare suricata run config + cortex-index-init placement (#259) (02314a8)
- techvault: declare wazuh cluster env desired-state (#259) (4ef0569)
- techvault: declare wazuh loopback published ports (c318349)
- techvault: declare wazuh sidecar agent environment (6abf245)
- techvault: declare wazuh-dashboard config content (#259) (a2a2ddc)
- techvault: declare wazuh-indexer opensearch.yml security config (#259) (499bd04)
- techvault: fully declare cortex-index-init (image, entrypoint, script) (99973e7)
Bug Fixes
- techvault: align soc-certificate output paths with the issued layout (f4444a9)
- techvault: declare thehive-es ES env (single-node, security off, 512m heap) (#259) (8601f71)
- techvault: mark cortex-index-init as one-shot (autoremove) (#259) (09ff951)
- techvault: realize the misp-sync TLS flag and the db-log forwarding source (74ba39d)
- techvault: suricata direct exec, cortex-init ES wait, ad samba caps (#259) (32857a9)
- techvault: update proxy component-build spec digests (1d842ce)