Skip to content

v0.3.1

Latest

Choose a tag to compare

@github-actions github-actions released this 18 Aug 19:47
· 1 commit to main since this release
496e4ed

Container image

Pull by tag

docker pull ghcr.io/rynaro/magicite:0.3.1

Pull by digest (recommended — immutable pin)

docker pull ghcr.io/rynaro/magicite@sha256:d5dbb1f64affb7b2f4e7cb35e9b7aa42affbf0876d774574ed19ea48518fc73d

Multi-arch: linux/amd64 + linux/arm64

The house hardening invocation (AC-026)

docker run --rm -i \
    --user "$(id -u):$(id -g)" \
    --cap-drop ALL --security-opt no-new-privileges \
    -v "$PWD":"$PWD":z -w "$PWD" \
    ghcr.io/rynaro/magicite@sha256:d5dbb1f64affb7b2f4e7cb35e9b7aa42affbf0876d774574ed19ea48518fc73d \
    serve --project-root "$PWD"

Supply-chain verification

Verify the cosign keyless signature:

cosign verify \
  --certificate-identity-regexp "https://github.com/Rynaro/magicite/.github/workflows/release.yml@.*" \
  --certificate-oidc-issuer "https://token.actions.githubusercontent.com" \
  ghcr.io/rynaro/magicite@sha256:d5dbb1f64affb7b2f4e7cb35e9b7aa42affbf0876d774574ed19ea48518fc73d

Verify SBOM + provenance attestations:

gh attestation verify oci://ghcr.io/rynaro/magicite@sha256:d5dbb1f64affb7b2f4e7cb35e9b7aa42affbf0876d774574ed19ea48518fc73d \
  --owner Rynaro

Digest for pinning

ghcr.io/rynaro/magicite@sha256:d5dbb1f64affb7b2f4e7cb35e9b7aa42affbf0876d774574ed19ea48518fc73d

What's Changed

  • Release Magicite 0.3.0 integrity recovery by @Rynaro in #2
  • Build a world-class Magicite README by @Rynaro in #3
  • Restore full-quality Magicite logo by @Rynaro in #4
  • Add a dark-mode Magicite logo by @Rynaro in #5
  • Fix Magicite logo rendering permanently by @Rynaro in #6
  • Preserve host SKILL.md imports losslessly by @Rynaro in #7

Full Changelog: v0.2.0...v0.3.1