Skip to content

v0.4.2

Choose a tag to compare

@github-actions github-actions released this 17 Jun 06:26

Fixed

  • Rejected unknown top-level receipt JSON fields during local and bundle verification so unsigned receipt content cannot pass as authenticated.
  • Recorded the actual detected provider label in signed receipts instead of hard-coding Codex.
  • Recognized make verify as default test evidence in review command detection.
  • Detected review git bases from configured upstreams, origin/HEAD, and non-main default branch names such as trunk and develop.
  • Limited missing-test review prompts to sessions with code file changes, avoiding docs-only noise.