v1.0.0
Major Changes
- Abstract out permissions to scuba constantspy by @adhilto in #812
- Add unit tests for md_parser.py and reporter.py by @mitchelbaker-cisa in #824
- Updates JSON Schema Fields by @dagarwal-ecs in #830
- Add comprehensive unit tests for version.py module by @gothiyag in #839
- Update all error results to "Error - Test results missing" to match ScubaGear and CDM schema by @ahuynhECS in #860
- Update action plan csv file default name from "actionsplan" to "actionplan" to match BOD implementation guide spelling by @ahuynhECS in #861
- Add DNS configuration options by @adhilto in #854
- Unit tests for PolicyAPI class by @rlxdev in #862
- Make Reports 508 Compliant by @ObedAmpahECS in #850
- Add indicators to HTML report by @dagarwal-ecs in #874
- Creates unit tests for run rego file by @dagarwal-ecs in #904
- Add unit tests for config.py (Issue #799) by @gothiyag in #869
- Add unit tests for user_setup.py (Issue #810) by @gothiyag in #876
- Implement Common Controls Baselines 15.1 & 15.2 (Policy API) by @rlxdev in #903
- Change Default OPA_VERSION from "v1.0.1" to "v1.13.1" by @rlxdev in #885
- 782 create unit test for purge.py by @ObedAmpahECS in #911
- Change Python Minimum to 3.9, Add 3.14 by @rlxdev in #880
- Add unit tests for robust_dns.py by @pvanderveen110 in #933
- Add unit tests for utils.py by @pvanderveen110 in #905
- Refactoring of unit test files for utils.py by @pvanderveen110 in #944
- Gmail: Implement 18.1 - 18.3 Using Policy API by @rlxdev in #935
- Create unit tests for the provider class by @mitchelbaker-cisa in #882
- Allow IMAP exceptions by @adhilto in #959
- Create Unit Tests for Auth.py by @dagarwal-ecs in #963
- Create a CI Pipeline by @ObedAmpahECS in #875
- Creates OPA update workflow by @dagarwal-ecs in #966
- 780 allow user to specify doh servers by @pvanderveen110 in #954
- Creates config UI by @dagarwal-ecs in #945
- refactor reporter.py by @aor7000 in #962
- Update Baseline Policies to v1 by @dagarwal-ecs in #989
- Implement Policy API Based Check for System-Defined Rules (CC 13) by @rlxdev in #976
- Gemini conversation sharing by @jkaufman-mitre in #1012
- Removes drift rules folder by @dagarwal-ecs in #1010
- See full list of enhancements here
Baselines
BOD 25-01 required configuration policy changes
Refer to the BOD 25-01 Required Configurations page for the latest guidance on Google Workspace.
Other baseline changes
- Added new assumption on parent OUs and Groups only showing up in the ScubaGoggles reports by @ahuynhECS in #814
- Update note about IMAP exceptions by @adhilto in #817
- Updated COMMONCONTROLS.6.1 to match MS.AAD.7.3v1 to clarify not using federated identity for admin accounts by @ahuynhECS in #828
- Allow SPF soft fail by @adhilto in #825
- Add Assured Controls Baseline by @adhilto in #836
- Add NIST mapping for GWS.COMMONCONTROLS.3.2 by @adhilto in #843
- [#820] Add a new policy in meet baseline to limit the users who can join a meeting by @snarve in #845
- Added Indicators to Baselines by @dagarwal-ecs in #859
- Add note to Sites baseline by @adhilto in #866
- Policy change for drive docs 1.9 by @jkaufman-mitre in #881
- Update markdown baselines with "Final for publication" approved changes (v0.6.0) by @ahuynhECS in #921
- Add new admin controls for take notes for me sharing settings in google meet by @jkaufman-mitre in #960
- Update baselines with drupal discrepancies found in v0.6.0 release branch by @ahuynhECS in #994
- Added the Gemini Conversation History by @jkaufman-mitre in #996
- Reworking Common Controls 18 to reflect updated Admin Console by @mdueltgen in #1011
- Implement GWS.MEET.6.1 GWS.MEET.6.2 by @atuomit in #988
- Update GWS.COMMONCONTROLS.14.2v1 to reflect updated OMB guidance by @ahuynhECS in #1088
- Add in BOD 25-01 Requirement indicator to applicable policies by @ahuynhECS in #1061
- Track and adjudicated all scb consolidated change document updates for v1.0.0 by @ahuynhECS in #1105
- See full list of baseline updates here
Documentation
- Add config file for compliance by @adhilto in #805
- 715 add pip note by @dagarwal-ecs in #818
- Add option to provide token via CLI by @adhilto in #829
- Update the doc to specify the requirement for Super Admin by @snarve in #867
- Create a full_config file by @ahuynhECS in #870
- Add Documentation for Security Certificate Failure in 'getopa' Command on MacOS by @rlxdev in #853
- Adding in document for Goggles Output File Schema by @mdueltgen in #938
- Remove alpha state warning from README.md by @mitchelbaker-cisa in #1094
- Update Config Documentation by @dagarwal-ecs in #1107
- See full list of documentation updates here
Dependencies
- Bump OPA version from v1.13.1 to v1.15.2 by @github-actions[bot] in #985
- Bump OPA version from v1.15.2 to v1.16.1 by @github-actions[bot] in #1022
- Bump OPA version from v1.16.1 to v1.16.2 by @github-actions[bot] in #1031
- Bump OPA version from v1.16.2 to v1.17.0 by @github-actions[bot] in #1040
- Bump OPA version from v1.17.0 to v1.17.1 by @github-actions[bot] in #1055
- Bump OPA version from v1.17.1 to v1.18.1 by @github-actions[bot] in #1096
- Bump OPA version from v1.18.1 to v1.18.2 by @github-actions[bot] in #1120