Releases: fender-proxy/fender
Release list
v0.3.2 - Discoverability, Marketplace Metadata & CI Hardening
What's New in v0.3.2
Documentation & Discoverability
- Why Fender?: Added targeted documentation explaining how Fender eliminates Docker Hub
429 Too Many Requestsrate limits, integrates seamlessly with pull-through caches (Harbor, Nexus, Artifactory, AWS ECR, GCP Artifact Registry, GitLab Dependency Proxy), and intercepts BuildKit multi-stage builds. - GitHub Actions Marketplace: Optimized
action.ymlmetadata for improved ranking across container caching, mirroring, and rate-limiting searches.
CI/CD & Reliability Improvements
- Context Activation Synchronization: Fixed a potential race condition during startup in CI workflows by waiting for both the Unix socket creation and Docker context switch to complete before running downstream container commands.
Assets & Binaries
Binaries for Linux and macOS (x86_64 and arm64) are attached below.
Full Changelog: v0.3.1...v0.3.2
v0.3.1
Release v0.3.1
Date: September 6, 2026
Type: Patch/Revision Release
Security Fixes
Dependency Updates
- Go Version: Updated from 1.25.9 to 1.26.6 with latest security patches
- golang.org/x/net: Updated to v0.58.0 (security fixes for network operations)
- golang.org/x/crypto: Updated to v0.55.0 (cryptographic security improvements)
- google.golang.org/grpc: Updated to v1.83.2 (gRPC security patches)
- google.golang.org/protobuf: Updated to v1.36.12 (protocol buffer security fixes)
- moby/buildkit: Updated from v0.31.1 to v0.32.2 (Docker/container security patches)
- github.com/fsnotify/fsnotify: Updated to v1.10.1 (filesystem monitoring security)
- github.com/spf13/cobra: Updated to v1.10.2 (CLI framework updates)
Workflow Security Enhancements
- GitHub Actions Hardening: Added explicit
permissions: contents: readto CI workflows to follow principle of least privilege - E2E Testing: Added comprehensive end-to-end testing workflow for enhanced validation
What's Improved
✅ All critical and high-priority security vulnerabilities from dependencies patched
✅ Improved build reliability with latest buildkit version
✅ Enhanced GitHub Actions workflow security with explicit permission restrictions
✅ Comprehensive E2E test coverage for Docker socket proxy functionality
✅ OpenTelemetry dependencies updated for better observability
Migration Notes
No breaking changes. This is a drop-in replacement for v0.3.0 with security improvements only.
Testing
All existing functionality has been preserved. E2E tests verify:
- Docker socket proxy functionality
- Registry rewriting with BuildKit
- Configuration loading and startup
- Context registration
Full Changelog: v0.3.0...v0.3.1
v0.3.0
What's Changed
- feat: implement BuildKit build context registry rewriting by @avivklas in #2
- docs: update README architecture diagram by @avivklas in #3
Full Changelog: v0.2.0...v0.3.0
v0.2.0
v0.1.2
Full Changelog: v0.1.1...v0.1.2
v0.1.1
Full Changelog: v0.1.0...v0.1.1