Skip to content

MailRadar 2026.09.3

Choose a tag to compare

@github-actions github-actions released this 08 Sep 17:06
· 76 commits to main since this release
v2026.09.3

Added

  • send --sign: sign the outgoing report with the sender's GPG private key
    (clear-signed, using the --from address). The passphrase is asked
    interactively.
  • SECURITY.md security policy with a vulnerability reporting contact and the
    status of known CVEs.
  • Built distributions are GPG-signed in the PyPI publish workflow.
  • Tests for GPG signing and SMTP sending.

Changed

  • CI: manual workflow_dispatch trigger for the publish and Docker workflows,
    SonarCloud analysis for Dependabot PRs, coverage reporting to SonarCloud,
    and CodSpeed benchmarks skipped on PRs that do not touch code.

Fixed

  • The publish workflow imports the signing key from a temporary file.
  • Corrected the codeql-action commit hash in the Docker workflow.