Skip to content

Releases: org-quicko/silo

silo 1.4.0

Choose a tag to compare

@github-actions github-actions released this 22 Sep 09:09
35e0a54

Install

brew install org-quicko/tap/silo

Or pull the container image, which is also on ghcr.io/org-quicko/silo:

docker pull labsatquicko/silo:1.4.0

Or download the archive for your platform below and put silo on your PATH.

Verify

Check the archive against SHA256SUMS:

sha256sum --ignore-missing --check SHA256SUMS

SHA256SUMS itself is signed. With cosign:

cosign verify-blob --bundle SHA256SUMS.cosign.bundle \
  --certificate-identity-regexp '^https://github\.com/org-quicko/silo/\.github/workflows/release\.yml@' \
  --certificate-oidc-issuer https://token.actions.githubusercontent.com \
  SHA256SUMS

Or, with the release GPG key, gpg --verify SHA256SUMS.asc SHA256SUMS.

Each archive also carries build provenance:

gh attestation verify silo-*.tar.gz --repo org-quicko/silo

The container image is signed and attested the same two ways:

cosign verify docker.io/labsatquicko/silo:1.4.0 \
  --certificate-identity-regexp '^https://github\.com/org-quicko/silo/\.github/workflows/release\.yml@' \
  --certificate-oidc-issuer https://token.actions.githubusercontent.com

gh attestation verify oci://docker.io/labsatquicko/silo:1.4.0 --repo org-quicko/silo

What's Changed

New Contributors

Full Changelog: v1.3.0...v1.4.0

silo 1.3.0

Choose a tag to compare

@github-actions github-actions released this 19 Sep 10:22
9454080

Install

brew install org-quicko/tap/silo

Or download the archive for your platform below and put silo on your PATH.

Verify

Check the archive against SHA256SUMS:

sha256sum --ignore-missing --check SHA256SUMS

SHA256SUMS itself is signed. With cosign:

cosign verify-blob --bundle SHA256SUMS.cosign.bundle \
  --certificate-identity-regexp '^https://github\.com/org-quicko/silo/\.github/workflows/release\.yml@' \
  --certificate-oidc-issuer https://token.actions.githubusercontent.com \
  SHA256SUMS

Or, with the release GPG key, gpg --verify SHA256SUMS.asc SHA256SUMS.

Each archive also carries build provenance:

gh attestation verify silo-*.tar.gz --repo org-quicko/silo

What's Changed

Full Changelog: v1.2.0...v1.3.0

silo 1.2.0

Choose a tag to compare

@github-actions github-actions released this 17 Sep 11:18

Install

brew install org-quicko/tap/silo

Or download the archive for your platform below and put silo on your PATH.

Verify

Check the archive against SHA256SUMS:

sha256sum --ignore-missing --check SHA256SUMS

SHA256SUMS itself is signed. With cosign:

cosign verify-blob --bundle SHA256SUMS.cosign.bundle \
  --certificate-identity-regexp '^https://github\.com/org-quicko/silo/\.github/workflows/release\.yml@' \
  --certificate-oidc-issuer https://token.actions.githubusercontent.com \
  SHA256SUMS

Or, with the release GPG key, gpg --verify SHA256SUMS.asc SHA256SUMS.

Each archive also carries build provenance:

gh attestation verify silo-*.tar.gz --repo org-quicko/silo

What's Changed

New Contributors

Full Changelog: v1.1.0...v1.2.0

silo 1.1.0

Choose a tag to compare

@github-actions github-actions released this 15 Sep 20:49

Install

brew install org-quicko/tap/silo

Or download the archive for your platform below and put silo on your PATH.

Verify

Check the archive against SHA256SUMS:

sha256sum --ignore-missing --check SHA256SUMS

SHA256SUMS itself is signed. With cosign:

cosign verify-blob --bundle SHA256SUMS.cosign.bundle \
  --certificate-identity-regexp '^https://github\.com/org-quicko/silo/\.github/workflows/release\.yml@' \
  --certificate-oidc-issuer https://token.actions.githubusercontent.com \
  SHA256SUMS

Or, with the release GPG key, gpg --verify SHA256SUMS.asc SHA256SUMS.

Each archive also carries build provenance:

gh attestation verify silo-*.tar.gz --repo org-quicko/silo

What's Changed

Full Changelog: v1.0.0...v1.1.0

silo 1.0.0

Choose a tag to compare

@github-actions github-actions released this 09 Sep 10:36

Install

brew install org-quicko/tap/silo

Or download the archive for your platform below and put silo on your PATH.

Verify

Check the archive against SHA256SUMS:

sha256sum --ignore-missing --check SHA256SUMS

SHA256SUMS itself is signed. With cosign:

cosign verify-blob --bundle SHA256SUMS.cosign.bundle \
  --certificate-identity-regexp '^https://github\.com/org-quicko/silo/\.github/workflows/release\.yml@' \
  --certificate-oidc-issuer https://token.actions.githubusercontent.com \
  SHA256SUMS

Or, with the release GPG key, gpg --verify SHA256SUMS.asc SHA256SUMS.

Each archive also carries build provenance:

gh attestation verify silo-*.tar.gz --repo org-quicko/silo

What's Changed

New Contributors

Full Changelog: https://github.com/org-quicko/silo/commits/v1.0.0

silo 0.2.0

Choose a tag to compare

@github-actions github-actions released this 21 Aug 09:47

Install

brew install org-quicko/tap/silo

Or download the archive for your platform below and put silo on your PATH.

Verify

Check the archive against SHA256SUMS:

sha256sum --ignore-missing --check SHA256SUMS

SHA256SUMS itself is signed. With cosign:

cosign verify-blob --bundle SHA256SUMS.cosign.bundle \
  --certificate-identity-regexp '^https://github\.com/org-quicko/silo/\.github/workflows/release\.yml@' \
  --certificate-oidc-issuer https://token.actions.githubusercontent.com \
  SHA256SUMS

Or, with the release GPG key, gpg --verify SHA256SUMS.asc SHA256SUMS.

Each archive also carries build provenance:

gh attestation verify silo-*.tar.gz --repo org-quicko/silo

Full Changelog: v0.1.0...v0.2.0

silo 0.1.0

Choose a tag to compare

@github-actions github-actions released this 21 Aug 08:33

Install

brew install org-quicko/tap/silo

Or download the archive for your platform below and put silo on your PATH.

Verify

Check the archive against SHA256SUMS:

sha256sum --ignore-missing --check SHA256SUMS

SHA256SUMS itself is signed. With cosign:

cosign verify-blob --bundle SHA256SUMS.cosign.bundle \
  --certificate-identity-regexp '^https://github\.com/org-quicko/silo/\.github/workflows/release\.yml@' \
  --certificate-oidc-issuer https://token.actions.githubusercontent.com \
  SHA256SUMS

Or, with the release GPG key, gpg --verify SHA256SUMS.asc SHA256SUMS.

Each archive also carries build provenance:

gh attestation verify silo-*.tar.gz --repo org-quicko/silo

What's Changed

New Contributors

Full Changelog: https://github.com/org-quicko/silo/commits/v0.1.0