Repository navigation
Releases: pihme/git-warden
Release list
git-warden 0.4.6
Fixes
- fix(config): report a 2^63 float count limit as out of range (64385ff)
Install
Download push-guard-linux-amd64 and/or backup-guard-linux-amd64 below (chmod +x), or build from source as described in the README. The binaries don't download or install anything at runtime. The Push Guard host also needs git, and gitleaks if CONTENT-SECRET is enabled (the default); the Backup Guard host needs git and git-everref (see Requirements in the README). install-everref.sh optionally installs the pinned git-everref release with a pinned SHA-256. LICENSE and THIRD_PARTY_NOTICES.md are attached for the license notices.
Full diff: v0.4.5...v0.4.6
git-warden 0.4.5
Fixes
- fix(config): reject negative durations at load (c8b32de)
Install
Download push-guard-linux-amd64 and/or backup-guard-linux-amd64 below (chmod +x), or build from source as described in the README. The binaries don't download or install anything at runtime. The Push Guard host also needs git, and gitleaks if CONTENT-SECRET is enabled (the default); the Backup Guard host needs git and git-everref (see Requirements in the README). install-everref.sh optionally installs the pinned git-everref release with a pinned SHA-256. LICENSE and THIRD_PARTY_NOTICES.md are attached for the license notices.
Full diff: v0.4.4...v0.4.5
git-warden 0.4.4
Fixes
- fix(config): reject out-of-range count limits on load (f349c4c)
Install
Download push-guard-linux-amd64 and/or backup-guard-linux-amd64 below (chmod +x), or build from source as described in the README. The binaries don't download or install anything at runtime. The Push Guard host also needs git, and gitleaks if CONTENT-SECRET is enabled (the default); the Backup Guard host needs git and git-everref (see Requirements in the README). install-everref.sh optionally installs the pinned git-everref release with a pinned SHA-256. LICENSE and THIRD_PARTY_NOTICES.md are attached for the license notices.
Full diff: v0.4.3...v0.4.4
git-warden 0.4.3
Fixes
- fix(backup-guard): keep the end of everref's output; name a timeout in the error (dca9672)
Install
Download push-guard-linux-amd64 and/or backup-guard-linux-amd64 below (chmod +x), or build from source as described in the README. The binaries don't download or install anything at runtime. The Push Guard host also needs git, and gitleaks if CONTENT-SECRET is enabled (the default); the Backup Guard host needs git and git-everref (see Requirements in the README). install-everref.sh optionally installs the pinned git-everref release with a pinned SHA-256. LICENSE and THIRD_PARTY_NOTICES.md are attached for the license notices.
Full diff: v0.4.2...v0.4.3
git-warden 0.4.2
Fixes
- fix(backup-guard): record failed preflight, strict repo preflight, major-only everref check, skip locked repos (ec030cc)
Install
Download push-guard-linux-amd64 and/or backup-guard-linux-amd64 below (chmod +x), or build from source as described in the README. The binaries don't download or install anything at runtime. The Push Guard host also needs git, and gitleaks if CONTENT-SECRET is enabled (the default); the Backup Guard host needs git and git-everref (see Requirements in the README). install-everref.sh optionally installs the pinned git-everref release with a pinned SHA-256. LICENSE and THIRD_PARTY_NOTICES.md are attached for the license notices.
Full diff: v0.4.1...v0.4.2
git-warden 0.4.1
Fixes
- fix(rules): hide scanned-dir .gitleaksignore during gitleaks (REQ-PG-020) (3326a44)
- fix(rules): fail closed if scanned dir has .gitleaksignore (REQ-PG-020) (41f6ec6)
- fix(push-guard): bind approval lease to check-time tip (REQ-PG-003 / A15) (57aabff)
- fix(rules): parse git diff paths with spaces in addedLines (a1ef172)
- fix(config): reject wrong limit kinds on load (7cee044)
- fix(journal): refuse ambiguous SHA prefix on approve (REQ-PG-005) (f223de4)
Install
Download push-guard-linux-amd64 and/or backup-guard-linux-amd64 below (chmod +x), or build from source as described in the README. The binaries don't download or install anything at runtime. The Push Guard host also needs git, and gitleaks if CONTENT-SECRET is enabled (the default); the Backup Guard host needs git and git-everref (see Requirements in the README). install-everref.sh optionally installs the pinned git-everref release with a pinned SHA-256. LICENSE and THIRD_PARTY_NOTICES.md are attached for the license notices.
Full diff: v0.4.0...v0.4.1
git-warden 0.4.0
Breaking changes
- feat!: rename the Pull Guard to Backup Guard and share configuration keys (352ce4c)
Fixes
- fix(backup-guard): set up backup and bridge atomically so an interrupted first run resumes (cc32e84)
Install
Download push-guard-linux-amd64 and/or backup-guard-linux-amd64 below (chmod +x), or build from source as described in the README. The binaries don't download or install anything at runtime. The Push Guard host also needs git, and gitleaks if CONTENT-SECRET is enabled (the default); the Backup Guard host needs git and git-everref (see Requirements in the README). install-everref.sh optionally installs the pinned git-everref release with a pinned SHA-256. LICENSE and THIRD_PARTY_NOTICES.md are attached for the license notices.
Full diff: v0.3.0...v0.4.0
git-warden 0.3.0
Features
- feat(push-guard): check gitleaks and the configuration at start (e0ae70e)
Install
Download push-guard-linux-amd64 and/or pull-guard-linux-amd64 below (chmod +x), or build from source as described in the README. The binaries don't download or install anything at runtime. The Push Guard host also needs git and gitleaks; the Pull Guard host needs git and git-everref (see Requirements in the README). install-everref.sh optionally installs the pinned git-everref release with a pinned SHA-256. LICENSE and THIRD_PARTY_NOTICES.md are attached for the license notices.
Full diff: v0.2.0...v0.3.0
git-warden 0.2.0
Features
- feat: Pull Guard (pull-guard) keeps an append-only backup of every branch and tag via git-everref (ca3d1dd)
Install
Download push-guard-linux-amd64 and/or pull-guard-linux-amd64 below (chmod +x), or build from source as described in the README. The binaries don't download or install anything at runtime. The Push Guard host also needs git and gitleaks; the Pull Guard host needs git and git-everref (see Requirements in the README). install-everref.sh optionally installs the pinned git-everref release with a pinned SHA-256. LICENSE and THIRD_PARTY_NOTICES.md are attached for the license notices.
Full diff: v0.1.0...v0.2.0
git-warden 0.1.0
First release.
Features
- feat: push guard config and rules (e476aa1)
- feat: push guard hook, serve and human commands (3cc26d6)
- feat: per-repo known_hosts and an SSH end-to-end test (23545ce)
Fixes
- fix: ignore ssh_config on the wall host (a477f90)
Install
Download push-guard-linux-amd64 below (chmod +x), or build from source as described in the README. The binary doesn't install anything: the wall host also needs git and gitleaks (see Requirements in the README). The Pull Guard is a git-everref run and has no binary here. LICENSE and THIRD_PARTY_NOTICES.md are attached for the license notices.