-
Notifications
You must be signed in to change notification settings - Fork 7
chore: prep v0.0.28 #145
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
chore: prep v0.0.28 #145
Conversation
CHANGELOG.md
Outdated
|
|
||
| ### Changed | ||
|
|
||
| - Upgraded `sigstore` dependency to `>=4.0.0` |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
This maybe too much detail but could mention that rekor version is forced to 1: annotations created with 0.0.28 will only contain rekor v1 entries even after the sigstore public good instance starts offering v2 for signing
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
done!
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
I'd like to move this into the pypi org (and update docs/links) before we make this release.
9d12712 to
d34538d
Compare
Signed-off-by: Facundo Tuesca <facundo.tuesca@trailofbits.com>
d34538d to
fc6e0b7
Compare
Signed-off-by: Facundo Tuesca <facundo.tuesca@trailofbits.com>
fc6e0b7 to
59d77f9
Compare
|
Now that the repo was moved to the |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Nice, thanks @facutuesca!
Checklist
Making a release
src/pypi_attestations/__init__.py