Skip to content

Releases: studio2201/vigil

v0.2.11

Choose a tag to compare

@UberMetroid UberMetroid released this 19 Sep 06:27
Immutable release. Only release title and notes can be modified.

Release v0.2.11

v0.2.10

Choose a tag to compare

@UberMetroid UberMetroid released this 19 Sep 05:23
Immutable release. Only release title and notes can be modified.

Release v0.2.10: Multi-platform release workflow and static binaries.

v0.2.9

Choose a tag to compare

@UberMetroid UberMetroid released this 19 Sep 05:13
Immutable release. Only release title and notes can be modified.

Release v0.2.9: Remove detailed governance scorecard from README.

v0.2.8

Choose a tag to compare

@UberMetroid UberMetroid released this 19 Sep 04:46
Immutable release. Only release title and notes can be modified.

v0.2.8 release with detailed governance scorecard and supply-chain dormancy scanning.

v0.2.0

Choose a tag to compare

@github-actions github-actions released this 18 Sep 07:08
Immutable release. Only release title and notes can be modified.
feat(core): pure std implementation of vigil scanner (v0.2.0)

vigil v0.1.2 — pure Rust + std:: only

Pre-release

Choose a tag to compare

@UberMetroid UberMetroid released this 18 Sep 06:52
Immutable release. Only release title and notes can be modified.

vigil v0.1.2 — pure Rust + std:: only

No code changes; this is a documentation cleanup to match the studio2201 framework v0.1.2 release.

  • README.md rewritten to drop openOODA substrate references (seance / opm / bb / ML-DSA-65 / Merkle-AST mentions removed where they described the implementation path). Dormancy-via-last-commit heuristic kept as the behavior.
  • CHANGES.md updated with a [0.1.2] entry.

The framework now explicitly states that there is no substrate — pure Rust + std::* only.

vigil v0.1.1 — framework v2

Pre-release

Choose a tag to compare

@UberMetroid UberMetroid released this 18 Sep 06:40
Immutable release. Only release title and notes can be modified.

vigil v0.1.1 — framework v2

Adds the §15–§18 artifacts from the studio2201 framework v2 release:

  • docs/threat-model.md — adversary: malicious or unmaintained npm/cargo/pip registry plus lockfile attacker.
  • tools/dev/repro.sh — (host, rustc-version)-keyed baseline; no toolchain pin.
  • SECURITY.md — GHSA tab, 14/90-day window.
  • tools/perf/budget.md — vigil scan on 10k deps: 800 ms median ±25%.
  • tests/integration.rs + tools/perf/bench.rs — #[test] with std::time median-of-5.
  • CHANGES.md — 0.1.1 block with the v2 additions.

Pre-1.0.0: GHSA-only security advisories; CVEs reserved for 1.0.0+.

Bench and repro.sh will activate once Cargo.toml and src/ land.