Skip to content

Releases: awslabs/automated-security-helper

v1.5.1

10 Sep 13:43
4ab85a2
Compare
Choose a tag to compare

What's Changed

  • Fix SHELL directive in Dockerfile and small items in Mkdocs config by @scrthq in #105

Full Changelog: v1.5.0...v1.5.1

v1.5.0

05 Sep 17:58
c628a2d
Compare
Choose a tag to compare

What's Changed

  • Begin implementing support for offline mode by @awsmadi in #104

New Contributors

Full Changelog: v1.4.1...v1.5.0

v1.4.1

03 Jul 19:56
6ae7d8c
Compare
Choose a tag to compare

What's Changed

  • fix: mkdocs deployment issue by @scrthq in #97
  • fix: Windows build issue due to CRLF on shell scripts by @scrthq in #98

Full Changelog: v1.4.0...v1.4.1

v1.4.0

26 Jun 19:27
dc5c7bb
Compare
Choose a tag to compare

What's Changed

  • feat(docs): Add mkdocs documentation site and start of documentation by @scrthq in #86
  • Update ash-multi by @orsifacundo in #87
  • fix(docs): #comment updated docs triggers by @scrthq in #90
  • feat: #comment removed build/deploy interdependency for doc pipeline by @scrthq in #91
  • feat/docsite publishing by @scrthq in #93
  • Add JSON output format as non-default output option via new --format parameter by @scrthq in #82

New Contributors

Full Changelog: v1.3.3...v1.4.0

ASH - v1.3.3

14 May 16:08
7db094f
Compare
Choose a tag to compare

What's Changed

  • fix(ash): adjust where/when output-dir is created, if necessary by @climbertjh2 in #74
  • fix(ash): set execute permission on ash script in the container by @climbertjh2 in #81
  • fix: update version file to match release tag format in github.com by @climbertjh2 in #84

Full Changelog: v1.3.2...v1.3.3

ASH - v1.3.2

24 Apr 21:31
80d4c49
Compare
Choose a tag to compare

What's Changed

  • added get-scan-set.py to utils scripts to return a list of non-ignored files for processing by @scrthq in #47
  • fix/codebuild shared bindmount issue by @scrthq in #49
  • fix error in reflecting return code in ash script by @climbertjh2 in #51
  • Issue 58: missing double quotes by @awsntheule in #64
  • fixed cdk nag scanner, added unique stack names based on input filenames. corrected guards on git clone calls within the scanner scripts to ensure those happen in the container image by @scrthq in #54
  • Add support for pnpm audit by @awsntheule in #66
  • fix(cdk-nag-scan): copy output files to separate folders by @climbertjh2 in #69
  • fix(ash): use /tmp rather than tmpfs for scratch area by @climbertjh2 in #73
  • Fix CTRL-C cancelling by @awsntheule in #71

New Contributors

Full Changelog: 1.2.0-e-06Mar2024...v1.3.2

1.2.0-e-06Mar2024

07 Mar 19:21
7237868
Compare
Choose a tag to compare

What's Changed

  • fix: block pr comment step in workflow from running in forks by @scrthq in #31
  • clean up README and CONTRIBUTING documents by @climbertjh2 in #30
  • Update README.md by @geraldino2 in #28
  • fix(#33): revert npm install on multi-container-arch to resolve cd issue by @scrthq in #34
  • Fix malapropism by @john-aws in #35
  • Add support for ARM64 platform, make single-container architecture default by @scrthq in #43

New Contributors

Full Changelog: 1.1.0-e-01Dec2023...1.2.0-e-06Mar2024

1.1.0-e-01Dec2023

04 Dec 01:40
2f237ab
Compare
Choose a tag to compare
  • Introduced single-container architecture via single Dockerfile in the repo root
    • Updated utils/*.sh and ash shell scripts to support running within a single container
    • Added new ash_helpers.{sh,ps1} scripts to support building and running the new container image
  • Changed CDK Nag scanning to use TypeScript instead of Python in order to reduce the number of dependencies
  • Changed identification of files to scan from find to git ls-files for Git repositories in order to reduce the number of files scanned and to avoid scanning files that are not tracked by Git
  • Updated the multi-container Dockerfiles to be compatible with the script updates and retain backwards compatibility
  • Updated ASH documentation and README content to reflect the changes and improve the user experience
  • Added simple image build workflow configured as a required status check for PRs

1.0.9-e-16May2023

16 May 16:37
01f4862
Compare
Choose a tag to compare
  • Changed YAML scanning (presumed CloudFormation templates) to look for CloudFormation template files explicitly, and excluding some well known folders
    added additional files that checkov knows how to scan to the list of CloudFormation templates (Dockerfiles, .gitlab-ci.yml)
  • Re-factored CDK scanning in several ways:
    • Moved Python package install to the Dockerfile (container image build) so it's done once
    • Removed code that doesn't do anything
    • Added diagnostic information to report regarding the CDK version, Node version, and NPM packages installed.
  • Fixed Semgrep exit code

1.0.8-e-03May2023

09 May 15:13
d56e1b3
Compare
Choose a tag to compare
  • Cloud9 Quickstart
  • Remove cdk virtual env
  • README reformat
  • Pre-commit hook guidance
  • Fix Grype error code
  • Minor bug fixes