Commit graph

62 commits

Author SHA1 Message Date
William Woodruff
71017267de
chore(docs): constrain permissions in workflow example (#781) 2025-05-11 02:24:57 -04:00
William Woodruff
b2804996c0
chore(docs): the great @zizmorcore renaming (#776) 2025-05-09 20:08:45 -04:00
William Woodruff
4431412276
chore(docs): change URL (#770) 2025-05-09 05:03:14 +00:00
William Woodruff
beba48976c
chore: prep for v1.7.0 release (#768) 2025-05-08 22:50:51 -04:00
William Woodruff
a284f5866f
feat: tab completion (#765) 2025-05-08 16:40:01 -04:00
William Woodruff
fb8e3f63f3
refactor: begin splitting out syntax/sema error handling (#734) 2025-05-03 04:22:35 +00:00
William Woodruff
fd8bd06b2c
chore(docs): hash-pin setup-uv in usage.md (#705) 2025-04-28 21:25:57 +00:00
William Woodruff
fb8520bdd5
chore: prep for release 1.6.0 (#681) 2025-04-19 22:13:28 -04:00
William Woodruff
5ebba3e220
feat: add JSON format versioning (#657)
* feat: add JSON format versioning

* docs: bump snippets, add PR
2025-04-07 20:18:50 -04:00
William Woodruff
f823fcedfc
usage: note when --format=github is available (#656) 2025-04-07 23:54:32 +00:00
William Woodruff
4d5c79a582
cli: add a "GitHub" output format (#634)
* cli: add a "GitHub" output format

Closes #633.

Signed-off-by: William Woodruff <william@yossarian.net>

* try using SARIF path

Signed-off-by: William Woodruff <william@yossarian.net>

* fix lines

Signed-off-by: William Woodruff <william@yossarian.net>

* fmt

Signed-off-by: William Woodruff <william@yossarian.net>

* add --no-exit-codes

Signed-off-by: William Woodruff <william@yossarian.net>

* bump help snippet

Signed-off-by: William Woodruff <william@yossarian.net>

* bump snippet

Signed-off-by: William Woodruff <william@yossarian.net>

* integration test for github output

Signed-off-by: William Woodruff <william@yossarian.net>

* github: output tweaks

* update snapshot

* test-output: test GitHub output on just one file

* remove columns

* bump snapshot

* try something else

Signed-off-by: William Woodruff <william@yossarian.net>

* fixup snapshot

Signed-off-by: William Woodruff <william@yossarian.net>

* one last hack

Signed-off-by: William Woodruff <william@yossarian.net>

* add primary annotation to message

Signed-off-by: William Woodruff <william@yossarian.net>

* usage: document --format=github, add integration docs

Signed-off-by: William Woodruff <william@yossarian.net>

* docs: update release notes

---------

Signed-off-by: William Woodruff <william@yossarian.net>
2025-04-07 19:51:19 -04:00
William Woodruff
67fdebff77
docs: add a callout about SARIF exit code behavior (#630)
Signed-off-by: William Woodruff <william@yossarian.net>
2025-03-29 01:23:52 +02:00
William Woodruff
0c590a6e14
chore: prep for v1.5.2 release (#623)
Signed-off-by: William Woodruff <william@yossarian.net>
2025-03-23 14:52:59 +00:00
vivodi
28b6266951
Clearly state that actions: read is only required for private repos (#615)
* Update usage.md

* Update docs/usage.md

---------

Co-authored-by: William Woodruff <william@yossarian.net>
2025-03-18 15:59:29 +00:00
William Woodruff
39fb35cb38
docs: usage: clarify ignore comment placement (#614)
Signed-off-by: William Woodruff <william@yossarian.net>
2025-03-18 15:38:42 +00:00
William Woodruff
f1e5b96fb5
chore: prep for v1.5.1 release (#601)
Signed-off-by: William Woodruff <william@yossarian.net>
2025-03-12 11:20:41 -04:00
William Woodruff
9d14c4004e
chore: prep for release v1.5.0 (#594) 2025-03-11 00:28:12 +00:00
William Woodruff
43a1d5e7cd
feat(cli): fine-grained color control (#586)
* feat(cli): fine-grained color control

This doesn't quite work yet, since tracing_indicatif
and anstream::AutoStream don't compose cleanly.

* main: hack on color controls more

Signed-off-by: William Woodruff <william@yossarian.net>

* cli: finalize color control

* remove dbg

* make snippets

* record changes

* usage: document --color option

* tests: proper color control and progress bar tests

* ci: enable tty-tests

* docs: document TTY tests

* better unbuffer failure errors

* ci: install expect for tty-tests

* remove unused import

---------

Signed-off-by: William Woodruff <william@yossarian.net>
2025-03-09 16:16:23 -04:00
William Woodruff
f3f356c8f1
feat: respect .gitignore files when collecting inputs (#575) 2025-02-27 06:37:52 +00:00
William Woodruff
7c7e415df3
chore: prep 1.4.1 release (#568) 2025-02-25 17:42:20 +00:00
William Woodruff
ff55188bf1
chore: prep for 1.4.0 release (#565) 2025-02-25 12:18:51 -05:00
William Woodruff
315ef95a17
feat: relax ignore comment regex (#531)
* feat: relax ignore comment regex

We now allow trailing comments after the ignore rule list,
which is useful for self-documenting ignores.

Closes #513.

* docs: record changes
2025-02-11 21:11:31 -05:00
William Woodruff
7b16e64aca
chore: prep for 1.3.1 release (#523) 2025-02-09 10:47:28 -05:00
William Woodruff
e61a9d762f
chore: prep for 1.3.0 release (#500) 2025-01-28 20:13:44 -05:00
William Woodruff
a91a02162a
chore: prep for 1.2.2 release (#476) 2025-01-18 23:53:34 -05:00
William Woodruff
78cdaf6a69
chore: prep 1.2.1 (#470) 2025-01-18 22:15:15 +00:00
William Woodruff
7b75f567e7
chore: prep 1.2.0 (#464) 2025-01-18 12:36:31 -05:00
William Woodruff
ec37d0a0e5
chore: prep 1.1.1 (#438) 2025-01-13 11:03:43 -05:00
William Woodruff
b178d52d35
chore: prep 1.1.0 (#428) 2025-01-13 05:15:57 +00:00
Userdocs
9120278e4c
Patch 1 (#422) 2025-01-10 20:47:42 +00:00
William Woodruff
7a8c9f2e82
chore: prep 1.0.1 (#406) 2025-01-07 14:14:02 -05:00
William Woodruff
b7e518e000
docs: usage: clarify optional configuration (#404) 2025-01-07 03:09:21 +00:00
William Woodruff
1fb4c75e26
chore: prep 1.0.0 (#375) 2025-01-02 08:59:59 -08:00
William Woodruff
71a546a624
docs: move changelog to website (#374) 2025-01-02 09:43:28 +00:00
William Woodruff
cd1cda19e4
feat: add argument --ghe-hostname for GHE Servers (#371)
Co-authored-by: 최하늘 <haneul@choehaneul-ui-Macmini.local>
2024-12-29 23:52:49 -08:00
William Woodruff
c28d44c903
feat: composite action support (#331) 2024-12-25 14:53:11 -05:00
Colin Dean
2d6c8ced50
Updates astral-sh/setup-uv action to v5 (#342) 2024-12-21 01:38:21 +00:00
William Woodruff
aecc879cbd
chore: prep 0.10.0 (#333)
Signed-off-by: William Woodruff <william@yossarian.net>
2024-12-19 15:40:37 +00:00
William Woodruff
6a6e0ca614
refactor: use http-cache for caching, optimize network calls (#304)
* refactor: use http-cache for caching

* get it working

* use tokio MT

Not sure this matters, given that it's all essentially
serialized to the same thread anyways.

* optimize impostor-commit lookup pattern

* ref-confusion: optimize GH API use

* use an appropriate cache dir

* docs: document cache

* fix test

* perf: reuse the same branches API
2024-12-15 20:52:22 -05:00
William Woodruff
e7e8b26efa
docs: update workflow name (#262) 2024-12-09 18:42:04 +00:00
William Woodruff
6c4c59efba
docs: switch GHA example to uvx (#255) 2024-12-09 00:31:26 +00:00
William Woodruff
736a0fd2a0
docs: update pre-commit docs to point to new repo (#247) 2024-12-08 01:01:47 -05:00
William Woodruff
3a3a5c889b
feat: remote auditing (#230) 2024-12-04 19:28:33 -05:00
William Woodruff
76445552fc
feat: add personas (#226) 2024-12-02 20:45:28 -05:00
William Woodruff
1e7feda280
feat: generalized ignore comments (#200) 2024-11-25 18:10:38 -05:00
William Tan
da0a503a73
feat: add --min-confidence (#196) 2024-11-24 18:38:05 -05:00
William Woodruff
b458e6bac2
docs: add page descriptions (#194) 2024-11-24 13:58:01 -05:00
William Woodruff
93b866fea4
feat: add --min-severity (#193) 2024-11-24 13:11:07 -05:00
William Woodruff
423fe7c4a0
docs: usage: add note about support for ignore comments (#191) 2024-11-23 23:30:09 +00:00
William Woodruff
3d0f7f6290
docs: document ignore comments (#190) 2024-11-23 17:47:41 -05:00