What's Changed
- fix(gcp): retry artifact registry API requests by @kunaals in #2496
- chore: bump black from 26.1.0 to 26.3.1 by @dependabot[bot] in #2495
- feat(rules): expand EOL software rule for Kubernetes and EC2 by @kunaals in #2483
- feat(docker_scout): Coverage for Docker Scout by @shyammukund in #2488
- fix(gitlab): tolerate transient attestation registry failures by @kunaals in #2503
- feat(gcp):Add unified label support for more GCP resources. by @shyammukund in #2504
- chore: bump pyjwt from 2.10.1 to 2.12.0 by @dependabot[bot] in #2505
- chore: bump astral-sh/setup-uv from 7.3.1 to 7.5.0 in the minor-and-patch group by @dependabot[bot] in #2498
- chore: bump docker/setup-docker-action from 4.7.0 to 5.0.0 by @dependabot[bot] in #2499
- chore: bump docker/metadata-action from 5.10.0 to 6.0.0 by @dependabot[bot] in #2500
- chore: bump the minor-and-patch group with 5 updates by @dependabot[bot] in #2501
- feat(rules): add SubImage coverage framework and rules by @jychp in #2485
- feat(slack): create SlackBot node type for bot accounts by @jychp in #2493
- fix: handle AWS sync edge cases and Docker Scout tag schema by @jychp in #2506
- feat(gcp): implement
classify_gcp_http_errorutility and update error handling in DNS, GKE, and Vertex AI modules by @Denyme24 in #2502 - feat(sentry): add Sentry intel module by @jychp in #2439
- feat(ontology): add PermissionRole, NetworkAccessControl, and DNSZone semantic labels by @jychp in #2492
- fix(github): continue repo sync when privileged query is forbidden by @kunaals in #2507
- fix(openai): filter project keys from admin API keys endpoint by @jychp in #2511
- chore: bump pyasn1 from 0.6.2 to 0.6.3 by @dependabot[bot] in #2514
- fix(aws): tolerate transient cloudtrail and ecr failures by @kunaals in #2515
- feat(semgrep: Secrets): Include secret findings from semgrep by @serge-wq in #2513
- feat(aws): ingest EC2 IMDS metadata options by @kunaals in #2519
- feat(ontology): switch Device ID from hostname to serial_number by @jychp in #2523
- feat(config): Expose additional Neo4j driver options in run_with_config by @kunaals in #2524
- Align AWS CIS v5 rule metadata and add EC2 IMDSv2 coverage by @kunaals in #2520
- feat(aws): add SES email identity support by @raajheshkannaa in #2497
- fix(graph): order matchlink cleanup index by scope first by @kunaals in #2529
- fix(aws): tolerate transient child failures and parse SLSA v1 provenance by @kunaals in #2525
- feat(aws): pass region parameter to get_sqs_queue_attributes by @kirkj-lightspeed in #2445
- fix(entra): retry transient Graph API errors across all Entra syncs by @jychp in #2531
- feat(sentinelone): support site-scoped MSSP tokens by @kunaals in #2527
- feat(cve): add indexed cve_id property to CVE node by @jychp in #2536
- fix(gitlab): batch large container image ingests by @kunaals in #2528
- chore: bump the minor-and-patch group with 4 updates by @dependabot[bot] in #2534
- chore: bump python from
4b0a8ebto4ba18b0by @dependabot[bot] in #2532 - feat: add Jumpcloud intel module by @tr0mpa in #2480
- fix(tailscale): request all fields from devices API to collect serial numbers by @jychp in #2545
- fix(aws): handle account-instance IAM Identity Center permission set errors by @kunaals in #2543
- fix(semgrep): match SAST/SCA findings to GitHubRepository via URL by @serge-wq in #2521
- chore: bump requests from 2.32.5 to 2.33.0 by @dependabot[bot] in #2551
- Tighten readme by @achantavy in #2544
- chore: bump protobuf from 6.33.0 to 6.33.5 by @dependabot[bot] in #2552
New Contributors
- @raajheshkannaa made their first contribution in #2497
Full Changelog: 0.133.0...0.134.0