What's Changed
- Bump golang.org/x/sys from 0.40.0 to 0.41.0 in the other-go-modules group by @dependabot[bot] in #2352
- Bump github/codeql-action from 4.31.11 to 4.32.3 by @dependabot[bot] in #2356
- Bump docker/login-action from 3.6.0 to 3.7.0 by @dependabot[bot] in #2350
- Bump actions/attest-build-provenance from 3.1.0 to 3.2.0 by @dependabot[bot] in #2349
- Bump actions/attest-build-provenance from 3.2.0 to 4.1.0 by @dependabot[bot] in #2362
- Bump actions/setup-go from 6.2.0 to 6.3.0 by @dependabot[bot] in #2363
- Bump go.opentelemetry.io/otel/sdk from 1.34.0 to 1.40.0 by @dependabot[bot] in #2360
- Bump the etcd group with 4 updates by @dependabot[bot] in #2355
- Bump github/codeql-action from 4.32.3 to 4.32.4 by @dependabot[bot] in #2364
- Add Scorecard workflow for supply-chain security by @thomasferrandiz in #2365
- [StepSecurity] Apply security best practices by @step-security-bot in #2366
- Add OpenSSF Scorecard badge to README by @pgonin in #2367
- Remove old manifests by @manuelbuil in #2368
- Bump docker/build-push-action from 6.18.0 to 6.19.2 by @dependabot[bot] in #2357
- Add 2025 activity summary report by @Copilot in #2343
- Bump docker/setup-qemu-action from 3.7.0 to 4.0.0 by @dependabot[bot] in #2374
- Bump docker/login-action from 3.7.0 to 4.0.0 by @dependabot[bot] in #2375
- Bump aquasecurity/trivy-action from 0.33.1 to 0.35.0 by @dependabot[bot] in #2378
- Bump docker/setup-buildx-action from 3.12.0 to 4.0.0 by @dependabot[bot] in #2376
- Bump docker/build-push-action from 6.19.2 to 7.0.0 by @dependabot[bot] in #2377
- Add SECURITY.md security policy by @pgonin in #2371
- Add Security policy page to main README page by @pgonin in #2380
- Bump the tencent group with 2 updates by @dependabot[bot] in #2339
- Bump actions/checkout from 4.2.2 to 6.0.2 by @dependabot[bot] in #2383
- Bump docker/metadata-action from 5.10.0 to 6.0.0 by @dependabot[bot] in #2384
- Bump actions/upload-artifact from 4.6.1 to 7.0.0 by @dependabot[bot] in #2385
- Bump ossf/scorecard-action from 2.4.1 to 2.4.3 by @dependabot[bot] in #2386
- Bump github/codeql-action from 3.32.5 to 4.32.6 by @dependabot[bot] in #2382
- Bump google.golang.org/grpc from 1.71.1 to 1.79.3 by @dependabot[bot] in #2387
- Add ROADMAP.md and update README roadmap link by @pgonin in #2393
- Bump github/codeql-action from 4.32.6 to 4.34.1 by @dependabot[bot] in #2399
- fix extensions code exec by @thomasferrandiz in #2400
- Prepare update flannel to v0.28.2 by @thomasferrandiz in #2402
New Contributors
- @step-security-bot made their first contribution in #2366
- @Copilot made their first contribution in #2343
Full Changelog: v0.28.1...v0.28.2