[v1.59.0]
-
Fixed
kingfisher scanso that providing--branchwithout--since-commitnow diffs the branch against the empty tree and scans every commit reachable from that branch. -
Added rules for meraki, duffel, finnhub, frameio, freshbooks, gitter, infracost, launchdarkly, lob, maxmind, messagebird, nytimes, prefect, scalingo, sendinblue, sentry, shippo, twitch, typeform
-
[v1.58.0]
-
Added first-class Hugging Face scanning support, including CLI enumeration, token authentication, and integration with remote scans.
-
Condensed GitError formatting to report the exit status and the first informative lines from stdout/stderr, producing concise git clone failure logs.
-
Added support for scanning Google Cloud Storage buckets via
--gcs-bucket, including optional prefixes and service-account authentication. -
Added
--skip-aws-account(now accepting comma-separated values) and--skip-aws-account-fileto bypass live AWS validation for known canary/honey-token account IDs without triggering alerts. Kingfisher now ships with several canary AWS account IDs pre-seeded in the skip list and now reports matching findings as "Not Attempted" with the "Response" containing "(skip list entry)" so it's clear that validation was intentionally skipped and why.