[v1.59.0]
- 
Fixed kingfisher scanso that providing--branchwithout--since-commitnow diffs the branch against the empty tree and scans every commit reachable from that branch.
- 
Added rules for meraki, duffel, finnhub, frameio, freshbooks, gitter, infracost, launchdarkly, lob, maxmind, messagebird, nytimes, prefect, scalingo, sendinblue, sentry, shippo, twitch, typeform 
- 
[v1.58.0]
- 
Added first-class Hugging Face scanning support, including CLI enumeration, token authentication, and integration with remote scans. 
- 
Condensed GitError formatting to report the exit status and the first informative lines from stdout/stderr, producing concise git clone failure logs. 
- 
Added support for scanning Google Cloud Storage buckets via --gcs-bucket, including optional prefixes and service-account authentication.
- 
Added --skip-aws-account(now accepting comma-separated values) and--skip-aws-account-fileto bypass live AWS validation for known canary/honey-token account IDs without triggering alerts. Kingfisher now ships with several canary AWS account IDs pre-seeded in the skip list and now reports matching findings as "Not Attempted" with the "Response" containing "(skip list entry)" so it's clear that validation was intentionally skipped and why.