What's Changed
- fix(structured-output): prevent sensitive attribute leakage and propagate dynamic sensitivities during state resolution by @alfespa17 in #3406
- feat(ui): add target/replace resources to New Run's Additional planning options by @jakegroves in #3407
- feat: run onReject commands when an approval step is rejected by @adeeelsameer in #3341
- fix(ui): open organization/workspace rows as real links for ctrl/middle/right-click by @jakegroves in #3410
- feat(ui): add in-app API docs page by @jakegroves in #3411
- feat: integrate Syft SBOM generation into UI Dockerfile by @alfespa17 in #3414
- feat: add OpenSSF Scorecard security analysis workflow and documentation badge by @alfespa17 in #3415
- fix: correct pinned SHA for actions/upload-artifact@v4.6.1 in scorecard workflow by @alfespa17 in #3416
- deps: bump redis.clients:jedis from 7.5.3 to 8.0.0 by @dependabot[bot] in #3418
- deps: bump the mvn-packages group with 3 updates by @dependabot[bot] in #3417
- deps: bump the ui-packages group in /ui with 11 updates by @dependabot[bot] in #3419
- fix: add top-level
read-allpermissions to resolve Scorecard Token-Permissions warning by @alfespa17 in #3420 - fix: pin all container image references by digest for Scorecard Pinned-Dependencies by @alfespa17 in #3421
- chore: add Docker ecosystem entries to Dependabot for automatic image digest updates by @alfespa17 in #3422
- feat: add workspace folder validation and sync from Terrakube client by @alfespa17 in #3391
- fix: replace read-all with explicit minimum permissions (Sonar S8234) by @alfespa17 in #3424
- chore: remove alpaquita build job from pull request workflow [skip ci] by @alfespa17 in #3425
- fix: remove invalid inline comments from Dockerfiles [skip ci] by @alfespa17 in #3426
New Contributors
- @adeeelsameer made their first contribution in #3341
Full Changelog: 2.33.0-beta.10...2.33.0-beta.11