github vektah/gqlparser v2.5.60

3 hours ago

Changelog

  • 4e17d6e ast: cover the quoting cases mutants slipped through (#485)
  • 1abdeea ast: quote string values as GraphQL, not Go (#483)
  • cea8f64 formatter: escape """ inside descriptions (#484)

Verifying this release

# 1. cosign signature over the checksum file (identity = the release workflow).
cosign verify-blob \
  --bundle checksums.txt.sigstore.json \
  --certificate-oidc-issuer https://token.actions.githubusercontent.com \
  --certificate-identity 'https://github.com/StevenACoffman/gqlparser/.github/workflows/release.yml@refs/tags/v2.5.60' \
  checksums.txt

# 2. source tarball + SBOM hash to the now-trusted checksums.
shasum -a 256 -c checksums.txt

# 3. GitHub build provenance.
gh attestation verify gqlparser_2.5.60_source.tar.gz --repo StevenACoffman/gqlparser

The SBOM is gqlparser_2.5.60_source.tar.gz.sbom.json (SPDX-2.3).


Released by GoReleaser.

Don't miss a new gqlparser release

NewReleases is sending notifications on new releases.