legitify

Detect and remediate misconfigurations and security risks across all your GitHub and GitLab assets

APACHE-2.0 License

Stars
761
Committers
27

Bot releases are visible (Hide)

legitify - v1.0.11 Latest Release

Published by github-actions[bot] 4 months ago

Changelog

  • 8b13777 Fix: Refine policy logic and enhance descriptions for forking restrictions (#319)
  • 286b90b Fix: Utilize the valid permissions output file path from flag (#316)
  • 0020494 build(deps): bump github.com/hashicorp/go-retryablehttp (#317)
  • daec3b4 feat: Add policy for detecting GitHub Secret-Scanning (#311)
  • d37f390 feat: edited e2e test (#320)
  • 5604bae feat: modified too many admins policy from flat number to percentage based (#318)
  • e583b66 feat: remove label after test (#324)
legitify - v1.0.10

Published by github-actions[bot] 5 months ago

Changelog

  • 34641ae dont add list prefix automatically for remediation steps (#315)
legitify - v1.0.9

Published by github-actions[bot] 5 months ago

Changelog

  • d04f069 Delete .github/workflows/codesee-arch-diagram.yml (#292)
  • 36d62ea build(deps): bump github.com/cloudflare/circl from 1.3.3 to 1.3.7 (#289)
  • 99c99cb build(deps): bump github.com/docker/docker (#296)
  • 17f645e build(deps): bump github.com/go-git/go-git/v5 from 5.5.2 to 5.11.0 (#282)
  • dbd4421 build(deps): bump golang.org/x/crypto from 0.14.0 to 0.17.0 (#279)
  • a2204c6 build(deps): bump golang.org/x/net from 0.19.0 to 0.23.0 (#304)
  • bfd05d5 build(deps): bump google.golang.org/protobuf from 1.30.0 to 1.33.0 (#295)
  • 4144a5f check root namespace (#290)
  • 4bbb761 feat: Added new policy to GitLab groups: MFA grace period (#286)
  • 99268ac feat: added Enterprise varified domain notification policy (#294)
  • dd26e70 feat: added a new format of output for csv files (#283)
  • 0bb41c2 feat: added actors allowed to bypass policy (#281)
  • b09cbd3 feat: added stale secret policies for repo and org (#306)
  • b7c252c feat: create pages from action (#302)
  • c4118c9 feat: filter our archived repositories (#301)
  • d64d188 fix title (#280)
  • 861ecbb fix: Add pagination to collaborators collector (#275)
  • 86451d4 fix: Refactor human policy formatter (#313)
  • 80d54c1 fix: Updated a policies description to match GitHub defaults (#291)
  • d4f5123 fix: added email to docs push (#284)
  • 925f6e9 fix: fixed collectors manager writing to error log (#278)
  • 9529e37 fix: goreleaser changed --rm-dist to --clean (#314)
  • 6d932e0 fix: legitify action (#300)
  • 26129a2 print only on analyze command (#288)
  • 2d10296 upgrade go-github-ratelimit to v1.0.6 (#277)
legitify - v1.0.8

Published by github-actions[bot] 5 months ago

Changelog

  • d04f069 Delete .github/workflows/codesee-arch-diagram.yml (#292)
  • 36d62ea build(deps): bump github.com/cloudflare/circl from 1.3.3 to 1.3.7 (#289)
  • 99c99cb build(deps): bump github.com/docker/docker (#296)
  • 17f645e build(deps): bump github.com/go-git/go-git/v5 from 5.5.2 to 5.11.0 (#282)
  • dbd4421 build(deps): bump golang.org/x/crypto from 0.14.0 to 0.17.0 (#279)
  • bfd05d5 build(deps): bump google.golang.org/protobuf from 1.30.0 to 1.33.0 (#295)
  • 4144a5f check root namespace (#290)
  • 4bbb761 feat: Added new policy to GitLab groups: MFA grace period (#286)
  • 99268ac feat: added Enterprise varified domain notification policy (#294)
  • dd26e70 feat: added a new format of output for csv files (#283)
  • 0bb41c2 feat: added actors allowed to bypass policy (#281)
  • b09cbd3 feat: added stale secret policies for repo and org (#306)
  • b7c252c feat: create pages from action (#302)
  • c4118c9 feat: filter our archived repositories (#301)
  • d64d188 fix title (#280)
  • 861ecbb fix: Add pagination to collaborators collector (#275)
  • 80d54c1 fix: Updated a policies description to match GitHub defaults (#291)
  • d4f5123 fix: added email to docs push (#284)
  • 925f6e9 fix: fixed collectors manager writing to error log (#278)
  • 6d932e0 fix: legitify action (#300)
  • 26129a2 print only on analyze command (#288)
  • 06b38a6 update cname
  • 2d10296 upgrade go-github-ratelimit to v1.0.6 (#277)
legitify - v1.0.7

Published by github-actions[bot] 11 months ago

Linux

OSX

Windows

Changelog

  • 0d52c90 Don't remove members if they don't have permission to get their last active, just ignore them (#276)
legitify - v1.0.6-test

Published by github-actions[bot] 11 months ago

Changelog

  • 75c6687 don't remove members if doesn't have permission to get their last active, just ignore them
legitify - v1.0.6

Published by github-actions[bot] 11 months ago

Changelog

legitify - v1.0.5

Published by github-actions[bot] 11 months ago

Changelog

  • 6408c99 Update README.md (#267)
  • 5f43540 feat: markdown output (#270)
  • 6ea81a7 fixed for github (#273)
  • cc163cb removed unncesessery scripts (#268)
legitify - v1.0.4

Published by github-actions[bot] 12 months ago

Linux

OSX

Windows

Changelog

  • f84cd63 build(deps): bump github.com/docker/docker (#263)
  • 45c5713 build(deps): bump golang.org/x/net from 0.10.0 to 0.17.0 (#255)
  • 5f9e182 build(deps): bump google.golang.org/grpc from 1.54.0 to 1.56.3 (#258)
  • 80eea02 fixed scorecard aux parsing (#266)
  • 72b5bd3 policy: Add Regal for linting Rego (#257)
  • cd0c200 upgrade secondary rate limit handler (#261)
legitify - v1.0.3

Published by github-actions[bot] about 1 year ago

Changelog

  • 3722cc5 fix: action extra param (#251)
  • 5503683 fix: compare full path to support nested groups (#253)
  • ad4fa1b include only failed entitities in sarif (#252)
legitify - v1.0.2

Published by github-actions[bot] about 1 year ago

Changelog

  • 64bd16f Customize legitify's action results artifact name (#242)
  • 18760af feat: support for ignore policies in the action (#245)
  • 2dc8e3e fix: npm package name (#236)
  • 7f683ab fix: readme (#238)
  • a95a8e4 refactor: renamed LEGITIFY_TOKEN to SCM_TOKEN (#244)
  • e948d3e support scanning nested projects in GitLab (#248)
legitify - v1.0.1

Published by github-actions[bot] about 1 year ago

Main features:

  • GitLab Enterprise Policies
  • GitLab Free Support
  • GitHub Enterprise Policies
  • Improved error log
  • CLI testings

Linux

OSX

Windows

Changelog

  • b814483 fix: GitLab Premium Collection (#235)
legitify - v1.0.0

Published by github-actions[bot] about 1 year ago

Main features:

  • GitLab Enterprise Policies
  • GitLab Free Support
  • GitHub Enterprise Policies
  • Improved error log
  • CLI testings

Linux

OSX

Windows

Changelog

  • a7632ad feat: added e2e for analyze flags (#228)
  • 519ad1d feat: added gitlab server policies (#233)
  • 731e7b9 feat: changed titles and added new policies (#232)
  • 5d6059d fix: added better logging for gitlab namespaces (#234)
  • 07b37e7 fixed format (#231)
legitify - v0.2.8

Published by github-actions[bot] over 1 year ago

Changelog

  • 6b5d3f0 Update README.md (#210)
  • 3aa046b changed args order (#230)
  • c7d19ab feat: added script to create homebrew formula to support multi arch (#217)
  • aec22b3 feat: ignore invalid cert (#227)
  • 2051047 feat: ignore policies (#218)
  • b9b99b0 feat: support rulesets (#221)
  • 944b58f fix: added name and mail to global config (#220)
  • bd3f919 fix: brew multi arch wrong env variable (#219)
  • 2982bc5 fix: output missing permissions and skipped policies in a concise manner (#216)
  • 69abae2 fix: skip failing policies when scanning gitlab free groups (#215)
  • 3b0d810 fix: update go-github-ratelimit to properly handle missing permission (#224)
  • 0320476 fixed release url (#212)
  • 88ecfe3 fixed requests and git config command (#223)
legitify - v0.2.8

Published by github-actions[bot] over 1 year ago

Changelog

  • 6b5d3f0 Update README.md (#210)
  • c7d19ab feat: added script to create homebrew formula to support multi arch (#217)
  • 2051047 feat: ignore policies (#218)
  • 944b58f fix: added name and mail to global config (#220)
  • bd3f919 fix: brew multi arch wrong env variable (#219)
  • 69abae2 fix: skip failing policies when scanning gitlab free groups (#215)
  • 0320476 fixed release url (#212)
legitify - v0.2.8

Published by nadav-legit over 1 year ago

Changelog

  • 6b5d3f0 Update README.md (#210)
  • c7d19ab feat: added script to create homebrew formula to support multi arch (#217)
  • 2051047 feat: ignore policies (#218)
  • bd3f919 fix: brew multi arch wrong env variable (#219)
  • 69abae2 fix: skip failing policies when scanning gitlab free groups (#215)
  • 0320476 fixed release url (#212)
legitify - v0.2.7

Published by github-actions[bot] over 1 year ago

Linux

OSX

Windows

Changelog

  • 0a7ed03 Update README.md (#200)
  • 0d33e90 added enterprise membership check (#191)
  • 4d5d212 build(deps): bump github.com/cloudflare/circl from 1.1.0 to 1.3.3 (#197)
  • 69850a4 build(deps): bump github.com/docker/distribution (#198)
  • 468aeb2 feat: SARIF Output Support (#192)
  • e6cdfaa feat: added new enterprise policy (#190)
  • 36a5bc2 feat: sarif action (#196)
  • f3680a5 feat: updated build-docs workflow to run only on rego modifications
  • 63d8c9e fix: too many admins bug (#205)
  • 260a0c7 fix: upgrade go modules (fix secondary ratelimit) (#193)
  • 2095607 report actions progress earlier (#199)
  • 4a5aac4 update brew forumla generation (#206)
legitify - v0.2.6

Published by nadav-legit over 1 year ago

Linux

OSX

Windows

Changelog

  • bf487a7 add gh extension to the readme (#178)
  • fb88130 consistent wording (#176)
  • ce685df feat: added code analysis badge (#179)
  • 54ac75b feat: added note about members that can change visibility (#182)
  • 68988a1 feat: added staticcheck action (#177)
  • 6d00a20 feat: added the enterprise namespace (#185)
  • 074c14e feat: adding enterprise policies (#187)
  • d40a8ba fix: make sure working group wait is called (#175)
  • 1af8767 fix: removed app level cache (#184)
  • 096c7e8 updated golang.org/x/net (#180)
legitify - v0.2.5

Published by github-actions[bot] over 1 year ago

Changelog

  • c9af3c2 build(deps): bump github.com/moby/buildkit from 0.10.3 to 0.11.4 (#170)
  • 519bc8c changed sha calc location and referenced version in a different way (#173)
  • 883f347 feat: added brews support in goreleaser (#167)
  • ae963d0 feat: prettify before release (#171)
  • 7ee840e fix: added upload artifact (#172)
  • 9b2a83b ignore failed orgs (#166)
  • 7bf6afa removed syntax error (#169)
  • b9ef3e1 update tap token (#168)
legitify - v0.2.4

Published by github-actions[bot] over 1 year ago

Changelog

  • 825bd99 build(deps): bump golang.org/x/text from 0.3.7 to 0.3.8 (#158)
  • 2b5b364 fix: GitLab pagination and site admin (#161)