Update all dependencies
This MR contains the following updates:
Package | Change | Age | Adoption | Passing | Confidence | Type | Update |
---|---|---|---|---|---|---|---|
boto3 |
==1.28.12 -> ==1.28.23
|
patch | |||||
jsonschema (changelog) |
==4.18.4 -> ==4.19.0
|
minor | |||||
moto (changelog) |
==4.1.13 -> ==4.1.14
|
patch | |||||
pyflakes |
==3.0.1 -> ==3.1.0
|
minor | |||||
trufflesecurity/trufflehog |
v3.45.1 -> v3.47.0
|
ironbank-github | minor |
⚠ Dependency Lookup Warnings ⚠
Warnings were logged while processing this repo. Please check the logs for more information.
Release Notes
boto/boto3
v1.28.23
=======
- api-change:
chime-sdk-voice
: [botocore
] Updating CreatePhoneNumberOrder, UpdatePhoneNumber and BatchUpdatePhoneNumbers APIs, adding phone number name - api-change:
fsx
: [botocore
] For FSx for Lustre, add new data repository task type, RELEASE_DATA_FROM_FILESYSTEM, to release files that have been archived to S3. For FSx for Windows, enable support for configuring and updating SSD IOPS, and for updating storage type. For FSx for OpenZFS, add new deployment type, MULTI_AZ_1. - api-change:
globalaccelerator
: [botocore
] Documentation update for dualstack EC2 endpoint support - api-change:
guardduty
: [botocore
] Added autoEnable ALL to UpdateOrganizationConfiguration and DescribeOrganizationConfiguration APIs. - api-change:
sagemaker
: [botocore
] This release adds support for cross account access for SageMaker Model Cards through AWS RAM.
v1.28.22
=======
- api-change:
backup
: [botocore
] This release introduces a new logically air-gapped vault (Preview) in AWS Backup that stores immutable backup copies, which are locked by default and isolated with encryption using AWS owned keys. Logically air-gapped vault (Preview) allows secure recovery of application data across accounts. - api-change:
elasticache
: [botocore
] Added support for cluster mode in online migration and test migration API - api-change:
servicecatalog
: [botocore
] Introduce support for HashiCorp Terraform Cloud in Service Catalog by addying TERRAFORM_CLOUD product type in CreateProduct and CreateProvisioningArtifact API.
v1.28.21
=======
- api-change:
detective
: [botocore
] Updated the email validation regex to be in line with the TLD name specifications. - api-change:
ivs-realtime
: [botocore
] Add QUOTA_EXCEEDED and PUBLISHER_NOT_FOUND to EventErrorCode for stage health events. - api-change:
kinesis-video-archived-media
: [botocore
] This release enables minimum of Images SamplingInterval to be as low as 200 milliseconds in Kinesis Video Stream Image feature. - api-change:
kinesisvideo
: [botocore
] This release enables minimum of Images SamplingInterval to be as low as 200 milliseconds in Kinesis Video Stream Image feature. - api-change:
rekognition
: [botocore
] This release adds code snippets for Amazon Rekognition Custom Labels.
v1.28.20
=======
- api-change:
acm-pca
: [botocore
] Documentation correction for AWS Private CA - api-change:
connect
: [botocore
] Added a new API UpdateRoutingProfileAgentAvailabilityTimer to update agent availability timer of a routing profile. - api-change:
datasync
: [botocore
] Display cloud storage used capacity at a cluster level. - api-change:
ecs
: [botocore
] This is a documentation update to address various tickets. - api-change:
sagemaker
: [botocore
] Including DataCaptureConfig key in the Amazon Sagemaker Search's transform job object
v1.28.19
=======
- api-change:
autoscaling
: [botocore
] Documentation changes related to Amazon EC2 Auto Scaling APIs. - api-change:
cloud9
: [botocore
] Updated the deprecation date for Amazon Linux. Doc only update. - api-change:
dms
: [botocore
] The release makes public API for DMS Schema Conversion feature. - api-change:
ec2
: [botocore
] This release adds new parameter isPrimaryIPv6 to allow assigning an IPv6 address as a primary IPv6 address to a network interface which cannot be changed to give equivalent functionality available for network interfaces with primary IPv4 address. - api-change:
sagemaker
: [botocore
] Amazon SageMaker now supports running training jobs on p5.48xlarge instance types.
v1.28.18
=======
- api-change:
budgets
: [botocore
] As part of CAE tagging integration we need to update our budget names regex filter to prevent customers from using "/action/" in their budget names. - api-change:
cognito-idp
: [botocore
] New feature that logs Cognito user pool error messages to CloudWatch logs. - api-change:
glue
: [botocore
] This release includes additional Glue Streaming KAKFA SASL property types. - api-change:
resiliencehub
: [botocore
] Drift Detection capability added when applications policy has moved from a meet to breach state. Customers will be able to exclude operational recommendations and receive credit in their resilience score. Customers can now add ARH permissions to an existing or new role. - api-change:
sagemaker
: [botocore
] SageMaker Inference Recommender introduces a new API GetScalingConfigurationRecommendation to recommend auto scaling policies based on completed Inference Recommender jobs.
v1.28.17
=======
- api-change:
batch
: [botocore
] This release adds support for price capacity optimized allocation strategy for Spot Instances. - api-change:
dms
: [botocore
] Adding new API describe-engine-versions which provides information about the lifecycle of a replication instance's version. - api-change:
internetmonitor
: [botocore
] This release adds a new feature for Amazon CloudWatch Internet Monitor that enables customers to set custom thresholds, for performance and availability drops, for impact limited to a single city-network to trigger creation of a health event. - api-change:
medialive
: [botocore
] AWS Elemental Link devices now report their Availability Zone. Link devices now support the ability to change their Availability Zone. - api-change:
polly
: [botocore
] Amazon Polly adds new French Belgian voice - Isabelle. Isabelle is available as Neural voice only. - api-change:
rds
: [botocore
] Added support for deleted clusters PiTR. - api-change:
sagemaker
: [botocore
] Add Stairs TrafficPattern and FlatInvocations to RecommendationJobStoppingConditions
v1.28.16
=======
- api-change:
amplifyuibuilder
: [botocore
] Amplify Studio releases GraphQL support for codegen job action. - api-change:
autoscaling
: [botocore
] You can now configure an instance refresh to set its status to 'failed' when it detects that a specified CloudWatch alarm has gone into the ALARM state. You can also choose to roll back the instance refresh automatically when the alarm threshold is met. - api-change:
cleanrooms
: [botocore
] This release introduces custom SQL queries - an expanded set of SQL you can run. This release adds analysis templates, a new resource for storing pre-defined custom SQL queries ahead of time. This release also adds the Custom analysis rule, which lets you approve analysis templates for querying. - api-change:
codestar-connections
: [botocore
] New integration with the Gitlab provider type. - api-change:
drs
: [botocore
] Add support for in-aws right sizing - api-change:
inspector2
: [botocore
] This release adds 1 new API: BatchGetFindingDetails to retrieve enhanced vulnerability intelligence details for findings. - api-change:
lookoutequipment
: [botocore
] This release includes new import resource, model versioning and resource policy features. - api-change:
omics
: [botocore
] Add CreationType filter for ListReadSets - api-change:
rds
: [botocore
] This release adds support for Aurora MySQL local write forwarding, which allows for forwarding of write operations from reader DB instances to the writer DB instance. - api-change:
route53
: [botocore
] Amazon Route 53 now supports the Israel (Tel Aviv) Region (il-central-1) for latency records, geoproximity records, and private DNS for Amazon VPCs in that region. - api-change:
scheduler
: [botocore
] This release introduces automatic deletion of schedules in EventBridge Scheduler. If configured, EventBridge Scheduler automatically deletes a schedule after the schedule has completed its last invocation.
v1.28.15
=======
- enhancement:HTTP: [
botocore
] Move 100-continue behavior to useHTTPConnections
request interface. - api-change:
application-insights
: [botocore
] This release enable customer to add/remove/update more than one workload for a component - api-change:
cloudformation
: [botocore
] This SDK release is for the feature launch of AWS CloudFormation RetainExceptOnCreate. It adds a new parameter retainExceptOnCreate in the following APIs: CreateStack, UpdateStack, RollbackStack, ExecuteChangeSet. - api-change:
cloudfront
: [botocore
] Add a new JavaScript runtime version for CloudFront Functions. - api-change:
connect
: [botocore
] This release adds support for new number types. - api-change:
kafka
: [botocore
] Amazon MSK has introduced new versions of ListClusterOperations and DescribeClusterOperation APIs. These v2 APIs provide information and insights into the ongoing operations of both MSK Provisioned and MSK Serverless clusters. - api-change:
pinpoint
: [botocore
] Added support for sending push notifications using the FCM v1 API with json credentials. Amazon Pinpoint customers can now deliver messages to Android devices using both FCM v1 API and the legacy FCM/GCM API
v1.28.14
=======
- enhancement:compression: [
botocore
] Adds support for therequestcompression
operation trait. - api-change:
sqs
: [botocore
] Documentation changes related to SQS APIs.
v1.28.13
=======
- api-change:
autoscaling
: [botocore
] This release updates validation for instance types used in the AllowedInstanceTypes and ExcludedInstanceTypes parameters of the InstanceRequirements property of a MixedInstancesPolicy. - api-change:
ebs
: [botocore
] SDK and documentation updates for Amazon Elastic Block Store API - api-change:
ec2
: [botocore
] SDK and documentation updates for Amazon Elastic Block Store APIs - api-change:
eks
: [botocore
] Add multiple customer error code to handle customer caused failure when managing EKS node groups - api-change:
sagemaker
: [botocore
] Expose ProfilerConfig attribute in SageMaker Search API response.
python-jsonschema/jsonschema
v4.19.0
=======
- Importing the
Validator
protocol directly from the package root is deprecated. Import it fromjsonschema.protocols.Validator
instead. - Automatic retrieval of remote references (which is still deprecated) now properly succeeds even if the retrieved resource does not declare which version of JSON Schema it uses. Such resources are assumed to be 2020-12 schemas. This more closely matches the pre-referencing library behavior.
v4.18.6
=======
- Set a
jsonschema
specific user agent when automatically retrieving remote references (which is deprecated).
v4.18.5
=======
- Declare support for Py3.12
getmoto/moto
v4.1.14
Docker Digest for 4.1.14: sha256:4cc82c0803c6b578d5c4146a8e38ff0387dec565483cfaa63eb238cb867e97e6
New Methods:
* SageMaker:
* create_model_package()
* create_model_package_group()
* describe_model_package()
* list_model_packages()
Miscellaneous:
* CloudFormation: describe_stack_instances() now returns the StackInstanceStatus-attribute
* CloudFront: update_distribution() now supports the DefaultRootObject-parameter
* CloudWatch: get_metric_data() now support (simple) Expressions
* CognitoIDP: initiate_auth() and admin_initiate_auth() now throw a NotAuthorizedError for disabled users
* EC2 VPC's: Add CloudFront, Ground Station and Lattice prefix lists
* IOT: search_index() now returns the connectivity-attribute
* Organizations: Introduce more trusted service principals
* RDS: create_db_cluster() now supports the VpcSecurityGroupIds-parameter
* S3: Optional support for CRC32C checksums
* SNS: publish_batch() now sends the required `MessageDeduplicationId` for FIFO queues
* SQS: send_message_batch() now only throws a `BatchRequestTooLong` if the sum of all messages exceed the limit
trufflesecurity/trufflehog
v3.47.0
What's Changed
- Expand paypal regex by @bill-rich in https://github.com/trufflesecurity/trufflehog/pull/1599
- Github Oauth2 verification by @bill-rich in https://github.com/trufflesecurity/trufflehog/pull/1584
- synchronize print operations to stdout by @ahrav in https://github.com/trufflesecurity/trufflehog/pull/1597
- include scan duration in output log by @ahrav in https://github.com/trufflesecurity/trufflehog/pull/1598
- Add commits scanned to log by @bill-rich in https://github.com/trufflesecurity/trufflehog/pull/1600
- Common chunk reader by @ahrav in https://github.com/trufflesecurity/trufflehog/pull/1594
- initial support for bare repositories by @L11R in https://github.com/trufflesecurity/trufflehog/pull/1499
- Fix nil pointer dereference to git ScanOptions by @mcastorina in https://github.com/trufflesecurity/trufflehog/pull/1603
- implement indeterminate LDAP verification by @rosecodym in https://github.com/trufflesecurity/trufflehog/pull/1574
- Use SourceManager in engine by @mcastorina in https://github.com/trufflesecurity/trufflehog/pull/1586
- Adjust regex and add tests by @bill-rich in https://github.com/trufflesecurity/trufflehog/pull/1602
- Detect API keys without app keys by @bill-rich in https://github.com/trufflesecurity/trufflehog/pull/1605
- Tweak template detector test code by @rosecodym in https://github.com/trufflesecurity/trufflehog/pull/1609
- Use common chunk reader by @ahrav in https://github.com/trufflesecurity/trufflehog/pull/1596
- Move commits_scanned to ScanRepo by @bill-rich in https://github.com/trufflesecurity/trufflehog/pull/1610
- implement tri-state verification in FTP detector by @rosecodym in https://github.com/trufflesecurity/trufflehog/pull/1604
- Add terminal UI by @hxnyk in https://github.com/trufflesecurity/trufflehog/pull/1593
New Contributors
- @L11R made their first contribution in https://github.com/trufflesecurity/trufflehog/pull/1499
- @hxnyk made their first contribution in https://github.com/trufflesecurity/trufflehog/pull/1593
Full Changelog: https://github.com/trufflesecurity/trufflehog/compare/v3.46.3...v3.47.0
v3.46.3
What's Changed
- Remove CI Badge by @zricethezav in https://github.com/trufflesecurity/trufflehog/pull/1590
- updating github templates by @zricethezav in https://github.com/trufflesecurity/trufflehog/pull/1587
- fix broken link in issue templates by @zricethezav in https://github.com/trufflesecurity/trufflehog/pull/1592
- tighten up regex pattern for timezoneapi by @zubairk14 in https://github.com/trufflesecurity/trufflehog/pull/1591
- Remove capturing the cancel callstack in the context package by @mcastorina in https://github.com/trufflesecurity/trufflehog/pull/1595
Full Changelog: https://github.com/trufflesecurity/trufflehog/compare/v3.46.2...v3.46.3
v3.46.2
What's Changed
- add tri-state verification to mongodb detector by @rosecodym in https://github.com/trufflesecurity/trufflehog/pull/1575
- create hidden debug flag to disable overseer by @zubairk14 in https://github.com/trufflesecurity/trufflehog/pull/1582
- Fix VirusTotal deetector by @ahrav in https://github.com/trufflesecurity/trufflehog/pull/1585
- Refactor git source to allow ScanOptions and use source in engine by @mcastorina in https://github.com/trufflesecurity/trufflehog/pull/1518
- S3 panic send on closed channel by @ahrav in https://github.com/trufflesecurity/trufflehog/pull/1589
Full Changelog: https://github.com/trufflesecurity/trufflehog/compare/v3.46.1...v3.46.2
v3.46.1
What's Changed
- [bug] - Fix unlocking an unlocked mutex by @ahrav in https://github.com/trufflesecurity/trufflehog/pull/1583
Full Changelog: https://github.com/trufflesecurity/trufflehog/compare/v3.46.0...v3.46.1
v3.46.0
What's Changed
- Increase log level of engine messages by @dustin-decker in https://github.com/trufflesecurity/trufflehog/pull/1576
- Initialize the default logger to output to stderr by @mcastorina in https://github.com/trufflesecurity/trufflehog/pull/1569
- Fix runtime error when scanning Gist comments by @rgmz in https://github.com/trufflesecurity/trufflehog/pull/1552
- Do not nest transports for Github installation client by @rosecodym in https://github.com/trufflesecurity/trufflehog/pull/1564
- Identify transient AWS verification failures by @rosecodym in https://github.com/trufflesecurity/trufflehog/pull/1563
- Support fatal errors in job reports by @mcastorina in https://github.com/trufflesecurity/trufflehog/pull/1562
- Fix pubnub regular expression by @mcastorina in https://github.com/trufflesecurity/trufflehog/pull/1565
- gitparse: Use an object for currentDiff by @mcastorina in https://github.com/trufflesecurity/trufflehog/pull/1573
- Concurrent detection by @ahrav in https://github.com/trufflesecurity/trufflehog/pull/1580
- Replace magic strings with const by @ahrav in https://github.com/trufflesecurity/trufflehog/pull/1568
- [bug] - fix data races by @ahrav in https://github.com/trufflesecurity/trufflehog/pull/1577
- [bug] - fix shodan detector by @ahrav in https://github.com/trufflesecurity/trufflehog/pull/1579
Full Changelog: https://github.com/trufflesecurity/trufflehog/compare/v3.45.3...v3.46.0
v3.45.3
What's Changed
- Initial implementation of JobReport with SourceManager usage by @mcastorina in https://github.com/trufflesecurity/trufflehog/pull/1557
- Add path (location of file) to Google Drive proto by @zubairk14 in https://github.com/trufflesecurity/trufflehog/pull/1566
- move false positive check in alchemy detector by @rosecodym in https://github.com/trufflesecurity/trufflehog/pull/1532
- Fix gitparse from panicking on a nil-pointer by @mcastorina in https://github.com/trufflesecurity/trufflehog/pull/1570
Full Changelog: https://github.com/trufflesecurity/trufflehog/compare/v3.45.2...v3.45.3
v3.45.2
What's Changed
- Pass GitHub apiEndpoint for basic or no auth by @rgmz in https://github.com/trufflesecurity/trufflehog/pull/1454
- Bump github.com/xanzy/go-gitlab from 0.86.0 to 0.88.0 by @dependabot in https://github.com/trufflesecurity/trufflehog/pull/1522
- Bump github.com/google/go-containerregistry from 0.14.0 to 0.15.2 by @dependabot in https://github.com/trufflesecurity/trufflehog/pull/1504
- Add SourceManager tests for Run and Wait methods by @mcastorina in https://github.com/trufflesecurity/trufflehog/pull/1530
- Improve log message when scanning GitHub comments by @rgmz in https://github.com/trufflesecurity/trufflehog/pull/1553
- Bump github.com/bradleyfalzon/ghinstallation/v2 from 2.4.0 to 2.6.0 by @dependabot in https://github.com/trufflesecurity/trufflehog/pull/1503
- Bump github.com/go-git/go-git/v5 from 5.8.0 to 5.8.1 by @dependabot in https://github.com/trufflesecurity/trufflehog/pull/1554
- [MongoDB] Detect CosmoDB access keys by @rgmz in https://github.com/trufflesecurity/trufflehog/pull/1511
- Override broken dependency version by @dustin-decker in https://github.com/trufflesecurity/trufflehog/pull/1558
- Add azure repos protos by @ahrav in https://github.com/trufflesecurity/trufflehog/pull/1559
- add merge support by @zricethezav in https://github.com/trufflesecurity/trufflehog/pull/1561
Full Changelog: https://github.com/trufflesecurity/trufflehog/compare/v3.45.1...v3.45.2
Configuration
-
If you want to rebase/retry this MR, check this box
This MR has been generated by Renovate Bot.