What's Changed
- Pin GitHub Actions workflows by @jspeed-meyers in #206
- Add GitHub Actions updates to dependabot by @jspeed-meyers in #207
- Bump ossf/scorecard-action from 2.3.1 to 2.4.0 in #212
- Bump actions/checkout from 2.7.0 to 4.2.2 in #211
- Bump pypa/gh-action-pypi-publish from 1.4.2 to 1.11.0 in #210
- Bump tj-actions/bandit from 5.1 to 5.5 in #209
- Bump actions/upload-artifact from 97a0fba1372883ab732affbe8f94b823f91727db to c24449f33cd45d4826c6702db7e49f7cdb9b551d in #208
- Bump actions/upload-artifact from 3.2.1.pre.node20 to 4.4.3 in #215
- Bump actions/setup-python from 3.1.4 to 5.3.0 in #216
- Make bandit Github Action read-only by @jspeed-meyers in #217
- Update SECURITY.md supported versions by @jspeed-meyers in #213
- Make permissions read-only for black linter by @jspeed-meyers in #218
- Update CodeQL GitHub Actions by @jspeed-meyers in #219
- Bump pypa/gh-action-pypi-publish from 1.11.0 to 1.12.2 in #220
- Update permissions on pylint GitHub Action by @jspeed-meyers in #221
- Fix typo: generare -> generate in README by @bact in #225
- Bump pypa/gh-action-pypi-publish from 1.12.2 to 1.12.3 in #229
- Add FSCTv3 Common SBOM Baseline Attributes checker by @bact in #224
- Include FSCT3 information in README by @bact in #226
- Bump actions/upload-artifact from 4.4.3 to 4.5.0 in #231
- Update release version in pyproject.toml to 3.1.0 by @jspeed-meyers in #232
- Add Takashi's SBOM requirements comparison slide to README by @bact in #233
New Contributors
- @bact made their first contribution in #225. In fact, @bact rewrote and improved the entire codebase :) So thank you!!!!!
Full Changelog: v3.0.2...v3.1.0