8.2.0 - 2026-06-10¶
Summary¶
This minor release adds manual triggering for periodic-validation.yml and makes the
Sonar secret name used by report.yml configurable via BaseConfig.
Security Issues¶
This release fixes vulnerabilities by updating dependencies:
Dependency |
Vulnerability |
Affected |
Fixed in |
|---|---|---|---|
pip |
PYSEC-2026-196 |
26.1.1 |
26.1.2 |
Feature¶
#854: Added
workflow_dispatchforperiodic-validation.yml#827: Modified
report.ymlto allow overriding the Sonar secret name viaBaseConfig
Refactoring¶
#852: Modified
merge-gateto ensurerun-fast-testssucceeds#811: Modified workflow templates to not persist-credentials, not provide attacker-controllable inlines, and not pass more secrets to
report.yml
Dependency Updates¶
main¶
Updated dependency
coverage:7.14.0to7.14.1Updated dependency
pysonar:1.5.0.4793to1.6.0.4905Updated dependency
sphinx-toolbox:4.1.2to4.2.0Updated dependency
typer:0.25.1to0.26.7