osv-detector icon indicating copy to clipboard operation
osv-detector copied to clipboard

fix(deps): update module github.com/google/osv-scalibr to v0.4.1

Open renovate[bot] opened this issue 3 months ago • 0 comments

This PR contains the following updates:

Package Change Age Confidence
github.com/google/osv-scalibr v0.4.1-0.20251202121049-5e7e15f4a036v0.4.1 age confidence

Release Notes

google/osv-scalibr (github.com/google/osv-scalibr)

v0.4.1

Compare Source

  • New secret detectors: AWS access token, Recaptcha secret key, pyx v1/v2 user key, Amazon CodeCatalyst, generic JWT
  • Go source reachability enrichment using Govulncheck
  • Support for more assignment patterns in the .gemspec extractor
  • Support for BellSoft/Alpaquita OS packages
  • Fixes: Correct the COS os-duplicate annotator behavior, avoid duplicate inventories when traversing multiple ScanRoots
  • Include PackageVulns in output proto

Configuration

📅 Schedule: Branch creation - "before 6am on monday" in timezone Pacific/Auckland, Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • [ ] If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

renovate[bot] avatar Sep 28 '25 13:09 renovate[bot]