Release 0.5.0
What's Changed
- _internal/fulcio: refactor SCT model by @woodruffw in #94
- oidc/ambient: Google: fail softly if the SMBIOS product name doesn't match by @woodruffw in #98
- oauth: Fix race in OIDC token retrieval by @tetsuo-cpp in #99
- cli: add
--output-signature
and--output-certificate
by @woodruffw in #101 - _cli, _sign, _verify, oidc: Add
--fulcio-url
and--rekor-url
by @tetsuo-cpp in #103 - _cli: Add
--staging
convenience flag by @tetsuo-cpp in #104 - Support verifying embedded SCTs by @tetsuo-cpp in #84
- fulcio, _sign: Request certificates via CSR by @tetsuo-cpp in #80
- _verify: Add Fulcio intermediate certificate by @tetsuo-cpp in #110
- _cli, _verify: Wrap OpenSSL error with user-friendly text by @tetsuo-cpp in #113
- sigstore: 0.5.0 by @woodruffw in #111
Full Changelog: v0.4.2...v0.5.0