Fleet is the lightweight, programmable telemetry platform for servers and workstations. Get comprehensive, customizable data from all your devices and operating systems — without the downtime risk.
Go to file
dependabot[bot] 56b26753a5
Bump ossf/scorecard-action from 1.1.2 to 2.1.2 (#10180)
Bumps [ossf/scorecard-action](https://github.com/ossf/scorecard-action)
from 1.1.2 to 2.1.2.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/ossf/scorecard-action/releases">ossf/scorecard-action's
releases</a>.</em></p>
<blockquote>
<h2>v2.1.2</h2>
<h2>What's Changed</h2>
<h3>Fixes</h3>
<ul>
<li>🌱 Bump scorecard dependency to v4.10.2 to remove a CODEOWNERS printf
statement. by <a
href="https://github.com/spencerschrock"><code>@​spencerschrock</code></a>
in <a
href="https://github-redirect.dependabot.com/ossf/scorecard-action/pull/1054">ossf/scorecard-action#1054</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/ossf/scorecard-action/compare/v2.1.1...v2.1.2">https://github.com/ossf/scorecard-action/compare/v2.1.1...v2.1.2</a></p>
<h2>v2.1.1</h2>
<h2>Scorecard version</h2>
<p>This release use <a
href="https://github.com/ossf/scorecard/releases/tag/v4.10.1">Scorecard's
v4.10.1</a></p>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/ossf/scorecard-action/compare/v2.1.0...v2.1.1">https://github.com/ossf/scorecard-action/compare/v2.1.0...v2.1.1</a></p>
<h2>v2.1.0</h2>
<h2>What's Changed</h2>
<h3>Scorecard version</h3>
<p>This release uses <a
href="https://github.com/ossf/scorecard/releases/tag/v4.10.0">scorecard
v4.10.0</a>.</p>
<h3>Improvements</h3>
<ul>
<li>Docker build workflow by <a
href="https://github.com/naveensrinivasan"><code>@​naveensrinivasan</code></a>
in <a
href="https://github-redirect.dependabot.com/ossf/scorecard-action/pull/981">ossf/scorecard-action#981</a></li>
<li>Use root user in distroless to support GitHub Actions by <a
href="https://github.com/spencerschrock"><code>@​spencerschrock</code></a>
in <a
href="https://github-redirect.dependabot.com/ossf/scorecard-action/pull/994">ossf/scorecard-action#994</a></li>
<li>Disable pull_request_target by <a
href="https://github.com/laurentsimon"><code>@​laurentsimon</code></a>
in <a
href="https://github-redirect.dependabot.com/ossf/scorecard-action/pull/1031">ossf/scorecard-action#1031</a></li>
</ul>
<h3>Documentation</h3>
<ul>
<li>Add PAT section explaining risks by <a
href="https://github.com/olivekl"><code>@​olivekl</code></a> in <a
href="https://github-redirect.dependabot.com/ossf/scorecard-action/pull/1024">ossf/scorecard-action#1024</a></li>
<li>Make the badge text easier to copy by <a
href="https://github.com/rajbos"><code>@​rajbos</code></a> in <a
href="https://github-redirect.dependabot.com/ossf/scorecard-action/pull/1026">ossf/scorecard-action#1026</a></li>
</ul>
<h2>New Contributors</h2>
<ul>
<li><a href="https://github.com/joycebrum"><code>@​joycebrum</code></a>
made their first contribution in <a
href="https://github-redirect.dependabot.com/ossf/scorecard-action/pull/984">ossf/scorecard-action#984</a></li>
<li><a href="https://github.com/rajbos"><code>@​rajbos</code></a> made
their first contribution in <a
href="https://github-redirect.dependabot.com/ossf/scorecard-action/pull/1026">ossf/scorecard-action#1026</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/ossf/scorecard-action/compare/v2.0.6...v2.1.0">https://github.com/ossf/scorecard-action/compare/v2.0.6...v2.1.0</a></p>
<h2>v2.0.6</h2>
<h2>What's Changed</h2>
<ul>
<li>Fix - Broken dockerfile by <a
href="https://github.com/naveensrinivasan"><code>@​naveensrinivasan</code></a>
in <a
href="https://github-redirect.dependabot.com/ossf/scorecard-action/pull/979">ossf/scorecard-action#979</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/ossf/scorecard-action/compare/v2.0.5...v2.0.6">https://github.com/ossf/scorecard-action/compare/v2.0.5...v2.0.6</a></p>
<h2>v2.0.5</h2>
<h2>What's Changed</h2>
<ul>
<li>Remove trailing space from example by <a
href="https://github.com/jamacku"><code>@​jamacku</code></a> in <a
href="https://github-redirect.dependabot.com/ossf/scorecard-action/pull/955">ossf/scorecard-action#955</a></li>
</ul>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="e38b1902ae"><code>e38b190</code></a>
Bump docker tag for release. (<a
href="https://github-redirect.dependabot.com/ossf/scorecard-action/issues/1055">#1055</a>)</li>
<li><a
href="7da02bf0d5"><code>7da02bf</code></a>
Bump scorecard to v4.10.2 to remove a CODEOWNERS printf statement. (<a
href="https://github-redirect.dependabot.com/ossf/scorecard-action/issues/1054">#1054</a>)</li>
<li><a
href="013c0f8bd2"><code>013c0f8</code></a>
🌱 Bump actions/dependency-review-action from 3.0.1 to
3.0.2</li>
<li><a
href="f93c094f4a"><code>f93c094</code></a>
🌱 Bump github/codeql-action from 2.1.36 to 2.1.37</li>
<li><a
href="ce8978e058"><code>ce8978e</code></a>
🌱 Bump actions/upload-artifact from 3.1.0 to 3.1.1</li>
<li><a
href="5ce49db1aa"><code>5ce49db</code></a>
🌱 Bump actions/setup-go from 3.4.0 to 3.5.0</li>
<li><a
href="15c10fcf1c"><code>15c10fc</code></a>
Update tag to v2.1.1 (<a
href="https://github-redirect.dependabot.com/ossf/scorecard-action/issues/1047">#1047</a>)</li>
<li><a
href="f96da1a128"><code>f96da1a</code></a>
🌱 Update scorecard for the panic (<a
href="https://github-redirect.dependabot.com/ossf/scorecard-action/issues/1045">#1045</a>)</li>
<li><a
href="813a825152"><code>813a825</code></a>
Complete the list of required actions (<a
href="https://github-redirect.dependabot.com/ossf/scorecard-action/issues/1044">#1044</a>)</li>
<li><a
href="be62ea89c1"><code>be62ea8</code></a>
Update RELEASE.md (<a
href="https://github-redirect.dependabot.com/ossf/scorecard-action/issues/1042">#1042</a>)</li>
<li>Additional commits viewable in <a
href="ce330fde6b...e38b1902ae">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=ossf/scorecard-action&package-manager=github_actions&previous-version=1.1.2&new-version=2.1.2)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-02-28 17:17:15 -08:00
.github Bump ossf/scorecard-action from 1.1.2 to 2.1.2 (#10180) 2023-02-28 17:17:15 -08:00
.storybook Added components to Storybook library (#2768) 2021-11-06 23:41:09 -07:00
.vscode check disk encryption key from host details page (#9691) 2023-02-14 17:00:36 +00:00
articles website-release-post-cta (#10177) 2023-02-28 12:53:41 -06:00
assets check disk encryption key from host details page (#9691) 2023-02-14 17:00:36 +00:00
changes Add disk_encryption option to config and team YAML (#10185) 2023-02-28 15:34:46 -05:00
charts/fleet Prepare for 4.28.0 (#10103) 2023-02-27 15:19:15 -08:00
cmd Add disk_encryption option to config and team YAML (#10185) 2023-02-28 15:34:46 -05:00
cypress Fleet UI: Consistent URL validation (#9806) 2023-02-22 09:05:38 -05:00
docs Add disk_encryption option to config and team YAML (#10185) 2023-02-28 15:34:46 -05:00
ee Add disk_encryption option to config and team YAML (#10185) 2023-02-28 15:34:46 -05:00
frontend Fleet UI: Show query button added to policy results page (#10164) 2023-02-28 12:55:56 -05:00
handbook Adding product marketing Tiers to the Product section. (#10128) 2023-02-28 17:12:23 -08:00
infrastructure Support matching a host in orbit enrollment using the serial number (#9612) 2023-02-28 12:55:04 -05:00
orbit Read enroll-secret and fleet-url from config profile on macOS (#10134) 2023-02-28 15:54:06 -03:00
pkg Add CIS checks for 2.9.X and add pmset table to fleetd (#9470) 2023-02-08 13:08:17 -03:00
proposals Add proposal for fleetctl trigger (#8127) 2022-12-02 10:05:16 -06:00
schema Regenerate osquery_fleet_schema.json (#10200) 2023-02-28 17:00:13 -06:00
scripts add on-call script (#4781) 2022-03-28 10:00:33 -06:00
server Add disk_encryption option to config and team YAML (#10185) 2023-02-28 15:34:46 -05:00
terraform Alb cidr list (#10184) 2023-02-28 14:37:53 -05:00
test/upgrade Only set public IPs on host.public_ip and add docs (#9900) 2023-02-17 13:00:56 -03:00
tools Prepare for 4.28.0 (#10103) 2023-02-27 15:19:15 -08:00
website Redirect (/handbook/company/product-groups) (#10195) 2023-02-28 15:42:10 -06:00
.dockerignore Added support to read jwt and mysql password from a file (#141) 2021-01-04 07:58:43 -08:00
.eslintrc.js add linting for react hooks to warn missing deps (#7551) 2022-09-06 15:02:10 +01:00
.gitattributes Windows friendly changes after walking through getting started guide (#1441) 2021-07-21 20:49:44 -04:00
.gitignore Feature 9386: Parse the Mac Office release notes for vulnerability processing (#9993) 2023-02-24 14:18:25 -04:00
.gitpod.yml Add gitpod yml (#2915) 2021-11-19 10:03:56 -03:00
.golangci.yml Enable errcheck linter for golangci-lint (#8899) 2022-12-05 16:50:49 -06:00
.goreleaser-snapshot.yml use image containing installer deps for fleetdm/fleetctl (#7040) 2022-08-24 12:10:16 +00:00
.goreleaser.yml use image containing installer deps for fleetdm/fleetctl (#7040) 2022-08-24 12:10:16 +00:00
.npmignore Move fleetdm.com into main Fleet repo (#83) 2020-12-02 14:48:03 -06:00
.prettierignore move policies to own constants and allow escaping on DEFAULT_POLICIES (#8121) 2022-10-07 14:31:57 +01:00
.prettierrc.json add prettier and have it format all fleet application code (#625) 2021-04-12 14:32:25 +01:00
.trivyignore 8241 trivy ignore file action (#8345) 2022-10-31 10:50:29 -04:00
CHANGELOG.md Prepare for 4.28.0 (#10103) 2023-02-27 15:19:15 -08:00
CODE_OF_CONDUCT.md Remove @fleetdm.com emails from fleetdm/fleet repo (#882) 2021-05-27 17:19:14 -04:00
CODEOWNERS offboarding charlie (#10140) 2023-02-27 16:43:49 -06:00
docker-compose.yml Add guide on how to simulate slow connections to redis and mysql (#9140) 2023-01-03 17:29:40 -03:00
Dockerfile Drew bakerfdm remove email mentions (#8641) 2022-11-10 11:59:08 -05:00
Dockerfile-desktop-linux Bump golang from 1.19.5-alpine to 1.20.1-alpine (#10099) 2023-02-27 18:16:21 -08:00
Dockerfile.osquery-perf Bump golang from 1.19.5-alpine to 1.20.1-alpine (#10099) 2023-02-27 18:16:21 -08:00
go.mod Bump golang.org/x/net from 0.5.0 to 0.7.0 (#9941) 2023-02-28 09:38:33 -08:00
go.sum Bump golang.org/x/net from 0.5.0 to 0.7.0 (#9941) 2023-02-28 09:38:33 -08:00
LICENSE Update LICENSE (#10) 2020-11-04 19:57:51 -06:00
Makefile update mockimpl version to allow concurrent mock calls (#9989) 2023-02-21 16:36:06 -03:00
manifest.yml.cloudgov.example cloud.gov deployment (#7611) 2022-09-07 13:30:06 -05:00
package.json Move JS deps to devDependencies (#10155) 2023-02-28 09:13:30 -08:00
postcss.config.js Upgrade Bourbon to 5.1.0 and fix deprecation warnings (#1973) 2019-01-03 12:46:55 -08:00
README.md Move CONTRIBUTING.md into docs/contributing (#7283) 2022-08-26 12:14:43 -05:00
SECURITY.md Editing security policy (#5333) 2022-05-05 20:29:06 -05:00
tools.go Update notarization to use notarytool (#7962) 2022-09-27 08:25:42 -07:00
tsconfig.json Feat/update query doc sidepanel (#8214) 2022-10-14 17:45:57 +01:00
webpack.config.js add google analytics to sandbox instances (#6941) 2022-08-01 11:27:12 +01:00
yarn.lock Move JS deps to devDependencies (#10155) 2023-02-28 09:13:30 -08:00

Fleet logo, landscape, dark text, transparent background

Website   News   Report a bug

Run Tests   Go Report Card   CII Best Practices   Twitter Follow  

Fleet is the lightweight, open source telemetry platform for servers and workstations. Deploy osquery with Fleet to get comprehensive, customizable data from all your devices and operating systems without the downtime risk.

Try Fleet

Head to fleetdm.com/try-fleet to fire up a one-off cloud instance for quickly trying out Fleet.

Now what?

Check out the Learn how to use Fleet doc to learn how to add your device to Fleet and how to ask questions about your devices by running queries.

Team

Fleet is independently backed and actively maintained with the help of many amazing contributors.

📖 In keeping with our value of openness, Fleet Device Management's company handbook is public and open source. You can read about the history of Fleet and osquery and our commitment to improving the product. To upgrade from Fleet ≤3.2.0, just follow the upgrading steps for the latest release from this repository (it'll work out of the box).

Documentation

Documentation for Fleet can be found here.

Community

Chat

Please join us in the #fleet channel on osquery Slack.

Contributing

Contributions are welcome, whether you answer questions on Slack/GitHub/StackOverflow/Twitter, improve the documentation or website, write a tutorial, give a talk, start a local osquery meetup, troubleshoot reported issues, or submit a patch. The Fleet code of conduct is on GitHub.

Banner featuring a futuristic cloud city with the Fleet logo