All notable changes to this project will be documented in this file.
- Solved performance issues for thereat intel module
- Fixed link with merge request webhook comment
- Adjusted merge request comment text
- added selection of displayed rows in tables in show repository view
- added and optimized the way of how scan info is displayed
- added possibility to filter scan infos for branch or commit id
- Proper throttling and wait between tests executed via webhook
- scan info default sort is date
- Change threat intel from SQL Query to view in order to increase the performance
- Possibility to add Remote identifier for the teams
- Logging when webhook received for project that is not onboarded yet instead of stacktrace
- Problem with link generation on threat intelligence view
- Bulk action on findings
- Possibility to define supress rules
- Introduced Vulnerability Threat Detection dashboard and KEV downloading
- TEAM_MANAGER role can run manual scan via GUI and via API
- Enlarged parallel scan pool from 5 to 15
- Provided
pipreqs
to enchance python support for SCA - It is visible when scan is currently running
- Performance issues that occurs while having 300+ imported repositories on dashboard and component view
- Merge request and Pull Request commenting
- Full Webhook support for both GitLab and GitHub
- It is visible when scan is currently running
- Added Possibility to run scan manually form UI
- Possibility to generate sbom on the fly without needing it to be existing in the repository
- Filtering main table with repos now work properly
- Problem related with scans done with Bearer due to missing rules
- Race condition during component creation
- Problem with setting status of a scan when something wrong
- GitHub Integration - possibility to import by on
- Problem with too low limits of length for data such as vulnerability name or component name
- Problem with importing BULK Repositories: table contains all gitlab projects including project without membership but public. Current version shows only project inserted accesstoken is member of.
- SSO integration introduced
- Adjusted scripts to support SSO
- Increased efficiency of running scans in parallel
- Release of initial version - beta
- Import bulk repositories
- Import single repository
- Perform SAST, SCA, Secret and IAC scans
- Manage Teams
- Manage Users
- Show statistics
- Manage vulnerabilities and components