Ozi

Latest version: v1.8.5

Safety actively analyzes 631215 Python packages for vulnerabilities to keep your Python projects secure.

Scan your dependencies

Page 1 of 64

2024.5

Signed-off-by: rjdbcm <ozi.projectoutlook.com> ([`407db9b`](https://github.com/OZI-Project/OZI/commit/407db9b1abc53b30e9aa73ab589a2e5b0056f726))

:wrench:

* :wrench: add 1.5 release branch group

Signed-off-by: Eden Rose, MSc <ozi.projectoutlook.com> ([`fa09315`](https://github.com/OZI-Project/OZI/commit/fa09315597531d789b1a364e35bdb3885e20e301))

2.11.6

version of the CLI using the &39;tools&39; input to the &39;init&39; Action, you can
remove this input to use the default version.</li>
<li>Alternatively, if you want to continue using a version of the CodeQL
CLI between 2.10.5 and 2.11.5, you can replace
<code>github/codeql-action/*v2</code> by
<code>github/codeql-action/*v2.22.7</code> in your code scanning
workflow to ensure you continue using this version of the CodeQL
Action.</li>
</ul>
</li>
</ul>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href=&34;https://github.com/github/codeql-action/commit/b7bf0a3ed3ecfa44160715d7c442788f65f0f923"><code>b7bf0a3</code></a>
Merge pull request <a
href=&34;https://redirect.github.com/github/codeql-action/issues/2099">2099</a>
from github/update-v3.23.2-61bf02577</li>
<li><a
href=&34;https://github.com/github/codeql-action/commit/33e354b34bc9d95d28ae4f055fa1faeb59e59ae5"><code>33e354b</code></a>
Changelog: Add missing PR link</li>
<li><a
href=&34;https://github.com/github/codeql-action/commit/f4cfe8904c929c35f9612da0c754f121a3422d7e"><code>f4cfe89</code></a>
Update changelog for v3.23.2</li>
<li><a
href=&34;https://github.com/github/codeql-action/commit/61bf02577c801b30a708abc6f2164763e4e1d0cd"><code>61bf025</code></a>
Send overall job status in init-post status report (<a
href=&34;https://redirect.github.com/github/codeql-action/issues/2097">2097</a>)</li>
<li><a
href=&34;https://github.com/github/codeql-action/commit/16150320c5db0d4942ea2bd4974fc365d6324737"><code>1615032</code></a>
Merge pull request <a
href=&34;https://redirect.github.com/github/codeql-action/issues/2096">2096</a>
from github/update-bundle/codeql-bundle-v2.16.1</li>
<li><a
href=&34;https://github.com/github/codeql-action/commit/bd67d8d6b2096e4b46db15ed108e563c4447d608"><code>bd67d8d</code></a>
Merge pull request <a
href=&34;https://redirect.github.com/github/codeql-action/issues/2098">2098</a>
from github/henrymercer/update-internal-queries</li>
<li><a
href=&34;https://github.com/github/codeql-action/commit/a2619f68c8432b9a500ecc7aafd4816667379bed"><code>a2619f6</code></a>
Internal queries: Replace deprecated predicates</li>
<li><a
href=&34;https://github.com/github/codeql-action/commit/666e2f9edfd29789e9f46f2cce092d18622dcb74"><code>666e2f9</code></a>
Internal queries: Replace deprecated predicates</li>
<li><a
href=&34;https://github.com/github/codeql-action/commit/d43ae36a631248dea35da2f8da5e28687255da31"><code>d43ae36</code></a>
Add changelog note</li>
<li><a
href=&34;https://github.com/github/codeql-action/commit/75af1f5948eef4f82d80db69296c55a9bc5ba26e"><code>75af1f5</code></a>
Update default bundle to codeql-bundle-v2.16.1</li>
<li>Additional commits viewable in <a
href=&34;https://github.com/github/codeql-action/compare/0b21cf2492b6b02c465a3e5d7c473717ad7721ba...b7bf0a3ed3ecfa44160715d7c442788f65f0f923">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=github/codeql-action&package-manager=github_actions&previous-version=3.23.1&new-version=3.23.2)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don&39;t
alter it yourself. You can also trigger a rebase manually by commenting
`dependabot rebase`.

[//]: (dependabot-automerge-start)
[//]: (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `dependabot rebase` will rebase this PR
- `dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `dependabot merge` will merge this PR after your CI passes on it
- `dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `dependabot reopen` will reopen this PR if it is closed
- `dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details> ([`81900ac`](https://github.com/OZI-Project/OZI/commit/81900aca56fc44d655b36c25a7c7af7f3adf810b))

* :pushpin: Bump github/codeql-action from 3.23.1 to 3.23.2

Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.23.1 to 3.23.2.
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](https://github.com/github/codeql-action/compare/0b21cf2492b6b02c465a3e5d7c473717ad7721ba...b7bf0a3ed3ecfa44160715d7c442788f65f0f923)

---
updated-dependencies:
- dependency-name: github/codeql-action
dependency-type: direct:production
update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <supportgithub.com> ([`968eb71`](https://github.com/OZI-Project/OZI/commit/968eb71d7e3007a6f2bd6db1d826a7ab4f819ebc))

* :pushpin: Bump OZI-Project/checkpoint from 0.1.1 to 0.1.2

Bumps [OZI-Project/checkpoint](https://github.com/ozi-project/checkpoint) from 0.1.1 to 0.1.2.
- [Release notes](https://github.com/ozi-project/checkpoint/releases)
- [Commits](https://github.com/ozi-project/checkpoint/compare/0.1.1...9b94738aab4c7c3ee989c8be1144d041bfd7a184)

---
updated-dependencies:
- dependency-name: OZI-Project/checkpoint
dependency-type: direct:production
update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <supportgithub.com> ([`d32a58c`](https://github.com/OZI-Project/OZI/commit/d32a58ca4be12e97c7b47bc48b7ab4a90d01bc76))

:wrench:

* :wrench: Update meson.options

remove rst-lint from module-only

Signed-off-by: Eden Rose, MSc <42073607+rjdbcmusers.noreply.github.com> ([`228965d`](https://github.com/OZI-Project/OZI/commit/228965debb3412e047f101ac4f702322f7cf4430))

* :wrench: Update meson.options

args-restructuredtext-lint level set to warning over debug.

Signed-off-by: Eden Rose, MSc <42073607+rjdbcmusers.noreply.github.com> ([`2b85237`](https://github.com/OZI-Project/OZI/commit/2b85237506e63fc6e0804f85292ecce93dbddf5c))

* :wrench: Update meson.options

Add rst-lint to lint suites.

Signed-off-by: Eden Rose, MSc <42073607+rjdbcmusers.noreply.github.com> ([`2b72b78`](https://github.com/OZI-Project/OZI/commit/2b72b78cfaf200e2c53097aa3206113ddd6bfdec))

Other

2.7.0

Signed-off-by: Eden Rose, MSc <42073607+rjdbcmusers.noreply.github.com> ([`a64333b`](https://github.com/OZI-Project/OZI/commit/a64333bde7bfa13d48d19a1d82adb646572fcee6))

* :pushpin: Update publish.yml.j2 harden-runner to 2.7.0

Signed-off-by: Eden Rose, MSc <42073607+rjdbcmusers.noreply.github.com> ([`afe0a3d`](https://github.com/OZI-Project/OZI/commit/afe0a3d8c256df0af1c6a3c26c294ec1f5a8b1fa))

* :pushpin: Update checkpoint.yml.j2 harden-runner action.

Signed-off-by: Eden Rose, MSc <42073607+rjdbcmusers.noreply.github.com> ([`5ea1483`](https://github.com/OZI-Project/OZI/commit/5ea1483bc121869ecf38ffef24bfb0324eeca891))

* :pushpin: Bump step-security/harden-runner from 2.6.1 to 2.7.0 (155)

Bumps
[step-security/harden-runner](https://github.com/step-security/harden-runner)
from 2.6.1 to 2.7.0.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href=&34;https://github.com/step-security/harden-runner/releases">step-security/harden-runner&39;s
releases</a>.</em></p>
<blockquote>
<h2>v2.7.0</h2>
<h2>What&39;s Changed</h2>
<p>Release 2.7.0 by <a
href=&34;https://github.com/varunsh-coder"><code>​varunsh-coder</code></a>
and <a href=&34;https://github.com/h0x0er"><code>​h0x0er</code></a> in <a
href=&34;https://redirect.github.com/step-security/harden-runner/pull/376">step-security/harden-runner376</a>
This release:</p>
<ol>
<li>Updates the node runtime to node20</li>
<li>Adds capability to inspect outbound HTTPS traffic on GitHub-hosted
and self-hosted VM runners</li>
</ol>
<p><strong>Full Changelog</strong>: <a
href=&34;https://github.com/step-security/harden-runner/compare/v2...v2.7.0">https://github.com/step-security/harden-runner/compare/v2...v2.7.0</a></p>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href=&34;https://github.com/step-security/harden-runner/commit/63c24ba6bd7ba022e95695ff85de572c04a18142"><code>63c24ba</code></a>
Merge pull request <a
href=&34;https://redirect.github.com/step-security/harden-runner/issues/376">376</a>
from step-security/rc-7</li>
<li><a
href=&34;https://github.com/step-security/harden-runner/commit/95691d3d1cfc1f403f673ccbe70465d7c4254108"><code>95691d3</code></a>
Update dist</li>
<li><a
href=&34;https://github.com/step-security/harden-runner/commit/6339621ce7eb126e03da0cdd1e373bf4a86aa351"><code>6339621</code></a>
Update to node20</li>
<li><a
href=&34;https://github.com/step-security/harden-runner/commit/4a63cdab7412f310777ba8aba65aafca4c1dd47f"><code>4a63cda</code></a>
Add tls-inspection capability (<a
href=&34;https://redirect.github.com/step-security/harden-runner/issues/368">368</a>)</li>
<li><a
href=&34;https://github.com/step-security/harden-runner/commit/dece11172ed6b762b5421b294513d628edad7f7d"><code>dece111</code></a>
Merge pull request <a
href=&34;https://redirect.github.com/step-security/harden-runner/issues/372">372</a>
from step-security/readme-update</li>
<li><a
href=&34;https://github.com/step-security/harden-runner/commit/1952f970702453e198ed55b40944bf4ffc0ad992"><code>1952f97</code></a>
Updates</li>
<li><a
href=&34;https://github.com/step-security/harden-runner/commit/32f00ffb1b198fae962ae378ca876e01f367043f"><code>32f00ff</code></a>
Update README.md</li>
<li><a
href=&34;https://github.com/step-security/harden-runner/commit/ea8b747819ff6d82907eb4018229f1a75c174697"><code>ea8b747</code></a>
Publish test results (<a
href=&34;https://redirect.github.com/step-security/harden-runner/issues/363">363</a>)</li>
<li><a
href=&34;https://github.com/step-security/harden-runner/commit/c0db65e1f64025718795419be8dbbf8c4050160f"><code>c0db65e</code></a>
Merge pull request <a
href=&34;https://redirect.github.com/step-security/harden-runner/issues/359">359</a>
from step-security/dependabot/github_actions/actions/...</li>
<li><a
href=&34;https://github.com/step-security/harden-runner/commit/4151c053ff9c3daff63c12b5175c94870ec73b53"><code>4151c05</code></a>
Merge pull request <a
href=&34;https://redirect.github.com/step-security/harden-runner/issues/361">361</a>
from step-security/dependabot/github_actions/step-sec...</li>
<li>Additional commits viewable in <a
href=&34;https://github.com/step-security/harden-runner/compare/eb238b55efaa70779f274895e782ed17c84f2895...63c24ba6bd7ba022e95695ff85de572c04a18142">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=step-security/harden-runner&package-manager=github_actions&previous-version=2.6.1&new-version=2.7.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don&39;t
alter it yourself. You can also trigger a rebase manually by commenting
`dependabot rebase`.

[//]: (dependabot-automerge-start)
[//]: (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `dependabot rebase` will rebase this PR
- `dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `dependabot merge` will merge this PR after your CI passes on it
- `dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `dependabot reopen` will reopen this PR if it is closed
- `dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details> ([`751eec7`](https://github.com/OZI-Project/OZI/commit/751eec7ac326b904186bf875760bc8af7a98c4f0))

* :pushpin: Bump step-security/harden-runner from 2.6.1 to 2.7.0

Bumps [step-security/harden-runner](https://github.com/step-security/harden-runner) from 2.6.1 to 2.7.0.
- [Release notes](https://github.com/step-security/harden-runner/releases)
- [Commits](https://github.com/step-security/harden-runner/compare/eb238b55efaa70779f274895e782ed17c84f2895...63c24ba6bd7ba022e95695ff85de572c04a18142)

---
updated-dependencies:
- dependency-name: step-security/harden-runner
dependency-type: direct:production
update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <supportgithub.com> ([`80d9aa6`](https://github.com/OZI-Project/OZI/commit/80d9aa6a5a4f844aaa143deb22f927492c03d5fe))

Other

* Bump harden runner (158)

This makes our entire toolchain node20 ([`29bc7f9`](https://github.com/OZI-Project/OZI/commit/29bc7f9dea6082ee636c43056c71703f7da6a269))

* :memo: Add logo for PyPI rendered readme. (157) ([`aab9571`](https://github.com/OZI-Project/OZI/commit/aab9571238613f2e3f6b981d3e66284909a4220d))

* :memo: Add logo for PyPI rendered readme.

Signed-off-by: Eden Rose, MSc <42073607+rjdbcmusers.noreply.github.com> ([`145dd51`](https://github.com/OZI-Project/OZI/commit/145dd51d1081d070bf2496f04da6972262bb4718))

1.8.3

:bug:

* :bug: fix unimplemented repr in ``ozi.spec.base.Default``

Signed-off-by: rjdbcm <ozi.projectoutlook.com> ([`e7791d0`](https://github.com/OZI-Project/OZI/commit/e7791d017cf770d47fe847bc8d949d634e81ce95))

1.8.2

:children_crossing:

* :children_crossing: truncated ``ozi.spec`` repr. ([`a5a3bd6`](https://github.com/OZI-Project/OZI/commit/a5a3bd605c33aad9c0431ff1ac983f8e32357634))

1.8.1

:arrow_up:

* :arrow_up::pushpin: blastpipe~=2024.8

Signed-off-by: Eden Ross Duff, MSc <ozi.projectoutlook.com> ([`d356293`](https://github.com/OZI-Project/OZI/commit/d3562932378ce2c11ef72e9e01e414dfab0f6db3))

Other

* Update README.rst

Signed-off-by: Eden Ross Duff, MSc <ozi.projectoutlook.com> ([`a1fd7f8`](https://github.com/OZI-Project/OZI/commit/a1fd7f828180302789e242564c5b34bc7df7244b))

Page 1 of 64

Links

Releases

Has known vulnerabilities

© 2024 Safety CLI Cybersecurity Inc. All Rights Reserved.