chore(release): prepare v0.3.0 #45
Loading…
Add table
Add a link
Reference in a new issue
No description provided.
Delete branch "release-v0.3.0"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Cuts
v0.3.0, carryingdelete_occurrenceand thexff_scopesfield.The release record claims a property it does not have
AGENTS.md:121andCHANGELOG.mdboth describe this repo's tags as signed. They are not:All three are annotated and unsigned. Anyone checking the release record's provenance, which is the reason to write "signed" in the first place, would find nothing to check.
Signing only
v0.3.0would leave the claim false for the other three, so both files now say which tags are signed and which are not. The old three are not re-cut: forcing a ref an image already points at makes it briefly ambiguous which image it names, and that is the worse trade for a record nobody has relied on yet.What ships
xff_scopesis one token perX-Forwarded-Forentry, in order, never an address. It settlestrusted_proxy_hopshere and three constants elsewhere, and theCHANGELOGentry carries the caveat thatpublicmeans "not one of the private scopes" rather than "routable", so CGNAT and the documentation ranges land in it as recoverable false positives.oddie-apps/infrastructure#65comment 19362 has the same caveat, written before the data arrives rather than alongside it.