unarr/.github
Deivid Soto 283eb54a74 fix(security): bump golang.org/x deps and add container CVE scan gate
- Bump golang.org/x/{net,crypto,sys,text,term} to latest patches to
  clear GHSA module advisories flagged by Docker Scout.
- Add Docker Scout CVE gate to the release workflow (fails only on
  FIXABLE critical/high; unfixed upstream ffmpeg codec CVEs are accepted
  and documented in SECURITY.md).
- Add weekly + manual docker-rebuild workflow so newly fixed base/
  ffmpeg/Go patches land on :latest between tagged releases.
- Document container image vuln-scanning policy and hardening in
  SECURITY.md.
2026-05-21 16:53:23 +02:00
..
ISSUE_TEMPLATE chore: rename module from torrentclaw-cli to unarr 2026-03-30 13:06:07 +02:00
workflows fix(security): bump golang.org/x deps and add container CVE scan gate 2026-05-21 16:53:23 +02:00
CODEOWNERS feat: initial commit — unarr CLI 2026-03-28 11:29:42 +01:00
dependabot.yml feat: initial commit — unarr CLI 2026-03-28 11:29:42 +01:00
PULL_REQUEST_TEMPLATE.md feat: initial commit — unarr CLI 2026-03-28 11:29:42 +01:00