Commit Graph
198 Commits
Author SHA1 Message Date
CamrynCarter e375893381 maintain provenance of original artifact reference 2026-08-13 17:07:02 -07:00
Zack BradyandGitHub 6d8a7cc9a1 fixed command precedents for hauler store sync (#734) 2026-08-13 09:45:16 -04:00
Zack BradyandGitHub a5d9343374 standardize handling of flags, env vars, and annotations (#723) 2026-08-10 12:51:47 -04:00
Adam MartinandGitHub 760aaa3f74 cleanup pkg/artifacts and fix inconsistencies (#728)
Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>
2026-08-10 12:49:25 -04:00
Zack BradyandGitHub 351544b2c0 fixed audit logging with saves and loads (#727) 2026-08-10 12:30:42 -04:00
Adam ToyandGitHub 0a3d27b241 added support private and insecure registries (#714) 2026-08-10 11:49:08 -04:00
Adam MartinandGitHub 612473e08a feat: async pulls (#711)
Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>
2026-08-05 16:34:41 -04:00
Zack BradyandGitHub 10a1af089c fixed bugs with chunking and added support for remote chunks (#702) 2026-08-05 16:08:26 -04:00
Adam MartinandGitHub b178b3fa81 feat: add blob integrity check to info command (#699)
Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>
2026-08-05 10:13:12 -04:00
Adam MartinandGitHub 2e280f2717 address helm chart verification, auth, and tls options (#601)
Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>
2026-08-02 23:41:23 -04:00
8dc864ca77 feat: extend charts resource by platform (#657)
Signed-off-by: Eric Klatzer <eric@klatzer.at>
Co-authored-by: Zack Brady <zackbrady123@gmail.com>
2026-07-30 14:59:11 -04:00
Adam MartinandGitHub 6f5d767cd8 registry auth fallback bugfix (#672)
Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>
2026-07-21 12:51:58 -04:00
c7e5c7a7c5 fix: plain-http enforces use of http on bearer token fetch (#677) (#678)
Co-authored-by: Adam Martin <adam.martin@ranchergovernment.com>
2026-07-20 10:39:44 -04:00
Adam MartinandGitHub 2680e57f2e bump containerd to v2 (#663)
Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>
2026-07-16 10:51:39 -04:00
Adam MartinandGitHub fb5e324f3a fix the broken behavior for --insecure on copy (#668)
Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>
2026-07-16 10:19:25 -04:00
Zack BradyandGitHub b9069d57c6 added audit log functionality (#632)
Signed-off-by: Zack Brady <zackbrady123@gmail.com>
2026-07-10 13:52:24 -04:00
d93167185f feat: extend charts resource with helm values (#644)
Signed-off-by: Eric Klatzer <eric@klatzer.at>
Co-authored-by: Zack Brady <zackbrady123@gmail.com>
2026-07-08 13:24:01 -04:00
Adam MartinandGitHub cbf07f07d9 updates for helm v4 (#648)
Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>
2026-07-04 14:11:03 -04:00
Adam MartinandGitHub d912cfa85f digest only regression fix (#643)
Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>
2026-06-26 09:55:51 -04:00
Adam MartinandGitHub ec5082df18 add v2 to module path to correct version (#637)
Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>
2026-06-22 16:40:31 -04:00
Adam ToyandGitHub d043105843 411 special characters fix (#618) 2026-06-03 09:36:48 -04:00
Adam Martin 1e782019c3 bump go to 1.26.0
Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>
2026-05-14 09:13:56 -04:00
Adam MartinandGitHub 40c4fdded4 add ability to add images from local docker daemon (#551)
signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>
2026-04-19 17:51:36 -05:00
Adam MartinandGitHub f059a135da add optional flag for excluding extra artifacts when pulling from a registry (#541)
* add optional flag for excluding extra artifacts when pulling from a registry

Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>

* add optional flag to charts for excluding extra artifacts when pulling from a registry

Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>

---------

Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>
2026-04-07 12:48:05 -04:00
Camryn CarterandGitHub 641b9db8fd chunk the haul (#519)
* chunk the haul
* validate numeric suffix on join
* enforce valid chunk size
* containerd warning
* updated test.go files
2026-03-25 10:59:51 -04:00
Adam MartinandGitHub 3adb9257b7 adjust hauler's kind annotation to not reflect cosign (#535)
Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>
2026-03-18 23:24:47 -04:00
Adam MartinandGitHub 268485f6d6 fix dockerhub default host bug (#534)
Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>
2026-03-18 23:24:05 -04:00
Adam MartinandGitHub bbde34690f improved test coverage (#530)
* improved test coverage

Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>

* adjusted mapper_test for oddball oci files

Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>

---------

Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>
2026-03-10 17:46:07 -04:00
Zack BradyandGitHub cc6123918f removed deprecated code (#528)
* removed deprecated code
* removed all supported for v1alpha1
2026-03-10 12:51:15 -04:00
Adam MartinandGitHub e2a59508af over-"haul": replace oras v1 and cosign fork with native containerd-based implementation (#515)
* remove oras from hauler

Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>

* remove cosign fork and use upstream cosign for verification

Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>

* added support for oci referrers

Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>

* updated README.md projects list

Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>

* updates for copilot PR review

Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>

* bug fix for unsafe type assertions

Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>

* bug fix for http getter and dead code

Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>

* fixes for more clarity and better error handling

Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>

* bug fix for resource leaks and unchecked errors

Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>

* bug fix for rewrite logic for docker.io images due to cosign removal

Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>

* bug fix for sigs and referrers

Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>

* bug fix for index.json missing mediatype

Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>

* bug fix to make sure manifest.json doesnt include anything other than actual container images

Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>

---------

Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>
2026-03-06 11:45:47 -05:00
Zack BradyandGitHub ded947d609 added/fixed helm chart images/dependencies features (#485)
* added/fixed helm chart images/dependencies features
* added helm chart images/dependencies features to sync/manifests
* more fixes for helm chart images/dependencies features
* fixed tests for incorrect referenced images
* fixed sync for helm chart images/dependencies
* added helm chart image annotations and registry/platform features
* updated ordering of experimental
* added more parsing types for helm images/dependencies
* a few more remove artifacts updates

---------

Signed-off-by: Zack Brady <zackbrady123@gmail.com>
2026-01-09 13:39:52 -05:00
ff3cece87f more experimental feature updates (#486)
* updates for experimental features and renamed delete to remove
* added examples back for experimental features
* update stability warning message

Co-authored-by: Camryn Carter <camryn.carter@ranchergovernment.com>
Signed-off-by: Zack Brady <zackbrady123@gmail.com>

* fixed more tests to use ghcr for hauler
* updated test data workflow

---------

Signed-off-by: Zack Brady <zackbrady123@gmail.com>
Co-authored-by: Camryn Carter <camryn.carter@ranchergovernment.com>
2026-01-08 14:57:52 -05:00
3c073688f3 delete artifacts from store (#473)
* WIP delete artifacts
* handle multiple matches
* confirm deletion
* --force flag for delete-artifact
* clean up remaining unreferenced blobs
* more robust handling of manifest structure
* fixed loop to process all layers
* tests pt 1
* fix tests
* test order
* updated tests for deleting chart and file
* tool cleanup tests

---------

Signed-off-by: Zack Brady <zackbrady123@gmail.com>
Co-authored-by: Zack Brady <zackbrady123@gmail.com>
2026-01-06 11:54:06 -05:00
96bab7b81f path rewrites (#475)
* image reference rewrite
* remove need for rewrite-provider
* handle charts
* handle leading slash and missing tags
* tests
* tool cleanup
* removed intermediate store cleanup
* fix?
* test cleanup
* clean up tools folder again
* debug test
* clear tempdir after each filename provided by load

Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>

* update tar command in load integration test

Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>

* clean up debug prints
* clean up debug prints

* fix typo

---------

Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>
Signed-off-by: Zack Brady <zackbrady123@gmail.com>
Co-authored-by: Adam Martin <adam.martin@ranchergovernment.com>
Co-authored-by: Zack Brady <zackbrady123@gmail.com>
2026-01-06 11:48:49 -05:00
f1a632a207 update for cosign v3 verify (#469)
Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>
Co-authored-by: Zack Brady <zackbrady123@gmail.com>
2025-10-24 17:07:49 -04:00
Adam MartinandGitHub 344c008607 update cosign to v3.0.2+hauler.1 (#463)
signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>
2025-10-22 12:48:56 -04:00
369c85bab9 allow loading of docker tarballs (#452)
Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>
Co-authored-by: Adam Martin <adam.martin@ranchergovernment.com>
2025-10-01 11:56:36 -04:00
Zack BradyandGitHub 3e44c53b75 upgraded go and dependencies versions (#444)
* upgraded go version
* upgraded dependencies
2025-07-11 11:49:01 -04:00
Adam Martin ea53002f3a formatting and flag text updates
Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>
2025-04-22 12:43:04 -04:00
Nathaniel ChurchillandGitHub 4d0f779ae6 add keyless signature verification (#434) 2025-04-21 15:27:17 -04:00
3b96a95a94 add --only flag to hauler store copy (for images) (#429)
* bump cosign fork and tidy

Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>

* add --only to hauler store copy

Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>

---------

Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>
Co-authored-by: Zack Brady <zackbrady123@gmail.com>
2025-04-08 09:27:12 -04:00
Adam ToyandGitHub f9a188259f fix tlog verification error/warning output (#428)
* fix tlog verification error/warning output
* extend error msg to avoid ambiguity
2025-04-04 16:51:26 -05:00
Adam MartinandGitHub db065a1088 default public transparency log verification to false to be airgap friendly but allow override (#425)
Signed-off-by: Adam Martin <adam.martin@ranchergovernment.com>
2025-03-27 09:13:23 -04:00
Zack BradyandGitHub 08f566fb28 fixed remote code (#407) 2025-02-05 11:25:11 -05:00
Zack BradyandGitHub 53cf953750 updated load flag and related logs [breaking change] (#403)
* updated load flag and related logs [breaking change]
* fixed load flag typo

---------

Signed-off-by: Zack Brady <zackbrady123@gmail.com>
2025-02-05 09:01:18 -05:00
Zack BradyandGitHub ff144b1180 updated sync flag and related logs [breaking change] (#402)
* updated sync flag and related logs [breaking change]
* fixed typo in sync flag name
* and the last typo fix...
2025-02-05 08:54:54 -05:00
Zack BradyandGitHub 938914ba5c upgraded api update to v1/updated dependencies (#400)
* initial api update to v1
* updated dependencies
* updated manifests
* last bit of updates
* fixed manifest typo
* added deprecation warning
2025-02-04 21:36:20 -05:00
Zack BradyandGitHub 603249dea9 fixed consts for oci declarations (#398) 2025-02-03 08:14:44 -05:00
Adam MartinandGitHub 882713b725 replace mholt/archiver with mholt/archives (#384) 2025-01-10 19:15:00 -05:00
Adam MartinandGitHub a20d7bf950 forked cosign bump to 2.4.1 and use as a library vs embedded binary (#383)
* only ignore project-root/store not all store paths
* remove embedded cosign binary in favor of fork library
2025-01-10 17:14:44 -05:00