Skip to content

chore(deps): update pre-commit hook mongodb/kingfisher to v1.97.0#525

Merged
renovate[bot] merged 1 commit intomainfrom
renovate/mongodb-kingfisher-1.x
Apr 25, 2026
Merged

chore(deps): update pre-commit hook mongodb/kingfisher to v1.97.0#525
renovate[bot] merged 1 commit intomainfrom
renovate/mongodb-kingfisher-1.x

Conversation

@renovate
Copy link
Copy Markdown
Contributor

@renovate renovate Bot commented Apr 25, 2026

This PR contains the following updates:

Package Type Update Change
mongodb/kingfisher repository minor v1.96.0v1.97.0

Note: The pre-commit manager in Renovate is not supported by the pre-commit maintainers or community. Please do not report any problems there, instead create a Discussion in the Renovate repository if you have any questions.


Release Notes

mongodb/kingfisher (mongodb/kingfisher)

v1.97.0

Compare Source

  • Report viewer cross-tool triage: when a Kingfisher report is loaded alongside a Gitleaks or TruffleHog report, matching imported findings are enriched with Kingfisher's validation verdict, validation response, validate command, and revoke command. Matching is keyed on commit + file + line with a file + line fallback, and enriched rows show an "Enriched by Kingfisher" callout in the detail panel plus an "Enriched" chip in the findings table. Added a Source column to the findings table; a new Duplicates Removed by Tool dashboard panel showing per-tool cards for Kingfisher / TruffleHog / Gitleaks; and an upload-time Deduplicate findings toggle (on by default) so users can inspect the raw rows before fingerprint dedup when needed.
  • Fixed the HTML report viewer dark mode so charts redraw correctly on theme changes and follow the system color scheme until manually overridden.
  • Fixed #​344: baseline fingerprints no longer have to be hexadecimal. The fingerprint value emitted by scan output (JSON, JSONL, pretty, SARIF) can now be copied directly into a baseline file and will match on the next scan. --manage-baseline now writes fingerprints in decimal to match scan output, and legacy 16-char hex (and 0x-prefixed hex) entries continue to be accepted, so existing baseline files keep working unchanged.
  • Expanded the bundled ruleset to 942 rules (820 standalone detectors + 122 dependent rules), with 484 standalone detectors now including live HTTP / service-specific validation.
  • Documentation: expanded coverage of the Report Viewer & Triager across README.md, docs/USAGE.md, and the docs site (docs-site/docs/features/report-viewer.md, docs-site/docs/usage/basic-scanning.md). The same viewer is available locally via kingfisher view <report.json> and as a hosted static upload-based page at https://mongodb.github.io/kingfisher/viewer/. Both forms import Kingfisher, Gitleaks, and TruffleHog JSON/JSONL for cross-tool triage with fingerprint-based deduplication and blast-radius rendering.

Configuration

📅 Schedule: (UTC)

  • Branch creation
    • At any time (no schedule defined)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Enabled.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate renovate Bot added the dependencies Third-party library dependencies. label Apr 25, 2026
@renovate renovate Bot enabled auto-merge (squash) April 25, 2026 05:32
@renovate renovate Bot added the dependencies Third-party library dependencies. label Apr 25, 2026
@renovate renovate Bot merged commit 6ca111d into main Apr 25, 2026
13 checks passed
@renovate renovate Bot deleted the renovate/mongodb-kingfisher-1.x branch April 25, 2026 05:41
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Third-party library dependencies.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants