This release includes an important fix for server side hooks to make the global pre-receive and post-receive hooks work as expected.
Changelog
Bug fixes
- f23cdc41db922a8d236e812fb2ffd422f484d858: fix: update go.sum (@aymanbagabas)
- 0956752: log invalid hook input instead of returning error to the client (@aymanbagabas)
- 923844b: pre and post hooks now receive the full input line (@aymanbagabas)
Verifying the artifacts
First, download the [`checksums.txt` file](https://github.com/charmbracelet/soft-serve/releases/download/0.8.4/checksums.txt), for example, with `wget`: :::bash wget 'https://github.com/charmbracelet/soft-serve/releases/download/v0.8.4/checksums.txt' Then, verify it using [`cosign`](https://github.com/sigstore/cosign): :::bash cosign verify-blob \ --certificate-identity 'https://github.com/charmbracelet/meta/.github/workflows/goreleaser.yml@refs/heads/main' \ --certificate-oidc-issuer 'https://token.actions.githubusercontent.com' \ --cert 'https://github.com/charmbracelet/soft-serve/releases/download/v0.8.4/checksums.txt.pem' \ --signature 'https://github.com/charmbracelet/soft-serve/releases/download/v0.8.4/checksums.txt.sig' \ ./checksums.txt If the output is `Verified OK`, you can safely use it to verify the checksums of other artifacts you downloaded from the release using `sha256sum`: :::bash sha256sum --ignore-missing -c checksums.txt Done! You artifacts are now verified!Thoughts? Questions? We love hearing from you. Feel free to reach out on Twitter, The Fediverse, or on Discord.