Releases: Hack23/cia-compliance-manager
Release list
CIA Compliance Manager v1.1.117
What's Changed
🏗️ Infrastructure & Performance
- build(deps-dev): bump knip from 6.27.0 to 6.29.0 @dependabot[bot] (#1356)
- build(deps-dev): bump postcss from 8.5.21 to 8.5.22 in the tailwindcss group across 1 directory @dependabot[bot] (#1355)
- build(deps-dev): bump @vitejs/plugin-react from 6.0.3 to 6.0.4 in the vite group @dependabot[bot] (#1354)
- build(deps): bump the github-actions group with 4 updates @dependabot[bot] (#1357)
- build(deps-dev): bump cypress from 15.18.1 to 15.19.0 in the cypress group @dependabot[bot] (#1351)
- build(deps-dev): bump the react group with 2 updates @dependabot[bot] (#1352)
- build(deps): bump the github-actions group with 4 updates @dependabot[bot] (#1353)
- chore(deps): bump typescript aliases, postcss, and pin js-yaml override @copilot-swe-agent[bot] (#1350)
- build(deps): bump actions/labeler from 6.2.0 to 7.0.0 @dependabot[bot] (#1349)
🔒 Security & Compliance
- build(deps): bump the github-actions group with 4 updates @dependabot[bot] (#1357)
- build(deps): bump the github-actions group with 4 updates @dependabot[bot] (#1353)
📦 Dependencies
- build(deps-dev): bump knip from 6.27.0 to 6.29.0 @dependabot[bot] (#1356)
- build(deps-dev): bump postcss from 8.5.21 to 8.5.22 in the tailwindcss group across 1 directory @dependabot[bot] (#1355)
- build(deps-dev): bump @vitejs/plugin-react from 6.0.3 to 6.0.4 in the vite group @dependabot[bot] (#1354)
- build(deps): bump the github-actions group with 4 updates @dependabot[bot] (#1357)
- build(deps-dev): bump cypress from 15.18.1 to 15.19.0 in the cypress group @dependabot[bot] (#1351)
- build(deps-dev): bump the react group with 2 updates @dependabot[bot] (#1352)
- build(deps): bump the github-actions group with 4 updates @dependabot[bot] (#1353)
- chore(deps): bump typescript aliases, postcss, and pin js-yaml override @copilot-swe-agent[bot] (#1350)
- build(deps): bump actions/labeler from 6.2.0 to 7.0.0 @dependabot[bot] (#1349)
📦 npm Package
npm install cia-compliance-managerVerify provenance: npm audit signatures
📊 Release Metrics & Evidence
All test reports, coverage metrics, and API documentation are generated during build and available in the Documentation Hub.
🔐 Security & Supply Chain Protection
This release includes:
- ✅ SLSA Build Provenance Attestations — Cryptographically signed build provenance
- ✅ Software Bill of Materials (SBOM) — Complete dependency inventory in SPDX format
- ✅ npm Provenance — Package published with npm provenance for supply chain integrity
- ✅ CodeQL Security Scanning — Automated vulnerability detection
- ✅ Dependency Scanning — Continuous vulnerability monitoring with Dependabot
Verify attestations:
gh attestation verify cia-compliance-manager-1.1.117.zip -R Hack23/cia-compliance-managerBrowse attestations: View all attestations
Code Quality & Security Analysis
📋 ISMS Compliance & Policies
Compliance Frameworks
CIA Compliance Manager follows Hack23 AB's comprehensive ISMS with defense-in-depth architecture and documented security controls.
Test Documentation
Compliance Evidence
🏛️ Architecture Documentation
| Document | Description |
|---|---|
| 🏛️ Architecture | System architecture overview |
| 🔒 Security Architecture | Security design and controls |
| 🛡️ Threat Model | Threat analysis and mitigations |
| 📊 Data Model | Data structures and relationships |
| 🔄 Flowchart | Application workflows |
| 📈 State Diagram | State machine documentation |
| [🧠 Mindmap](https://github.com/Hack23/cia-compliance-manager/blob/main/docs/a... |
CIA Compliance Manager v1.1.116
What's Changed
🏗️ Infrastructure & Performance
- build(deps-dev): bump typescript-eslint from 8.64.0 to 8.65.0 in the eslint group @dependabot[bot] (#1347)
- build(deps-dev): bump @testing-library/jest-dom from 6.9.1 to 7.0.0 in the testing-libraries group @dependabot[bot] (#1348)
- build(deps-dev): bump axios from 1.16.0 to 1.18.1 @dependabot[bot] (#1346)
- build(deps): bump actions/checkout from 7.0.0 to 7.0.1 in the github-actions group @dependabot[bot] (#1345)
- Add sitemap generation step in release workflow @pethers (#1344)
🔒 Security & Compliance
- build(deps): bump actions/checkout from 7.0.0 to 7.0.1 in the github-actions group @dependabot[bot] (#1345)
📦 Dependencies
- build(deps-dev): bump typescript-eslint from 8.64.0 to 8.65.0 in the eslint group @dependabot[bot] (#1347)
- build(deps-dev): bump @testing-library/jest-dom from 6.9.1 to 7.0.0 in the testing-libraries group @dependabot[bot] (#1348)
- build(deps-dev): bump axios from 1.16.0 to 1.18.1 @dependabot[bot] (#1346)
- build(deps): bump actions/checkout from 7.0.0 to 7.0.1 in the github-actions group @dependabot[bot] (#1345)
- Add sitemap generation step in release workflow @pethers (#1344)
📦 npm Package
npm install cia-compliance-managerVerify provenance: npm audit signatures
📊 Release Metrics & Evidence
All test reports, coverage metrics, and API documentation are generated during build and available in the Documentation Hub.
🔐 Security & Supply Chain Protection
This release includes:
- ✅ SLSA Build Provenance Attestations — Cryptographically signed build provenance
- ✅ Software Bill of Materials (SBOM) — Complete dependency inventory in SPDX format
- ✅ npm Provenance — Package published with npm provenance for supply chain integrity
- ✅ CodeQL Security Scanning — Automated vulnerability detection
- ✅ Dependency Scanning — Continuous vulnerability monitoring with Dependabot
Verify attestations:
gh attestation verify cia-compliance-manager-1.1.116.zip -R Hack23/cia-compliance-managerBrowse attestations: View all attestations
Code Quality & Security Analysis
📋 ISMS Compliance & Policies
Compliance Frameworks
CIA Compliance Manager follows Hack23 AB's comprehensive ISMS with defense-in-depth architecture and documented security controls.
Test Documentation
Compliance Evidence
🏛️ Architecture Documentation
| Document | Description |
|---|---|
| 🏛️ Architecture | System architecture overview |
| 🔒 Security Architecture | Security design and controls |
| 🛡️ Threat Model | Threat analysis and mitigations |
| 📊 Data Model | Data structures and relationships |
| 🔄 Flowchart | Application workflows |
| 📈 State Diagram | State machine documentation |
| 🧠 Mindmap | Conceptual overview |
| 💼 SWOT Analysis | Strategic analysis |
📦 Release Artifacts
| Artifact | Description | Verification |
|---|---|---|
cia-compliance-manager-1.1.116.zip |
Production build | SHA-256 checksum, SLSA attestation |
cia-compliance-manager-1.1.116.spdx.json |
SBOM (SPDX format) | SBOM attestation |
*.intoto.jsonl |
SLSA attestations | gh attestation verify |
| npm package | cia-compliance-manager |
npm provenance |
🚀 Deployment & Links
- Live Application: https://ciacompliancemanager.com
- API Documentation: https://ciacompliancemanager.com/docs/api/
- npm Package: https://www.npmjs.com/package/cia-compliance-manager
- GitHub Repository: https://github.com/Hack23/cia-compliance-manager
Hack23 Ecosystem
| Project | Live Site | API Docs |
|---|---|---|
| CIA Platform | — | — |
| CIA Compliance Manager | ciacompliancemanager.com | [API Docs... |
CIA Compliance Manager v1.1.115
What's Changed
🏗️ Infrastructure & Performance
- build(deps): bump release-drafter/release-drafter from 7.5.1 to 7.6.0 in the github-actions group across 1 directory @dependabot[bot] (#1342)
- build(deps-dev): bump postcss from 8.5.19 to 8.5.20 in the tailwindcss group @dependabot[bot] (#1341)
📦 Dependencies
- build(deps): bump release-drafter/release-drafter from 7.5.1 to 7.6.0 in the github-actions group across 1 directory @dependabot[bot] (#1342)
- build(deps-dev): bump postcss from 8.5.19 to 8.5.20 in the tailwindcss group @dependabot[bot] (#1341)
📦 npm Package
npm install cia-compliance-managerVerify provenance: npm audit signatures
📊 Release Metrics & Evidence
All test reports, coverage metrics, and API documentation are generated during build and available in the Documentation Hub.
🔐 Security & Supply Chain Protection
This release includes:
- ✅ SLSA Build Provenance Attestations — Cryptographically signed build provenance
- ✅ Software Bill of Materials (SBOM) — Complete dependency inventory in SPDX format
- ✅ npm Provenance — Package published with npm provenance for supply chain integrity
- ✅ CodeQL Security Scanning — Automated vulnerability detection
- ✅ Dependency Scanning — Continuous vulnerability monitoring with Dependabot
Verify attestations:
gh attestation verify cia-compliance-manager-1.1.115.zip -R Hack23/cia-compliance-managerBrowse attestations: View all attestations
Code Quality & Security Analysis
📋 ISMS Compliance & Policies
Compliance Frameworks
CIA Compliance Manager follows Hack23 AB's comprehensive ISMS with defense-in-depth architecture and documented security controls.
Test Documentation
Compliance Evidence
🏛️ Architecture Documentation
| Document | Description |
|---|---|
| 🏛️ Architecture | System architecture overview |
| 🔒 Security Architecture | Security design and controls |
| 🛡️ Threat Model | Threat analysis and mitigations |
| 📊 Data Model | Data structures and relationships |
| 🔄 Flowchart | Application workflows |
| 📈 State Diagram | State machine documentation |
| 🧠 Mindmap | Conceptual overview |
| 💼 SWOT Analysis | Strategic analysis |
📦 Release Artifacts
| Artifact | Description | Verification |
|---|---|---|
cia-compliance-manager-1.1.115.zip |
Production build | SHA-256 checksum, SLSA attestation |
cia-compliance-manager-1.1.115.spdx.json |
SBOM (SPDX format) | SBOM attestation |
*.intoto.jsonl |
SLSA attestations | gh attestation verify |
| npm package | cia-compliance-manager |
npm provenance |
🚀 Deployment & Links
- Live Application: https://ciacompliancemanager.com
- API Documentation: https://ciacompliancemanager.com/docs/api/
- npm Package: https://www.npmjs.com/package/cia-compliance-manager
- GitHub Repository: https://github.com/Hack23/cia-compliance-manager
Hack23 Ecosystem
🏗️ Built With
- ⚡ Vite 8.x — Lightning-fast build tool
- ⚛️ React 19.x — Modern UI framework
- 🔷 TypeScript 6.0 — Type-safe development
- 📊 Chart.js 4.x — Interactive data visualization
- 🧪 Vitest 4.x — Fast u...
CIA Compliance Manager v1.1.114
What's Changed
🏗️ Infrastructure & Performance
- build(deps): bump systeminformation from 5.31.6 to 5.31.17 @dependabot[bot] (#1339)
- fix: harden GitHub Actions token permissions @copilot-swe-agent[bot] (#1340)
- Simplify permissions in copilot-setup-steps.yml @pethers (#1338)
📦 Dependencies
- build(deps): bump systeminformation from 5.31.6 to 5.31.17 @dependabot[bot] (#1339)
- fix: harden GitHub Actions token permissions @copilot-swe-agent[bot] (#1340)
- Simplify permissions in copilot-setup-steps.yml @pethers (#1338)
📦 npm Package
npm install cia-compliance-managerVerify provenance: npm audit signatures
📊 Release Metrics & Evidence
All test reports, coverage metrics, and API documentation are generated during build and available in the Documentation Hub.
🔐 Security & Supply Chain Protection
This release includes:
- ✅ SLSA Build Provenance Attestations — Cryptographically signed build provenance
- ✅ Software Bill of Materials (SBOM) — Complete dependency inventory in SPDX format
- ✅ npm Provenance — Package published with npm provenance for supply chain integrity
- ✅ CodeQL Security Scanning — Automated vulnerability detection
- ✅ Dependency Scanning — Continuous vulnerability monitoring with Dependabot
Verify attestations:
gh attestation verify cia-compliance-manager-1.1.114.zip -R Hack23/cia-compliance-managerBrowse attestations: View all attestations
Code Quality & Security Analysis
📋 ISMS Compliance & Policies
Compliance Frameworks
CIA Compliance Manager follows Hack23 AB's comprehensive ISMS with defense-in-depth architecture and documented security controls.
Test Documentation
Compliance Evidence
🏛️ Architecture Documentation
| Document | Description |
|---|---|
| 🏛️ Architecture | System architecture overview |
| 🔒 Security Architecture | Security design and controls |
| 🛡️ Threat Model | Threat analysis and mitigations |
| 📊 Data Model | Data structures and relationships |
| 🔄 Flowchart | Application workflows |
| 📈 State Diagram | State machine documentation |
| 🧠 Mindmap | Conceptual overview |
| 💼 SWOT Analysis | Strategic analysis |
📦 Release Artifacts
| Artifact | Description | Verification |
|---|---|---|
cia-compliance-manager-1.1.114.zip |
Production build | SHA-256 checksum, SLSA attestation |
cia-compliance-manager-1.1.114.spdx.json |
SBOM (SPDX format) | SBOM attestation |
*.intoto.jsonl |
SLSA attestations | gh attestation verify |
| npm package | cia-compliance-manager |
npm provenance |
🚀 Deployment & Links
- Live Application: https://ciacompliancemanager.com
- API Documentation: https://ciacompliancemanager.com/docs/api/
- npm Package: https://www.npmjs.com/package/cia-compliance-manager
- GitHub Repository: https://github.com/Hack23/cia-compliance-manager
Hack23 Ecosystem
🏗️ Built With
- ⚡ Vite 8.x — Lightning-fast build tool
- ⚛️ React 19.x — Modern UI framework
- 🔷 TypeScript 6.0 — Type-safe development
- 📊 Chart.js 4.x — Interactive data visualization
- 🧪 Vitest 4.x — Fast unit testing framew...
CIA Compliance Manager v1.1.113
What's Changed
🏗️ Infrastructure & Performance
- build(deps): bump the github-actions group with 5 updates @dependabot[bot] (#1337)
- build(deps-dev): bump the tailwindcss group across 1 directory with 2 updates @dependabot[bot] (#1330)
- Enhance dependabot.yml with GitHub Actions groups @pethers (#1336)
🔒 Security & Compliance
- build(deps): bump the github-actions group with 5 updates @dependabot[bot] (#1337)
📦 Dependencies
- build(deps): bump the github-actions group with 5 updates @dependabot[bot] (#1337)
- build(deps-dev): bump the tailwindcss group across 1 directory with 2 updates @dependabot[bot] (#1330)
📦 npm Package
npm install cia-compliance-managerVerify provenance: npm audit signatures
📊 Release Metrics & Evidence
All test reports, coverage metrics, and API documentation are generated during build and available in the Documentation Hub.
🔐 Security & Supply Chain Protection
This release includes:
- ✅ SLSA Build Provenance Attestations — Cryptographically signed build provenance
- ✅ Software Bill of Materials (SBOM) — Complete dependency inventory in SPDX format
- ✅ npm Provenance — Package published with npm provenance for supply chain integrity
- ✅ CodeQL Security Scanning — Automated vulnerability detection
- ✅ Dependency Scanning — Continuous vulnerability monitoring with Dependabot
Verify attestations:
gh attestation verify cia-compliance-manager-1.1.113.zip -R Hack23/cia-compliance-managerBrowse attestations: View all attestations
Code Quality & Security Analysis
📋 ISMS Compliance & Policies
Compliance Frameworks
CIA Compliance Manager follows Hack23 AB's comprehensive ISMS with defense-in-depth architecture and documented security controls.
Test Documentation
Compliance Evidence
🏛️ Architecture Documentation
| Document | Description |
|---|---|
| 🏛️ Architecture | System architecture overview |
| 🔒 Security Architecture | Security design and controls |
| 🛡️ Threat Model | Threat analysis and mitigations |
| 📊 Data Model | Data structures and relationships |
| 🔄 Flowchart | Application workflows |
| 📈 State Diagram | State machine documentation |
| 🧠 Mindmap | Conceptual overview |
| 💼 SWOT Analysis | Strategic analysis |
📦 Release Artifacts
| Artifact | Description | Verification |
|---|---|---|
cia-compliance-manager-1.1.113.zip |
Production build | SHA-256 checksum, SLSA attestation |
cia-compliance-manager-1.1.113.spdx.json |
SBOM (SPDX format) | SBOM attestation |
*.intoto.jsonl |
SLSA attestations | gh attestation verify |
| npm package | cia-compliance-manager |
npm provenance |
🚀 Deployment & Links
- Live Application: https://ciacompliancemanager.com
- API Documentation: https://ciacompliancemanager.com/docs/api/
- npm Package: https://www.npmjs.com/package/cia-compliance-manager
- GitHub Repository: https://github.com/Hack23/cia-compliance-manager
Hack23 Ecosystem
🏗️ Built With
- ⚡ Vite 8.x — Lightning-fast build tool
- ⚛️ React 19.x — Modern UI framework
- 🔷 TypeScript 6.0 ...
CIA Compliance Manager v1.1.112
What's Changed
🏗️ Infrastructure & Performance
- fix(release): restore GitHub App tag-triggered release handoff @copilot-swe-agent[bot] (#1329)
- Analyzing and correcting release workflow issues @copilot-swe-agent[bot] (#1328)
📦 Dependencies
- fix(release): restore GitHub App tag-triggered release handoff @copilot-swe-agent[bot] (#1329)
- Analyzing and correcting release workflow issues @copilot-swe-agent[bot] (#1328)
📦 npm Package
npm install cia-compliance-managerVerify provenance: npm audit signatures
📊 Release Metrics & Evidence
All test reports, coverage metrics, and API documentation are generated during build and available in the Documentation Hub.
🔐 Security & Supply Chain Protection
This release includes:
- ✅ SLSA Build Provenance Attestations — Cryptographically signed build provenance
- ✅ Software Bill of Materials (SBOM) — Complete dependency inventory in SPDX format
- ✅ npm Provenance — Package published with npm provenance for supply chain integrity
- ✅ CodeQL Security Scanning — Automated vulnerability detection
- ✅ Dependency Scanning — Continuous vulnerability monitoring with Dependabot
Verify attestations:
gh attestation verify cia-compliance-manager-1.1.112.zip -R Hack23/cia-compliance-managerBrowse attestations: View all attestations
Code Quality & Security Analysis
📋 ISMS Compliance & Policies
Compliance Frameworks
CIA Compliance Manager follows Hack23 AB's comprehensive ISMS with defense-in-depth architecture and documented security controls.
Test Documentation
Compliance Evidence
🏛️ Architecture Documentation
| Document | Description |
|---|---|
| 🏛️ Architecture | System architecture overview |
| 🔒 Security Architecture | Security design and controls |
| 🛡️ Threat Model | Threat analysis and mitigations |
| 📊 Data Model | Data structures and relationships |
| 🔄 Flowchart | Application workflows |
| 📈 State Diagram | State machine documentation |
| 🧠 Mindmap | Conceptual overview |
| 💼 SWOT Analysis | Strategic analysis |
📦 Release Artifacts
| Artifact | Description | Verification |
|---|---|---|
cia-compliance-manager-1.1.112.zip |
Production build | SHA-256 checksum, SLSA attestation |
cia-compliance-manager-1.1.112.spdx.json |
SBOM (SPDX format) | SBOM attestation |
*.intoto.jsonl |
SLSA attestations | gh attestation verify |
| npm package | cia-compliance-manager |
npm provenance |
🚀 Deployment & Links
- Live Application: https://ciacompliancemanager.com
- API Documentation: https://ciacompliancemanager.com/docs/api/
- npm Package: https://www.npmjs.com/package/cia-compliance-manager
- GitHub Repository: https://github.com/Hack23/cia-compliance-manager
Hack23 Ecosystem
🏗️ Built With
- ⚡ Vite 8.x — Lightning-fast build tool
- ⚛️ React 19.x — Modern UI framework
- 🔷 TypeScript 6.0 — Type-safe development
- 📊 Chart.js 4.x — Interactive data visualization
- 🧪 Vitest 4.x — Fast unit testing framework
- 🌐 Cypress 15.x — End-to-end testing
- 📦 Node.js >= 25.0.0 — Runtime environm...
CIA Compliance Manager v1.1.111
What's Changed
🏗️ Infrastructure & Performance
- fix(release): prevent duplicate release pipelines @copilot-swe-agent[bot] (#1327)
📦 Dependencies
- fix(release): prevent duplicate release pipelines @copilot-swe-agent[bot] (#1327)
📦 npm Package
npm install cia-compliance-managerVerify provenance: npm audit signatures
📊 Release Metrics & Evidence
All test reports, coverage metrics, and API documentation are generated during build and available in the Documentation Hub.
🔐 Security & Supply Chain Protection
This release includes:
- ✅ SLSA Build Provenance Attestations — Cryptographically signed build provenance
- ✅ Software Bill of Materials (SBOM) — Complete dependency inventory in SPDX format
- ✅ npm Provenance — Package published with npm provenance for supply chain integrity
- ✅ CodeQL Security Scanning — Automated vulnerability detection
- ✅ Dependency Scanning — Continuous vulnerability monitoring with Dependabot
Verify attestations:
gh attestation verify cia-compliance-manager-1.1.111.zip -R Hack23/cia-compliance-managerBrowse attestations: View all attestations
Code Quality & Security Analysis
📋 ISMS Compliance & Policies
Compliance Frameworks
CIA Compliance Manager follows Hack23 AB's comprehensive ISMS with defense-in-depth architecture and documented security controls.
Test Documentation
Compliance Evidence
🏛️ Architecture Documentation
| Document | Description |
|---|---|
| 🏛️ Architecture | System architecture overview |
| 🔒 Security Architecture | Security design and controls |
| 🛡️ Threat Model | Threat analysis and mitigations |
| 📊 Data Model | Data structures and relationships |
| 🔄 Flowchart | Application workflows |
| 📈 State Diagram | State machine documentation |
| 🧠 Mindmap | Conceptual overview |
| 💼 SWOT Analysis | Strategic analysis |
📦 Release Artifacts
| Artifact | Description | Verification |
|---|---|---|
cia-compliance-manager-1.1.111.zip |
Production build | SHA-256 checksum, SLSA attestation |
cia-compliance-manager-1.1.111.spdx.json |
SBOM (SPDX format) | SBOM attestation |
*.intoto.jsonl |
SLSA attestations | gh attestation verify |
| npm package | cia-compliance-manager |
npm provenance |
🚀 Deployment & Links
- Live Application: https://ciacompliancemanager.com
- API Documentation: https://ciacompliancemanager.com/docs/api/
- npm Package: https://www.npmjs.com/package/cia-compliance-manager
- GitHub Repository: https://github.com/Hack23/cia-compliance-manager
Hack23 Ecosystem
🏗️ Built With
- ⚡ Vite 8.x — Lightning-fast build tool
- ⚛️ React 19.x — Modern UI framework
- 🔷 TypeScript 6.0 — Type-safe development
- 📊 Chart.js 4.x — Interactive data visualization
- 🧪 Vitest 4.x — Fast unit testing framework
- 🌐 Cypress 15.x — End-to-end testing
- 📦 Node.js >= 25.0.0 — Runtime environment
- 🎨 Tailwind CSS 4.x — Utility-first CSS framework
🤝 Contributors
Thanks to @Copilot and copilot-swe-agent[bot] for their contributions to this release!
📋 Release Information
Full Changelog: https://github...
CIA Compliance Manager v1.1.110
What's Changed
🏗️ Infrastructure & Performance
- build(deps-dev): bump vite from 8.1.4 to 8.1.5 in the vite group @dependabot[bot] (#1326)
- build(deps-dev): bump knip from 6.26.0 to 6.27.0 @dependabot[bot] (#1325)
📦 Dependencies
- build(deps-dev): bump vite from 8.1.4 to 8.1.5 in the vite group @dependabot[bot] (#1326)
- build(deps-dev): bump knip from 6.26.0 to 6.27.0 @dependabot[bot] (#1325)
📦 npm Package
npm install cia-compliance-managerVerify provenance: npm audit signatures
📊 Release Metrics & Evidence
All test reports, coverage metrics, and API documentation are generated during build and available in the Documentation Hub.
🔐 Security & Supply Chain Protection
This release includes:
- ✅ SLSA Build Provenance Attestations — Cryptographically signed build provenance
- ✅ Software Bill of Materials (SBOM) — Complete dependency inventory in SPDX format
- ✅ npm Provenance — Package published with npm provenance for supply chain integrity
- ✅ CodeQL Security Scanning — Automated vulnerability detection
- ✅ Dependency Scanning — Continuous vulnerability monitoring with Dependabot
Verify attestations:
gh attestation verify cia-compliance-manager-1.1.110.zip -R Hack23/cia-compliance-managerBrowse attestations: View all attestations
Code Quality & Security Analysis
📋 ISMS Compliance & Policies
Compliance Frameworks
CIA Compliance Manager follows Hack23 AB's comprehensive ISMS with defense-in-depth architecture and documented security controls.
Test Documentation
Compliance Evidence
🏛️ Architecture Documentation
| Document | Description |
|---|---|
| 🏛️ Architecture | System architecture overview |
| 🔒 Security Architecture | Security design and controls |
| 🛡️ Threat Model | Threat analysis and mitigations |
| 📊 Data Model | Data structures and relationships |
| 🔄 Flowchart | Application workflows |
| 📈 State Diagram | State machine documentation |
| 🧠 Mindmap | Conceptual overview |
| 💼 SWOT Analysis | Strategic analysis |
📦 Release Artifacts
| Artifact | Description | Verification |
|---|---|---|
cia-compliance-manager-1.1.110.zip |
Production build | SHA-256 checksum, SLSA attestation |
cia-compliance-manager-1.1.110.spdx.json |
SBOM (SPDX format) | SBOM attestation |
*.intoto.jsonl |
SLSA attestations | gh attestation verify |
| npm package | cia-compliance-manager |
npm provenance |
🚀 Deployment & Links
- Live Application: https://ciacompliancemanager.com
- API Documentation: https://ciacompliancemanager.com/docs/api/
- npm Package: https://www.npmjs.com/package/cia-compliance-manager
- GitHub Repository: https://github.com/Hack23/cia-compliance-manager
Hack23 Ecosystem
🏗️ Built With
- ⚡ Vite 8.x — Lightning-fast build tool
- ⚛️ React 19.x — Modern UI framework
- 🔷 TypeScript 6.0 — Type-safe development
- 📊 Chart.js 4.x — Interactive data visualization
- 🧪 Vitest 4.x — Fast unit testing framework
- 🌐 Cypress 15.x — End-to-end testing
- 📦 Node.js >= 25.0.0 — Runtime environment
- 🎨 Tailwind CSS 4.x — Utility-first CSS fra...
CIA Compliance Manager v1.1.109
What's Changed
🏗️ Infrastructure & Performance
📦 Dependencies
📦 npm Package
npm install cia-compliance-managerVerify provenance: npm audit signatures
📊 Release Metrics & Evidence
All test reports, coverage metrics, and API documentation are generated during build and available in the Documentation Hub.
🔐 Security & Supply Chain Protection
This release includes:
- ✅ SLSA Build Provenance Attestations — Cryptographically signed build provenance
- ✅ Software Bill of Materials (SBOM) — Complete dependency inventory in SPDX format
- ✅ npm Provenance — Package published with npm provenance for supply chain integrity
- ✅ CodeQL Security Scanning — Automated vulnerability detection
- ✅ Dependency Scanning — Continuous vulnerability monitoring with Dependabot
Verify attestations:
gh attestation verify cia-compliance-manager-1.1.109.zip -R Hack23/cia-compliance-managerBrowse attestations: View all attestations
Code Quality & Security Analysis
📋 ISMS Compliance & Policies
Compliance Frameworks
CIA Compliance Manager follows Hack23 AB's comprehensive ISMS with defense-in-depth architecture and documented security controls.
Test Documentation
Compliance Evidence
🏛️ Architecture Documentation
| Document | Description |
|---|---|
| 🏛️ Architecture | System architecture overview |
| 🔒 Security Architecture | Security design and controls |
| 🛡️ Threat Model | Threat analysis and mitigations |
| 📊 Data Model | Data structures and relationships |
| 🔄 Flowchart | Application workflows |
| 📈 State Diagram | State machine documentation |
| 🧠 Mindmap | Conceptual overview |
| 💼 SWOT Analysis | Strategic analysis |
📦 Release Artifacts
| Artifact | Description | Verification |
|---|---|---|
cia-compliance-manager-1.1.109.zip |
Production build | SHA-256 checksum, SLSA attestation |
cia-compliance-manager-1.1.109.spdx.json |
SBOM (SPDX format) | SBOM attestation |
*.intoto.jsonl |
SLSA attestations | gh attestation verify |
| npm package | cia-compliance-manager |
npm provenance |
🚀 Deployment & Links
- Live Application: https://ciacompliancemanager.com
- API Documentation: https://ciacompliancemanager.com/docs/api/
- npm Package: https://www.npmjs.com/package/cia-compliance-manager
- GitHub Repository: https://github.com/Hack23/cia-compliance-manager
Hack23 Ecosystem
🏗️ Built With
- ⚡ Vite 8.x — Lightning-fast build tool
- ⚛️ React 19.x — Modern UI framework
- 🔷 TypeScript 6.0 — Type-safe development
- 📊 Chart.js 4.x — Interactive data visualization
- 🧪 Vitest 4.x — Fast unit testing framework
- 🌐 Cypress 15.x — End-to-end testing
- 📦 Node.js >= 25.0.0 — Runtime environment
- 🎨 Tailwind CSS 4.x — Utility-first CSS framework
🤝 Contributors
Thanks to @pethers for their contributions to this release!
📋 Release Information
Full Changelog: v1.1.108...1.1.109
Build Attestations: View SLSA Attestations
Download: [Release Assets](https://github.com/Hack23/cia-compliance-manag...
CIA Compliance Manager v1.1.108
What's Changed
🏗️ Infrastructure & Performance
- [StepSecurity] ci: Harden GitHub Actions @step-security-bot (#1323)
- build(deps): bump actions/checkout from 5 to 7 @dependabot[bot] (#1321)
- build(deps): bump actions/create-github-app-token from 2 to 3 @dependabot[bot] (#1322)
- use github app for releases. @pethers (#1320)
📦 Dependencies
- [StepSecurity] ci: Harden GitHub Actions @step-security-bot (#1323)
- build(deps): bump actions/checkout from 5 to 7 @dependabot[bot] (#1321)
- build(deps): bump actions/create-github-app-token from 2 to 3 @dependabot[bot] (#1322)
- use github app for releases. @pethers (#1320)
📦 npm Package
npm install cia-compliance-managerVerify provenance: npm audit signatures
📊 Release Metrics & Evidence
All test reports, coverage metrics, and API documentation are generated during build and available in the Documentation Hub.
🔐 Security & Supply Chain Protection
This release includes:
- ✅ SLSA Build Provenance Attestations — Cryptographically signed build provenance
- ✅ Software Bill of Materials (SBOM) — Complete dependency inventory in SPDX format
- ✅ npm Provenance — Package published with npm provenance for supply chain integrity
- ✅ CodeQL Security Scanning — Automated vulnerability detection
- ✅ Dependency Scanning — Continuous vulnerability monitoring with Dependabot
Verify attestations:
gh attestation verify cia-compliance-manager-1.1.108.zip -R Hack23/cia-compliance-managerBrowse attestations: View all attestations
Code Quality & Security Analysis
📋 ISMS Compliance & Policies
Compliance Frameworks
CIA Compliance Manager follows Hack23 AB's comprehensive ISMS with defense-in-depth architecture and documented security controls.
Test Documentation
Compliance Evidence
🏛️ Architecture Documentation
| Document | Description |
|---|---|
| 🏛️ Architecture | System architecture overview |
| 🔒 Security Architecture | Security design and controls |
| 🛡️ Threat Model | Threat analysis and mitigations |
| 📊 Data Model | Data structures and relationships |
| 🔄 Flowchart | Application workflows |
| 📈 State Diagram | State machine documentation |
| 🧠 Mindmap | Conceptual overview |
| 💼 SWOT Analysis | Strategic analysis |
📦 Release Artifacts
| Artifact | Description | Verification |
|---|---|---|
cia-compliance-manager-1.1.108.zip |
Production build | SHA-256 checksum, SLSA attestation |
cia-compliance-manager-1.1.108.spdx.json |
SBOM (SPDX format) | SBOM attestation |
*.intoto.jsonl |
SLSA attestations | gh attestation verify |
| npm package | cia-compliance-manager |
npm provenance |
🚀 Deployment & Links
- Live Application: https://ciacompliancemanager.com
- API Documentation: https://ciacompliancemanager.com/docs/api/
- npm Package: https://www.npmjs.com/package/cia-compliance-manager
- GitHub Repository: https://github.com/Hack23/cia-compliance-manager
Hack23 Ecosystem
🏗️ Built With
- ⚡ Vite 8.x — Lightning-fast build tool
- ⚛️ React 19.x — Modern UI framework
- 🔷 TypeScript 6.0 — Type-safe development
- 📊 **Chart.js ...