Releases: Hack23/euparliamentmonitor
Release list
EU Parliament Monitor v1.0.39
What's Changed
🏗️ Infrastructure & Performance
- build(deps): bump release-drafter/release-drafter from 7.5.1 to 7.6.0 in the github-actions group @dependabot[bot] (#2559)
- build(deps): bump european-parliament-mcp-server from 1.4.0 to 1.4.1 in the production-dependencies group @dependabot[bot] (#2557)
- build(deps-dev): bump happy-dom from 20.10.6 to 20.11.0 in the development-dependencies group @dependabot[bot] (#2555)
📦 Dependencies
- build(deps): bump release-drafter/release-drafter from 7.5.1 to 7.6.0 in the github-actions group @dependabot[bot] (#2559)
- build(deps): bump european-parliament-mcp-server from 1.4.0 to 1.4.1 in the production-dependencies group @dependabot[bot] (#2557)
- build(deps-dev): bump happy-dom from 20.10.6 to 20.11.0 in the development-dependencies group @dependabot[bot] (#2555)
⚙️ Component Updates
- build(deps): bump release-drafter/release-drafter from 7.5.1 to 7.6.0 in the github-actions group @dependabot[bot] (#2559)
- build(deps): bump european-parliament-mcp-server from 1.4.0 to 1.4.1 in the production-dependencies group @dependabot[bot] (#2557)
📊 Release Metrics & Evidence
All test reports, coverage metrics, and API documentation are generated during build and available in the Documentation Hub.
🏛️ Architecture & Documentation
| Document | Description |
|---|---|
| Architecture | C4 architecture models and system overview |
| Security Architecture | Security design and controls |
| Threat Model | STRIDE threat analysis |
| Data Model | Data structures and relationships |
| Flowchart | Process flows with security controls |
| State Diagram | State transitions and lifecycles |
| Mindmap | Conceptual relationships |
| SWOT Analysis | Strategic analysis |
| CRA Assessment | Cyber Resilience Act assessment |
| API Documentation | TypeDoc-generated API reference |
🔐 Security & Supply Chain Protection
This release includes:
- ✅ SLSA Build Provenance Attestations — Cryptographically signed build provenance
- ✅ Software Bill of Materials (SBOM) — Complete dependency inventory in SPDX format
- ✅ npm Provenance — Verified package publishing with attestation
- ✅ CodeQL Security Scanning — Automated vulnerability detection
- ✅ Dependency Scanning — Continuous vulnerability monitoring with Dependabot
Verify attestations:
gh attestation verify euparliamentmonitor-1.0.39.zip -R Hack23/euparliamentmonitor
npm audit signaturesBrowse attestations: View all attestations
📋 ISMS Compliance & Policies
Compliance Frameworks
EU Parliament Monitor follows Hack23 AB's comprehensive ISMS with defense-in-depth architecture and documented security controls.
📦 Release Artifacts
| Artifact | Description | Verification |
|---|---|---|
euparliamentmonitor-1.0.39.zip |
Full application package | SHA-256 checksum, SLSA attestation |
euparliamentmonitor-1.0.39.spdx.json |
SBOM (SPDX format) | SBOM attestation |
*.intoto.jsonl |
SLSA attestations | gh attestation verify |
| npm package | euparliamentmonitor |
npm audit signatures |
All artifacts are signed and attested using GitHub's SLSA Level 3 build provenance.
🚀 Deployment
- Primary: https://euparliamentmonitor.com
- Documentation: https://euparliamentmonitor.com/docs/
- API Docs: https://euparliamentmonitor.com/docs/api/
- npm: https://www.npmjs.com/package/euparliamentmonitor
🏗️ Built With
- Node.js: 25.x
- TypeScript: 6.0.x
- Chart.js: 4.5.x
- D3.js: 7.9.x
- Vitest: 4.x
- Playwright: 1.x
- European Parliament MCP Server: 1.x
👥 Contributors
Full Changelog: v1.0.38...1.0.39
📦 Release Artifacts
euparliamentmonitor-v1.0.39.zip- Full application packageeuparliamentmonitor-v1.0.39.spdx.json- SBOM (Software Bill of Materials)*.intoto.jsonl- SLSA Build Provenance Attestations
📦 npm Package
npm install euparliamentmonitor@1.0.39Published with npm provenance for supply chain security.
📚 Documentation
🔐 Security
All artifacts include SLSA Build Provenance attestations and SBOM for supply chain security.
Verify attestations using the GitHub CLI:
gh attestation verify euparliamentmonitor-v1.0.39.zip -R Hack23/euparliamentmonitorEU Parliament Monitor v1.0.38
What's Changed
🌍 EU Parliament Integration
- build(deps): bump european-parliament-mcp-server from 1.3.43 to 1.4.0 in the production-dependencies group @dependabot[bot] (#2554)
🏗️ Infrastructure & Performance
- build(deps-dev): bump lint-staged from 17.0.8 to 17.1.0 in the development-dependencies group @dependabot[bot] (#2553)
- build(deps): bump european-parliament-mcp-server from 1.3.43 to 1.4.0 in the production-dependencies group @dependabot[bot] (#2554)
- [aw] Upgrade available @github-actions[bot] (#2552)
- Update gh-aw CLI version to v0.82.13 @pethers (#2551)
- build(deps-dev): bump eslint-plugin-jsdoc from 63.0.14 to 63.1.0 in the development-dependencies group @dependabot[bot] (#2550)
🔄 Code Quality & Refactoring
- build(deps): bump european-parliament-mcp-server from 1.3.43 to 1.4.0 in the production-dependencies group @dependabot[bot] (#2554)
📝 Documentation
- build(deps): bump european-parliament-mcp-server from 1.3.43 to 1.4.0 in the production-dependencies group @dependabot[bot] (#2554)
- [aw] Upgrade available @github-actions[bot] (#2552)
📦 Dependencies
- build(deps-dev): bump lint-staged from 17.0.8 to 17.1.0 in the development-dependencies group @dependabot[bot] (#2553)
- build(deps): bump european-parliament-mcp-server from 1.3.43 to 1.4.0 in the production-dependencies group @dependabot[bot] (#2554)
- [aw] Upgrade available @github-actions[bot] (#2552)
- Update gh-aw CLI version to v0.82.13 @pethers (#2551)
- build(deps-dev): bump eslint-plugin-jsdoc from 63.0.14 to 63.1.0 in the development-dependencies group @dependabot[bot] (#2550)
🧪 Test Coverage Improvements
- build(deps): bump european-parliament-mcp-server from 1.3.43 to 1.4.0 in the production-dependencies group @dependabot[bot] (#2554)
⚙️ Component Updates
- build(deps): bump european-parliament-mcp-server from 1.3.43 to 1.4.0 in the production-dependencies group @dependabot[bot] (#2554)
- [aw] Upgrade available @github-actions[bot] (#2552)
- Update gh-aw CLI version to v0.82.13 @pethers (#2551)
📊 Release Metrics & Evidence
All test reports, coverage metrics, and API documentation are generated during build and available in the Documentation Hub.
🏛️ Architecture & Documentation
| Document | Description |
|---|---|
| Architecture | C4 architecture models and system overview |
| Security Architecture | Security design and controls |
| Threat Model | STRIDE threat analysis |
| Data Model | Data structures and relationships |
| Flowchart | Process flows with security controls |
| State Diagram | State transitions and lifecycles |
| Mindmap | Conceptual relationships |
| SWOT Analysis | Strategic analysis |
| CRA Assessment | Cyber Resilience Act assessment |
| API Documentation | TypeDoc-generated API reference |
🔐 Security & Supply Chain Protection
This release includes:
- ✅ SLSA Build Provenance Attestations — Cryptographically signed build provenance
- ✅ Software Bill of Materials (SBOM) — Complete dependency inventory in SPDX format
- ✅ npm Provenance — Verified package publishing with attestation
- ✅ CodeQL Security Scanning — Automated vulnerability detection
- ✅ Dependency Scanning — Continuous vulnerability monitoring with Dependabot
Verify attestations:
gh attestation verify euparliamentmonitor-1.0.38.zip -R Hack23/euparliamentmonitor
npm audit signaturesBrowse attestations: View all attestations
📋 ISMS Compliance & Policies
Compliance Frameworks
EU Parliament Monitor follows Hack23 AB's comprehensive ISMS with defense-in-depth architecture and documented security controls.
📦 Release Artifacts
| Artifact | Description | Verification |
|---|---|---|
euparliamentmonitor-1.0.38.zip |
Full application package | SHA-256 checksum, SLSA attestation |
euparliamentmonitor-1.0.38.spdx.json |
SBOM (SPDX format) | SBOM attestation |
*.intoto.jsonl |
SLSA attestations | gh attestation verify |
| npm package | euparliamentmonitor |
npm audit signatures |
All artifacts are signed and attested using GitHub's SLSA Level 3 build provenance.
🚀 Deployment
- Primary: https://euparliamentmonitor.com
- Documentation: https://euparliamentmonitor.com/docs/
- API Docs: https://euparliamentmonitor.com/docs/api/
- npm: https://www.npmjs.com/package/euparliamentmonitor
🏗️ Built With
- Node.js: 25.x
- TypeScript: 6.0.x
- Chart.js: 4.5.x
- D3.js: 7.9.x
- Vitest: 4.x
- Playwright: 1.x
- European Parliament MCP Server: 1.x
👥 Contributors
@dependabot[bot], @github-actions[bot], @pethers, dependabot[bot] and github-actions[bot]
Full Changelog: v1.0.37...1.0.38
📦 Release Artifacts
euparliamentmonitor-v1.0.38.zip- Full application packageeuparliamentmonitor-v1.0.38.spdx.json- SBOM (Software Bill of Materials)*.intoto.jsonl- SLSA Build Provenance Attestations
📦 npm Package
npm install euparliamentmonitor@1.0.38Published with npm provenance for supply chain security.
📚 Documentation
🔐 Security
All artifacts include SLSA Build Provenance attestations and SBOM for supply chain security.
Verify attestations using the GitHub CLI:
gh attestation verify euparliamentmonitor-v1.0.38.zip -R Hack23/euparliamentmonitorEU Parliament Monitor v1.0.37
What's Changed
🌍 EU Parliament Integration
- Remove unused security-events write permission @copilot-swe-agent[bot] (#2549)
🎨 UI/UX Improvements
- Remove unused security-events write permission @copilot-swe-agent[bot] (#2549)
🏗️ Infrastructure & Performance
- Simplify agent permissions in workflow file @pethers (#2547)
- Remove unused security-events write permission @copilot-swe-agent[bot] (#2549)
📦 Dependencies
- Simplify agent permissions in workflow file @pethers (#2547)
- Remove unused security-events write permission @copilot-swe-agent[bot] (#2549)
⚙️ Component Updates
- Simplify agent permissions in workflow file @pethers (#2547)
- Remove unused security-events write permission @copilot-swe-agent[bot] (#2549)
📊 Release Metrics & Evidence
All test reports, coverage metrics, and API documentation are generated during build and available in the Documentation Hub.
🏛️ Architecture & Documentation
| Document | Description |
|---|---|
| Architecture | C4 architecture models and system overview |
| Security Architecture | Security design and controls |
| Threat Model | STRIDE threat analysis |
| Data Model | Data structures and relationships |
| Flowchart | Process flows with security controls |
| State Diagram | State transitions and lifecycles |
| Mindmap | Conceptual relationships |
| SWOT Analysis | Strategic analysis |
| CRA Assessment | Cyber Resilience Act assessment |
| API Documentation | TypeDoc-generated API reference |
🔐 Security & Supply Chain Protection
This release includes:
- ✅ SLSA Build Provenance Attestations — Cryptographically signed build provenance
- ✅ Software Bill of Materials (SBOM) — Complete dependency inventory in SPDX format
- ✅ npm Provenance — Verified package publishing with attestation
- ✅ CodeQL Security Scanning — Automated vulnerability detection
- ✅ Dependency Scanning — Continuous vulnerability monitoring with Dependabot
Verify attestations:
gh attestation verify euparliamentmonitor-1.0.37.zip -R Hack23/euparliamentmonitor
npm audit signaturesBrowse attestations: View all attestations
📋 ISMS Compliance & Policies
Compliance Frameworks
EU Parliament Monitor follows Hack23 AB's comprehensive ISMS with defense-in-depth architecture and documented security controls.
📦 Release Artifacts
| Artifact | Description | Verification |
|---|---|---|
euparliamentmonitor-1.0.37.zip |
Full application package | SHA-256 checksum, SLSA attestation |
euparliamentmonitor-1.0.37.spdx.json |
SBOM (SPDX format) | SBOM attestation |
*.intoto.jsonl |
SLSA attestations | gh attestation verify |
| npm package | euparliamentmonitor |
npm audit signatures |
All artifacts are signed and attested using GitHub's SLSA Level 3 build provenance.
🚀 Deployment
- Primary: https://euparliamentmonitor.com
- Documentation: https://euparliamentmonitor.com/docs/
- API Docs: https://euparliamentmonitor.com/docs/api/
- npm: https://www.npmjs.com/package/euparliamentmonitor
🏗️ Built With
- Node.js: 25.x
- TypeScript: 6.0.x
- Chart.js: 4.5.x
- D3.js: 7.9.x
- Vitest: 4.x
- Playwright: 1.x
- European Parliament MCP Server: 1.x
👥 Contributors
@Copilot, @pethers and copilot-swe-agent[bot]
Full Changelog: v1.0.36...1.0.37
📦 Release Artifacts
euparliamentmonitor-v1.0.37.zip- Full application packageeuparliamentmonitor-v1.0.37.spdx.json- SBOM (Software Bill of Materials)*.intoto.jsonl- SLSA Build Provenance Attestations
📦 npm Package
npm install euparliamentmonitor@1.0.37Published with npm provenance for supply chain security.
📚 Documentation
🔐 Security
All artifacts include SLSA Build Provenance attestations and SBOM for supply chain security.
Verify attestations using the GitHub CLI:
gh attestation verify euparliamentmonitor-v1.0.37.zip -R Hack23/euparliamentmonitorEU Parliament Monitor v1.0.36
What's Changed
🏗️ Infrastructure & Performance
- build(deps-dev): bump eslint-plugin-jsdoc from 63.0.13 to 63.0.14 in the development-dependencies group @dependabot[bot] (#2546)
📦 Dependencies
- build(deps-dev): bump eslint-plugin-jsdoc from 63.0.13 to 63.0.14 in the development-dependencies group @dependabot[bot] (#2546)
📊 Release Metrics & Evidence
All test reports, coverage metrics, and API documentation are generated during build and available in the Documentation Hub.
🏛️ Architecture & Documentation
| Document | Description |
|---|---|
| Architecture | C4 architecture models and system overview |
| Security Architecture | Security design and controls |
| Threat Model | STRIDE threat analysis |
| Data Model | Data structures and relationships |
| Flowchart | Process flows with security controls |
| State Diagram | State transitions and lifecycles |
| Mindmap | Conceptual relationships |
| SWOT Analysis | Strategic analysis |
| CRA Assessment | Cyber Resilience Act assessment |
| API Documentation | TypeDoc-generated API reference |
🔐 Security & Supply Chain Protection
This release includes:
- ✅ SLSA Build Provenance Attestations — Cryptographically signed build provenance
- ✅ Software Bill of Materials (SBOM) — Complete dependency inventory in SPDX format
- ✅ npm Provenance — Verified package publishing with attestation
- ✅ CodeQL Security Scanning — Automated vulnerability detection
- ✅ Dependency Scanning — Continuous vulnerability monitoring with Dependabot
Verify attestations:
gh attestation verify euparliamentmonitor-1.0.36.zip -R Hack23/euparliamentmonitor
npm audit signaturesBrowse attestations: View all attestations
📋 ISMS Compliance & Policies
Compliance Frameworks
EU Parliament Monitor follows Hack23 AB's comprehensive ISMS with defense-in-depth architecture and documented security controls.
📦 Release Artifacts
| Artifact | Description | Verification |
|---|---|---|
euparliamentmonitor-1.0.36.zip |
Full application package | SHA-256 checksum, SLSA attestation |
euparliamentmonitor-1.0.36.spdx.json |
SBOM (SPDX format) | SBOM attestation |
*.intoto.jsonl |
SLSA attestations | gh attestation verify |
| npm package | euparliamentmonitor |
npm audit signatures |
All artifacts are signed and attested using GitHub's SLSA Level 3 build provenance.
🚀 Deployment
- Primary: https://euparliamentmonitor.com
- Documentation: https://euparliamentmonitor.com/docs/
- API Docs: https://euparliamentmonitor.com/docs/api/
- npm: https://www.npmjs.com/package/euparliamentmonitor
🏗️ Built With
- Node.js: 25.x
- TypeScript: 6.0.x
- Chart.js: 4.5.x
- D3.js: 7.9.x
- Vitest: 4.x
- Playwright: 1.x
- European Parliament MCP Server: 1.x
👥 Contributors
@dependabot[bot] and dependabot[bot]
Full Changelog: v1.0.35...1.0.36
📦 Release Artifacts
euparliamentmonitor-v1.0.36.zip- Full application packageeuparliamentmonitor-v1.0.36.spdx.json- SBOM (Software Bill of Materials)*.intoto.jsonl- SLSA Build Provenance Attestations
📦 npm Package
npm install euparliamentmonitor@1.0.36Published with npm provenance for supply chain security.
📚 Documentation
🔐 Security
All artifacts include SLSA Build Provenance attestations and SBOM for supply chain security.
Verify attestations using the GitHub CLI:
gh attestation verify euparliamentmonitor-v1.0.36.zip -R Hack23/euparliamentmonitorEU Parliament Monitor v1.0.35
What's Changed
🏗️ Infrastructure & Performance
- build(deps)(deps): bump the github-actions group with 4 updates @dependabot[bot] (#2543)
- Refactor dependabot configuration for npm and GitHub Actions @pethers (#2545)
- Revise Dependabot schedule and labels for GitHub Actions @pethers (#2544)
🔒 Security & Compliance
- build(deps)(deps): bump the github-actions group with 4 updates @dependabot[bot] (#2543)
📦 Dependencies
- build(deps)(deps): bump the github-actions group with 4 updates @dependabot[bot] (#2543)
⚙️ Component Updates
- build(deps)(deps): bump the github-actions group with 4 updates @dependabot[bot] (#2543)
📊 Release Metrics & Evidence
All test reports, coverage metrics, and API documentation are generated during build and available in the Documentation Hub.
🏛️ Architecture & Documentation
| Document | Description |
|---|---|
| Architecture | C4 architecture models and system overview |
| Security Architecture | Security design and controls |
| Threat Model | STRIDE threat analysis |
| Data Model | Data structures and relationships |
| Flowchart | Process flows with security controls |
| State Diagram | State transitions and lifecycles |
| Mindmap | Conceptual relationships |
| SWOT Analysis | Strategic analysis |
| CRA Assessment | Cyber Resilience Act assessment |
| API Documentation | TypeDoc-generated API reference |
🔐 Security & Supply Chain Protection
This release includes:
- ✅ SLSA Build Provenance Attestations — Cryptographically signed build provenance
- ✅ Software Bill of Materials (SBOM) — Complete dependency inventory in SPDX format
- ✅ npm Provenance — Verified package publishing with attestation
- ✅ CodeQL Security Scanning — Automated vulnerability detection
- ✅ Dependency Scanning — Continuous vulnerability monitoring with Dependabot
Verify attestations:
gh attestation verify euparliamentmonitor-1.0.35.zip -R Hack23/euparliamentmonitor
npm audit signaturesBrowse attestations: View all attestations
📋 ISMS Compliance & Policies
Compliance Frameworks
EU Parliament Monitor follows Hack23 AB's comprehensive ISMS with defense-in-depth architecture and documented security controls.
📦 Release Artifacts
| Artifact | Description | Verification |
|---|---|---|
euparliamentmonitor-1.0.35.zip |
Full application package | SHA-256 checksum, SLSA attestation |
euparliamentmonitor-1.0.35.spdx.json |
SBOM (SPDX format) | SBOM attestation |
*.intoto.jsonl |
SLSA attestations | gh attestation verify |
| npm package | euparliamentmonitor |
npm audit signatures |
All artifacts are signed and attested using GitHub's SLSA Level 3 build provenance.
🚀 Deployment
- Primary: https://euparliamentmonitor.com
- Documentation: https://euparliamentmonitor.com/docs/
- API Docs: https://euparliamentmonitor.com/docs/api/
- npm: https://www.npmjs.com/package/euparliamentmonitor
🏗️ Built With
- Node.js: 25.x
- TypeScript: 6.0.x
- Chart.js: 4.5.x
- D3.js: 7.9.x
- Vitest: 4.x
- Playwright: 1.x
- European Parliament MCP Server: 1.x
👥 Contributors
@dependabot[bot], @pethers and dependabot[bot]
Full Changelog: v1.0.34...1.0.35
📦 Release Artifacts
euparliamentmonitor-v1.0.35.zip- Full application packageeuparliamentmonitor-v1.0.35.spdx.json- SBOM (Software Bill of Materials)*.intoto.jsonl- SLSA Build Provenance Attestations
📦 npm Package
npm install euparliamentmonitor@1.0.35Published with npm provenance for supply chain security.
📚 Documentation
🔐 Security
All artifacts include SLSA Build Provenance attestations and SBOM for supply chain security.
Verify attestations using the GitHub CLI:
gh attestation verify euparliamentmonitor-v1.0.35.zip -R Hack23/euparliamentmonitorEU Parliament Monitor v1.0.34
What's Changed
🏗️ Infrastructure & Performance
- Fix Bash shell selection in release version validation @copilot-swe-agent[bot] (#2542)
- Prevent recursive release workflow runs @copilot-swe-agent[bot] (#2541)
📝 Documentation
- Prevent recursive release workflow runs @copilot-swe-agent[bot] (#2541)
📦 Dependencies
- Fix Bash shell selection in release version validation @copilot-swe-agent[bot] (#2542)
- Prevent recursive release workflow runs @copilot-swe-agent[bot] (#2541)
⚙️ Component Updates
- Fix Bash shell selection in release version validation @copilot-swe-agent[bot] (#2542)
- Prevent recursive release workflow runs @copilot-swe-agent[bot] (#2541)
📊 Release Metrics & Evidence
All test reports, coverage metrics, and API documentation are generated during build and available in the Documentation Hub.
🏛️ Architecture & Documentation
| Document | Description |
|---|---|
| Architecture | C4 architecture models and system overview |
| Security Architecture | Security design and controls |
| Threat Model | STRIDE threat analysis |
| Data Model | Data structures and relationships |
| Flowchart | Process flows with security controls |
| State Diagram | State transitions and lifecycles |
| Mindmap | Conceptual relationships |
| SWOT Analysis | Strategic analysis |
| CRA Assessment | Cyber Resilience Act assessment |
| API Documentation | TypeDoc-generated API reference |
🔐 Security & Supply Chain Protection
This release includes:
- ✅ SLSA Build Provenance Attestations — Cryptographically signed build provenance
- ✅ Software Bill of Materials (SBOM) — Complete dependency inventory in SPDX format
- ✅ npm Provenance — Verified package publishing with attestation
- ✅ CodeQL Security Scanning — Automated vulnerability detection
- ✅ Dependency Scanning — Continuous vulnerability monitoring with Dependabot
Verify attestations:
gh attestation verify euparliamentmonitor-1.0.34.zip -R Hack23/euparliamentmonitor
npm audit signaturesBrowse attestations: View all attestations
📋 ISMS Compliance & Policies
Compliance Frameworks
EU Parliament Monitor follows Hack23 AB's comprehensive ISMS with defense-in-depth architecture and documented security controls.
📦 Release Artifacts
| Artifact | Description | Verification |
|---|---|---|
euparliamentmonitor-1.0.34.zip |
Full application package | SHA-256 checksum, SLSA attestation |
euparliamentmonitor-1.0.34.spdx.json |
SBOM (SPDX format) | SBOM attestation |
*.intoto.jsonl |
SLSA attestations | gh attestation verify |
| npm package | euparliamentmonitor |
npm audit signatures |
All artifacts are signed and attested using GitHub's SLSA Level 3 build provenance.
🚀 Deployment
- Primary: https://euparliamentmonitor.com
- Documentation: https://euparliamentmonitor.com/docs/
- API Docs: https://euparliamentmonitor.com/docs/api/
- npm: https://www.npmjs.com/package/euparliamentmonitor
🏗️ Built With
- Node.js: 25.x
- TypeScript: 6.0.x
- Chart.js: 4.5.x
- D3.js: 7.9.x
- Vitest: 4.x
- Playwright: 1.x
- European Parliament MCP Server: 1.x
👥 Contributors
@Copilot and copilot-swe-agent[bot]
Full Changelog: v1.0.33...1.0.34
📦 Release Artifacts
euparliamentmonitor-v1.0.34.zip- Full application packageeuparliamentmonitor-v1.0.34.spdx.json- SBOM (Software Bill of Materials)*.intoto.jsonl- SLSA Build Provenance Attestations
📦 npm Package
npm install euparliamentmonitor@1.0.34Published with npm provenance for supply chain security.
📚 Documentation
🔐 Security
All artifacts include SLSA Build Provenance attestations and SBOM for supply chain security.
Verify attestations using the GitHub CLI:
gh attestation verify euparliamentmonitor-v1.0.34.zip -R Hack23/euparliamentmonitorEU Parliament Monitor v1.0.33
What's Changed
🏗️ Infrastructure & Performance
- build(deps-dev)(deps-dev): bump knip from 6.26.0 to 6.27.0 in the development-dependencies group @dependabot[bot] (#2540)
📦 Dependencies
- build(deps-dev)(deps-dev): bump knip from 6.26.0 to 6.27.0 in the development-dependencies group @dependabot[bot] (#2540)
📊 Release Metrics & Evidence
All test reports, coverage metrics, and API documentation are generated during build and available in the Documentation Hub.
🏛️ Architecture & Documentation
| Document | Description |
|---|---|
| Architecture | C4 architecture models and system overview |
| Security Architecture | Security design and controls |
| Threat Model | STRIDE threat analysis |
| Data Model | Data structures and relationships |
| Flowchart | Process flows with security controls |
| State Diagram | State transitions and lifecycles |
| Mindmap | Conceptual relationships |
| SWOT Analysis | Strategic analysis |
| CRA Assessment | Cyber Resilience Act assessment |
| API Documentation | TypeDoc-generated API reference |
🔐 Security & Supply Chain Protection
This release includes:
- ✅ SLSA Build Provenance Attestations — Cryptographically signed build provenance
- ✅ Software Bill of Materials (SBOM) — Complete dependency inventory in SPDX format
- ✅ npm Provenance — Verified package publishing with attestation
- ✅ CodeQL Security Scanning — Automated vulnerability detection
- ✅ Dependency Scanning — Continuous vulnerability monitoring with Dependabot
Verify attestations:
gh attestation verify euparliamentmonitor-1.0.33.zip -R Hack23/euparliamentmonitor
npm audit signaturesBrowse attestations: View all attestations
📋 ISMS Compliance & Policies
Compliance Frameworks
EU Parliament Monitor follows Hack23 AB's comprehensive ISMS with defense-in-depth architecture and documented security controls.
📦 Release Artifacts
| Artifact | Description | Verification |
|---|---|---|
euparliamentmonitor-1.0.33.zip |
Full application package | SHA-256 checksum, SLSA attestation |
euparliamentmonitor-1.0.33.spdx.json |
SBOM (SPDX format) | SBOM attestation |
*.intoto.jsonl |
SLSA attestations | gh attestation verify |
| npm package | euparliamentmonitor |
npm audit signatures |
All artifacts are signed and attested using GitHub's SLSA Level 3 build provenance.
🚀 Deployment
- Primary: https://euparliamentmonitor.com
- Documentation: https://euparliamentmonitor.com/docs/
- API Docs: https://euparliamentmonitor.com/docs/api/
- npm: https://www.npmjs.com/package/euparliamentmonitor
🏗️ Built With
- Node.js: 25.x
- TypeScript: 6.0.x
- Chart.js: 4.5.x
- D3.js: 7.9.x
- Vitest: 4.x
- Playwright: 1.x
- European Parliament MCP Server: 1.x
👥 Contributors
@dependabot[bot] and dependabot[bot]
Full Changelog: v1.0.32...1.0.33
📦 Release Artifacts
euparliamentmonitor-v1.0.33.zip- Full application packageeuparliamentmonitor-v1.0.33.spdx.json- SBOM (Software Bill of Materials)*.intoto.jsonl- SLSA Build Provenance Attestations
📦 npm Package
npm install euparliamentmonitor@1.0.33Published with npm provenance for supply chain security.
📚 Documentation
🔐 Security
All artifacts include SLSA Build Provenance attestations and SBOM for supply chain security.
Verify attestations using the GitHub CLI:
gh attestation verify euparliamentmonitor-v1.0.33.zip -R Hack23/euparliamentmonitorEU Parliament Monitor v1.0.32
What's Changed
🏗️ Infrastructure & Performance
- Update release.yml use app for releas @pethers (#2539)
- build(deps)(deps): bump actions/setup-node from 6.3.0 to 7.0.0 @dependabot[bot] (#2537)
- build(deps-dev)(deps-dev): bump eslint-plugin-sonarjs from 4.1.0 to 4.2.0 in the development-dependencies group @dependabot[bot] (#2538)
📦 Dependencies
- Update release.yml use app for releas @pethers (#2539)
- build(deps)(deps): bump actions/setup-node from 6.3.0 to 7.0.0 @dependabot[bot] (#2537)
- build(deps-dev)(deps-dev): bump eslint-plugin-sonarjs from 4.1.0 to 4.2.0 in the development-dependencies group @dependabot[bot] (#2538)
⚙️ Component Updates
- Update release.yml use app for releas @pethers (#2539)
- build(deps)(deps): bump actions/setup-node from 6.3.0 to 7.0.0 @dependabot[bot] (#2537)
📊 Release Metrics & Evidence
All test reports, coverage metrics, and API documentation are generated during build and available in the Documentation Hub.
🏛️ Architecture & Documentation
| Document | Description |
|---|---|
| Architecture | C4 architecture models and system overview |
| Security Architecture | Security design and controls |
| Threat Model | STRIDE threat analysis |
| Data Model | Data structures and relationships |
| Flowchart | Process flows with security controls |
| State Diagram | State transitions and lifecycles |
| Mindmap | Conceptual relationships |
| SWOT Analysis | Strategic analysis |
| CRA Assessment | Cyber Resilience Act assessment |
| API Documentation | TypeDoc-generated API reference |
🔐 Security & Supply Chain Protection
This release includes:
- ✅ SLSA Build Provenance Attestations — Cryptographically signed build provenance
- ✅ Software Bill of Materials (SBOM) — Complete dependency inventory in SPDX format
- ✅ npm Provenance — Verified package publishing with attestation
- ✅ CodeQL Security Scanning — Automated vulnerability detection
- ✅ Dependency Scanning — Continuous vulnerability monitoring with Dependabot
Verify attestations:
gh attestation verify euparliamentmonitor-1.0.32.zip -R Hack23/euparliamentmonitor
npm audit signaturesBrowse attestations: View all attestations
📋 ISMS Compliance & Policies
Compliance Frameworks
EU Parliament Monitor follows Hack23 AB's comprehensive ISMS with defense-in-depth architecture and documented security controls.
📦 Release Artifacts
| Artifact | Description | Verification |
|---|---|---|
euparliamentmonitor-1.0.32.zip |
Full application package | SHA-256 checksum, SLSA attestation |
euparliamentmonitor-1.0.32.spdx.json |
SBOM (SPDX format) | SBOM attestation |
*.intoto.jsonl |
SLSA attestations | gh attestation verify |
| npm package | euparliamentmonitor |
npm audit signatures |
All artifacts are signed and attested using GitHub's SLSA Level 3 build provenance.
🚀 Deployment
- Primary: https://euparliamentmonitor.com
- Documentation: https://euparliamentmonitor.com/docs/
- API Docs: https://euparliamentmonitor.com/docs/api/
- npm: https://www.npmjs.com/package/euparliamentmonitor
🏗️ Built With
- Node.js: 25.x
- TypeScript: 6.0.x
- Chart.js: 4.5.x
- D3.js: 7.9.x
- Vitest: 4.x
- Playwright: 1.x
- European Parliament MCP Server: 1.x
👥 Contributors
@dependabot[bot], @pethers and dependabot[bot]
Full Changelog: v1.0.31...1.0.32
📦 Release Artifacts
euparliamentmonitor-v1.0.32.zip- Full application packageeuparliamentmonitor-v1.0.32.spdx.json- SBOM (Software Bill of Materials)*.intoto.jsonl- SLSA Build Provenance Attestations
📦 npm Package
npm install euparliamentmonitor@1.0.32Published with npm provenance for supply chain security.
📚 Documentation
🔐 Security
All artifacts include SLSA Build Provenance attestations and SBOM for supply chain security.
Verify attestations using the GitHub CLI:
gh attestation verify euparliamentmonitor-v1.0.32.zip -R Hack23/euparliamentmonitorEU Parliament Monitor v1.0.31
What's Changed
🏗️ Infrastructure & Performance
- Update compile-agentic-workflows.yml gh-aw-0.82.9 @pethers (#2536)
- build(deps-dev)(deps-dev): bump the development-dependencies group with 2 updates @dependabot[bot] (#2533)
- build(deps-dev)(deps-dev): bump tsx from 4.23.0 to 4.23.1 in the development-dependencies group @dependabot[bot] (#2529)
- [StepSecurity] Apply security best practices @step-security-bot (#2526)
- build(deps)(deps): bump actions/setup-node from 6.3.0 to 6.4.0 in the github-actions group @dependabot[bot] (#2524)
- build(deps-dev)(deps-dev): bump eslint from 10.6.0 to 10.7.0 in the development-dependencies group @dependabot[bot] (#2522)
📦 Dependencies
- Update compile-agentic-workflows.yml gh-aw-0.82.9 @pethers (#2536)
- build(deps-dev)(deps-dev): bump the development-dependencies group with 2 updates @dependabot[bot] (#2533)
- build(deps-dev)(deps-dev): bump tsx from 4.23.0 to 4.23.1 in the development-dependencies group @dependabot[bot] (#2529)
- [StepSecurity] Apply security best practices @step-security-bot (#2526)
- build(deps)(deps): bump actions/setup-node from 6.3.0 to 6.4.0 in the github-actions group @dependabot[bot] (#2524)
- build(deps-dev)(deps-dev): bump eslint from 10.6.0 to 10.7.0 in the development-dependencies group @dependabot[bot] (#2522)
⚙️ Component Updates
- Update compile-agentic-workflows.yml gh-aw-0.82.9 @pethers (#2536)
- [StepSecurity] Apply security best practices @step-security-bot (#2526)
- build(deps)(deps): bump actions/setup-node from 6.3.0 to 6.4.0 in the github-actions group @dependabot[bot] (#2524)
📊 Release Metrics & Evidence
All test reports, coverage metrics, and API documentation are generated during build and available in the Documentation Hub.
🏛️ Architecture & Documentation
| Document | Description |
|---|---|
| Architecture | C4 architecture models and system overview |
| Security Architecture | Security design and controls |
| Threat Model | STRIDE threat analysis |
| Data Model | Data structures and relationships |
| Flowchart | Process flows with security controls |
| State Diagram | State transitions and lifecycles |
| Mindmap | Conceptual relationships |
| SWOT Analysis | Strategic analysis |
| CRA Assessment | Cyber Resilience Act assessment |
| API Documentation | TypeDoc-generated API reference |
🔐 Security & Supply Chain Protection
This release includes:
- ✅ SLSA Build Provenance Attestations — Cryptographically signed build provenance
- ✅ Software Bill of Materials (SBOM) — Complete dependency inventory in SPDX format
- ✅ npm Provenance — Verified package publishing with attestation
- ✅ CodeQL Security Scanning — Automated vulnerability detection
- ✅ Dependency Scanning — Continuous vulnerability monitoring with Dependabot
Verify attestations:
gh attestation verify euparliamentmonitor-1.0.31.zip -R Hack23/euparliamentmonitor
npm audit signaturesBrowse attestations: View all attestations
📋 ISMS Compliance & Policies
Compliance Frameworks
EU Parliament Monitor follows Hack23 AB's comprehensive ISMS with defense-in-depth architecture and documented security controls.
📦 Release Artifacts
| Artifact | Description | Verification |
|---|---|---|
euparliamentmonitor-1.0.31.zip |
Full application package | SHA-256 checksum, SLSA attestation |
euparliamentmonitor-1.0.31.spdx.json |
SBOM (SPDX format) | SBOM attestation |
*.intoto.jsonl |
SLSA attestations | gh attestation verify |
| npm package | euparliamentmonitor |
npm audit signatures |
All artifacts are signed and attested using GitHub's SLSA Level 3 build provenance.
🚀 Deployment
- Primary: https://euparliamentmonitor.com
- Documentation: https://euparliamentmonitor.com/docs/
- API Docs: https://euparliamentmonitor.com/docs/api/
- npm: https://www.npmjs.com/package/euparliamentmonitor
🏗️ Built With
- Node.js: 25.x
- TypeScript: 6.0.x
- Chart.js: 4.5.x
- D3.js: 7.9.x
- Vitest: 4.x
- Playwright: 1.x
- European Parliament MCP Server: 1.x
👥 Contributors
@Copilot, @dependabot[bot], @github-actions[bot], @pethers, @step-security-bot and dependabot[bot]
Full Changelog: v1.0.30...1.0.31
📦 Release Artifacts
euparliamentmonitor-v1.0.31.zip- Full application packageeuparliamentmonitor-v1.0.31.spdx.json- SBOM (Software Bill of Materials)*.intoto.jsonl- SLSA Build Provenance Attestations
📦 npm Package
npm install euparliamentmonitor@1.0.31Published with npm provenance for supply chain security.
📚 Documentation
🔐 Security
All artifacts include SLSA Build Provenance attestations and SBOM for supply chain security.
Verify attestations using the GitHub CLI:
gh attestation verify euparliamentmonitor-v1.0.31.zip -R Hack23/euparliamentmonitorEU Parliament Monitor v1.0.30
What's Changed
🏗️ Infrastructure & Performance
- build(deps)(deps): bump european-parliament-mcp-server from 1.3.42 to 1.3.43 in the production-dependencies group @dependabot[bot] (#2519)
- build(deps)(deps): bump european-parliament-mcp-server from 1.3.41 to 1.3.42 in the production-dependencies group @dependabot[bot] (#2518)
- build(deps-dev)(deps-dev): bump knip from 6.25.0 to 6.26.0 in the development-dependencies group @dependabot[bot] (#2516)
- build(deps-dev)(deps-dev): bump eslint-plugin-jsdoc from 63.0.12 to 63.0.13 in the development-dependencies group @dependabot[bot] (#2514)
📦 Dependencies
- build(deps)(deps): bump european-parliament-mcp-server from 1.3.42 to 1.3.43 in the production-dependencies group @dependabot[bot] (#2519)
- build(deps)(deps): bump european-parliament-mcp-server from 1.3.41 to 1.3.42 in the production-dependencies group @dependabot[bot] (#2518)
- build(deps-dev)(deps-dev): bump knip from 6.25.0 to 6.26.0 in the development-dependencies group @dependabot[bot] (#2516)
- build(deps-dev)(deps-dev): bump eslint-plugin-jsdoc from 63.0.12 to 63.0.13 in the development-dependencies group @dependabot[bot] (#2514)
📊 Release Metrics & Evidence
All test reports, coverage metrics, and API documentation are generated during build and available in the Documentation Hub.
🏛️ Architecture & Documentation
| Document | Description |
|---|---|
| Architecture | C4 architecture models and system overview |
| Security Architecture | Security design and controls |
| Threat Model | STRIDE threat analysis |
| Data Model | Data structures and relationships |
| Flowchart | Process flows with security controls |
| State Diagram | State transitions and lifecycles |
| Mindmap | Conceptual relationships |
| SWOT Analysis | Strategic analysis |
| CRA Assessment | Cyber Resilience Act assessment |
| API Documentation | TypeDoc-generated API reference |
🔐 Security & Supply Chain Protection
This release includes:
- ✅ SLSA Build Provenance Attestations — Cryptographically signed build provenance
- ✅ Software Bill of Materials (SBOM) — Complete dependency inventory in SPDX format
- ✅ npm Provenance — Verified package publishing with attestation
- ✅ CodeQL Security Scanning — Automated vulnerability detection
- ✅ Dependency Scanning — Continuous vulnerability monitoring with Dependabot
Verify attestations:
gh attestation verify euparliamentmonitor-1.0.30.zip -R Hack23/euparliamentmonitor
npm audit signaturesBrowse attestations: View all attestations
📋 ISMS Compliance & Policies
Compliance Frameworks
EU Parliament Monitor follows Hack23 AB's comprehensive ISMS with defense-in-depth architecture and documented security controls.
📦 Release Artifacts
| Artifact | Description | Verification |
|---|---|---|
euparliamentmonitor-1.0.30.zip |
Full application package | SHA-256 checksum, SLSA attestation |
euparliamentmonitor-1.0.30.spdx.json |
SBOM (SPDX format) | SBOM attestation |
*.intoto.jsonl |
SLSA attestations | gh attestation verify |
| npm package | euparliamentmonitor |
npm audit signatures |
All artifacts are signed and attested using GitHub's SLSA Level 3 build provenance.
🚀 Deployment
- Primary: https://euparliamentmonitor.com
- Documentation: https://euparliamentmonitor.com/docs/
- API Docs: https://euparliamentmonitor.com/docs/api/
- npm: https://www.npmjs.com/package/euparliamentmonitor
🏗️ Built With
- Node.js: 25.x
- TypeScript: 6.0.x
- Chart.js: 4.5.x
- D3.js: 7.9.x
- Vitest: 4.x
- Playwright: 1.x
- European Parliament MCP Server: 1.x
👥 Contributors
@dependabot[bot], @pethers and dependabot[bot]
Full Changelog: v1.0.29...1.0.30
📦 Release Artifacts
euparliamentmonitor-v1.0.30.zip- Full application packageeuparliamentmonitor-v1.0.30.spdx.json- SBOM (Software Bill of Materials)*.intoto.jsonl- SLSA Build Provenance Attestations
📦 npm Package
npm install euparliamentmonitor@1.0.30Published with npm provenance for supply chain security.
📚 Documentation
🔐 Security
All artifacts include SLSA Build Provenance attestations and SBOM for supply chain security.
Verify attestations using the GitHub CLI:
gh attestation verify euparliamentmonitor-v1.0.30.zip -R Hack23/euparliamentmonitor