Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Publish a Software Bill of Materials (SBOM) #1094

Merged
merged 1 commit into from
Jan 21, 2022
Merged

Publish a Software Bill of Materials (SBOM) #1094

merged 1 commit into from
Jan 21, 2022

Conversation

stefanprodan
Copy link
Member

Changes to the release workflow:

  • generate SBOM for Flagger Go modules with Syft
  • publish the SBOM SPDX JSON files to GitHub releases with GoReleaser
  • add permissions to GitHub Workflows

@stefanprodan stefanprodan added the kind/build Issues related to CI label Jan 21, 2022
@stefanprodan stefanprodan merged commit 8a0b92d into main Jan 21, 2022
@stefanprodan stefanprodan deleted the sbom branch January 21, 2022 13:11
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
kind/build Issues related to CI
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant