diff --git a/.github/workflows/release-please.yml b/.github/workflows/release-please.yml index de6d321b1..1d604b23e 100644 --- a/.github/workflows/release-please.yml +++ b/.github/workflows/release-please.yml @@ -38,9 +38,9 @@ jobs: with: node-version: 18 - name: Generate SBOM - run: + run: | npm install -g npm@^10.2.0 - npm ci --omit dev --workspace=${{matrix.release}} + npm ci npm sbom --sbom-format=cyclonedx --omit=dev --omit=peer --workspace=${{matrix.release}} > bom.json - name: Attach SBOM to artifact env: