From cc9fe79c556365d9cd6542d9c443a14166de4e08 Mon Sep 17 00:00:00 2001 From: Lukas Reining Date: Mon, 27 Nov 2023 19:11:58 +0100 Subject: [PATCH] fix: SBOM generation (#688) Signed-off-by: Lukas Reining --- .github/workflows/release-please.yml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/.github/workflows/release-please.yml b/.github/workflows/release-please.yml index de6d321b1..1d604b23e 100644 --- a/.github/workflows/release-please.yml +++ b/.github/workflows/release-please.yml @@ -38,9 +38,9 @@ jobs: with: node-version: 18 - name: Generate SBOM - run: + run: | npm install -g npm@^10.2.0 - npm ci --omit dev --workspace=${{matrix.release}} + npm ci npm sbom --sbom-format=cyclonedx --omit=dev --omit=peer --workspace=${{matrix.release}} > bom.json - name: Attach SBOM to artifact env: