We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
1 parent d30e74d commit b60aaedCopy full SHA for b60aaed
.github/workflows/sca-integration-depscan.yml
@@ -6,6 +6,7 @@ on:
6
push:
7
branches:
8
- main
9
+
10
permissions:
11
contents: read
12
@@ -21,14 +22,14 @@ jobs:
21
22
docker run --rm -v $PWD:/app \
23
ghcr.io/owasp-dep-scan/dep-scan depscan \
24
--src ${{ env.IMAGE_REFERENCE }} \
- --reports-dir /app/reports \
25
+ --reports-dir /app \
26
--report-name depscan-sbom.cdx.json
27
28
- name: Upload SBOM as GitHub Artifact
29
uses: actions/upload-artifact@v4
30
with:
31
name: depscan-sbom
- path: "$PWD/reports/depscan-sbom.cdx.json"
32
+ path: "depscan-sbom.cdx.json"
33
retention-days: 20
34
35
# - name: Import SBOM into ScanCode.io
0 commit comments