Skip to content

Commit af791a5

Browse files
committed
BC-8631 generate sbom when tagging
1 parent 274d187 commit af791a5

File tree

1 file changed

+12
-0
lines changed

1 file changed

+12
-0
lines changed

.github/workflows/tag.yml

Lines changed: 12 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -50,3 +50,15 @@ jobs:
5050
pull: true
5151
tags: ${{ steps.docker_meta_img_hub.outputs.tags }}
5252
labels: ${{ steps.docker_meta_img_hub.outputs.labels }}
53+
54+
generate_sbom:
55+
runs-on: ubuntu-latest
56+
permissions:
57+
contents: write
58+
steps:
59+
- name: generate sbom via dependency-graph
60+
run: gh api repos/${{ github.repository }}/dependency-graph/sbom > dependencies.sbom.json
61+
- name: create release
62+
uses: softprops/action-gh-release@v2
63+
with:
64+
files: dependencies.sbom.json

0 commit comments

Comments
 (0)