@@ -102,77 +102,3 @@ jobs:
102
102
if : ${{ needs.release_please.outputs.release_created }}
103
103
env :
104
104
NODE_AUTH_TOKEN : ${{ secrets.NPM_TOKEN }}
105
-
106
- generate_sarif_report :
107
- environment : release
108
- runs-on : ubuntu-latest
109
- needs : [release_please]
110
- permissions :
111
- # required for all workflows
112
- security-events : write
113
- id-token : write
114
- contents : write
115
-
116
- steps :
117
- - uses : actions/checkout@v4
118
- - name : Set up drivers-github-tools
119
- uses : mongodb-labs/drivers-github-tools/setup@v2
120
- with :
121
- aws_region_name : us-east-1
122
- aws_role_arn : ${{ secrets.aws_role_arn }}
123
- aws_secret_id : ${{ secrets.aws_secret_id }}
124
-
125
- - name : " Generate Sarif Report"
126
- uses : mongodb-labs/drivers-github-tools/code-scanning-export@v2
127
- with :
128
- ref : main
129
- output-file : sarif-report.json
130
-
131
- - name : Get release version and release package file name
132
- id : get_version
133
- shell : bash
134
- run : |
135
- package_version=$(jq --raw-output '.version' package.json)
136
- echo "package_version=${package_version}" >> "$GITHUB_OUTPUT"
137
-
138
- - name : actions/publish_asset_to_s3
139
- uses : mongodb-labs/drivers-github-tools/node/publish_asset_to_s3@v2
140
- with :
141
- version : ${{ steps.get_version.outputs.package_version }}
142
- product_name : node-kerberos
143
- file : sarif-report.json
144
- dry_run : ${{ needs.release_please.outputs.release_created == '' }}
145
-
146
- upload_sbom_lite :
147
- environment : release
148
- runs-on : ubuntu-latest
149
- needs : [release_please]
150
- permissions :
151
- # required for all workflows
152
- security-events : write
153
- id-token : write
154
- contents : write
155
-
156
- steps :
157
- - uses : actions/checkout@v4
158
- - name : Set up drivers-github-tools
159
- uses : mongodb-labs/drivers-github-tools/setup@v2
160
- with :
161
- aws_region_name : us-east-1
162
- aws_role_arn : ${{ secrets.aws_role_arn }}
163
- aws_secret_id : ${{ secrets.aws_secret_id }}
164
-
165
- - name : Get release version and release package file name
166
- id : get_version
167
- shell : bash
168
- run : |
169
- package_version=$(jq --raw-output '.version' package.json)
170
- echo "package_version=${package_version}" >> "$GITHUB_OUTPUT"
171
-
172
- - name : actions/publish_asset_to_s3
173
- uses : mongodb-labs/drivers-github-tools/node/publish_asset_to_s3@v2
174
- with :
175
- version : ${{ steps.get_version.outputs.package_version }}
176
- product_name : node-kerberos
177
- file : sbom.json
178
- dry_run : ${{ needs.release_please.outputs.release_created == '' }}
0 commit comments