Skip to content

Conversation

Alex-Welsh
Copy link
Member

One of my hackathon topics was to add SBOM generation to the container image scanning script and I decided to refactor it at the same time to make it a bit more usable.

Currently it just adds a new json file artifact for each image, but in the future we could integrate this with Pulp.

@jackhodgkiss
Copy link
Contributor

I think this would help with pushing to Ark.

https://github.com/aquasecurity/trivy-plugin-referrer

seunghun1ee
seunghun1ee previously approved these changes Jun 13, 2025
@Alex-Welsh
Copy link
Member Author

Will rebase on stackhpc/2025.1 once #1790 merges

@Alex-Welsh Alex-Welsh changed the base branch from stackhpc/2024.1 to stackhpc/2025.1 July 29, 2025 14:41
@Alex-Welsh Alex-Welsh marked this pull request as ready for review July 29, 2025 15:07
@Alex-Welsh Alex-Welsh closed this Jul 29, 2025
@Alex-Welsh Alex-Welsh reopened this Jul 29, 2025
@Alex-Welsh
Copy link
Member Author

priteau
priteau previously approved these changes Jul 30, 2025
@Alex-Welsh Alex-Welsh merged commit 8516e35 into stackhpc/2025.1 Jul 30, 2025
21 checks passed
@Alex-Welsh Alex-Welsh deleted the sbom branch July 30, 2025 10:28
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
size: l workflows Workflow files have been modified
Projects
None yet
Development

Successfully merging this pull request may close these issues.

4 participants