Workiva / dpx

Apache License 2.0
1 stars 0 forks source link

FEDX-951: Generate SBOM during CI #7

Closed evanweible-wf closed 2 months ago

evanweible-wf commented 2 months ago

FEDX-951

Issue Status

Last step before open sourcing this repo is to ensure that we generate a Software Bill of Materials (SBOM) on every build and release for dependency.

rmconsole-wf commented 2 months ago

Merge Requirements Met :white_check_mark:

Request Rosie to automerge this pull request by including @Workiva/release-management-p in a comment.

:white_check_mark: Required actions successful (Workflow job Dart build has conclusion: success) (Workflow job Dart checks - 2.19.6 on ubuntu has conclusion: success) (Workflow job Dart checks - stable on ubuntu has conclusion: success) (Workflow job Dart checks - 2.19.6 on windows has conclusion: success) (Workflow job Dart checks - stable on windows has conclusion: success)

General Information

Ticket(s):

Code Review(s): https://github.com/Workiva/dpx/pull/7

Reviewers: matthewnitschke-wk, evanweible-wf, chrisgustavsen-wf

Additional Information

Watchlist Notifications: None

    When this pull is merged I will add it to the following release:
    Current version: dpx 0.1.0
    Version after merge: dpx 0.1.0
    Release Ticket(s): None

Note: This is a shortened report. Click here to view Rosie's full evaluation. Last updated on Thursday, June 13 01:00 PM CST

aviary3-wk commented 2 months ago

Security Insights

No security relevant content was detected by automated scans.

Action Items

evanweible-wf commented 2 months ago

QA +1 CI passes

evanweible-wf commented 2 months ago

@Workiva/release-management-p

rmconsole-wf commented 2 months ago

@evanweible-wf I will not merge this because:

chrisgustavsen-wf commented 2 months ago

@rmconsole-wf

rmconsole-wf commented 2 months ago

@chrisgustavsen-wf I will not merge this because:

chrisgustavsen-wf commented 2 months ago

@Workiva/release-management-p

chrisgustavsen-wf commented 2 months ago

RM +1