buildsec / frsca

https://buildsec.github.io/frsca
Apache License 2.0
225 stars 31 forks source link

Sign the SBOM in the sample-pipeline #436

Closed sudo-bmitch closed 1 year ago

sudo-bmitch commented 1 year ago

This signs the SBOM in the sample pipeline using Chains. With multiple "*IMAGE_URL" results, the lookup for IMAGE_URL and TASK_RUN needed to be adjusted to pick just the one entry.

stale[bot] commented 1 year ago

This pull request has been automatically marked as stale because it has not had recent activity. It will be closed in 7 days if no further activity occurs. Thank you for your contribution!

sudo-bmitch commented 1 year ago

@bradbeck can you kick kodiak by refreshing your review?