open-component-model / ocm

Open Component Model (Software Bill of Delivery Toolset)
https://ocm.software
Apache License 2.0
29 stars 18 forks source link

auto update `flake.nix` vendor hash incl. singed commit #809

Closed hilmarf closed 1 month ago

hilmarf commented 1 month ago

What this PR does / why we need it:

Whenever module dependencies change, we need to update the vendor hash in flake.nix.

This PR updates now the GHA to do this automatically and produces also signed & verified commits :-)

github-actions[bot] commented 1 month ago

Mend Scan Summary: :x:

Repository: open-component-model/ocm

VIOLATION DESCRIPTION NUMBER OF VIOLATIONS
HIGH/CRITICAL SECURITY VULNERABILITIES 3
MAJOR UPDATES AVAILABLE 0
LICENSE REQUIRES REVIEW 4
HIGH RISK LICENSES 9
RESTRICTIED LICENSE FOR ON-PREMISE DELIVERY 0

Detailed Logs: mend-scan-> Generate Report Mend UI

ocmbot[bot] commented 1 month ago

Integration Tests for 442577292a1b8c30d5c462cf0579a957a5fba1c4 run with result: Success ✅!

ocmbot[bot] commented 1 month ago

Integration Tests for 442577292a1b8c30d5c462cf0579a957a5fba1c4 run with result: Success ✅!