From ae446f08d44f2ac885fb22f6f51c930897cc456f Mon Sep 17 00:00:00 2001 From: Ricardo Melo Date: Tue, 27 Aug 2024 14:36:56 -0400 Subject: [PATCH] ci(docker_go.yml): enable Software Bill of Materials (SBOM) generation and set provenance mode to max for improved security and compliance. --- .github/workflows/docker_go.yml | 2 ++ 1 file changed, 2 insertions(+) diff --git a/.github/workflows/docker_go.yml b/.github/workflows/docker_go.yml index f678d52..2756f23 100644 --- a/.github/workflows/docker_go.yml +++ b/.github/workflows/docker_go.yml @@ -41,5 +41,7 @@ jobs: with: platforms: linux/amd64 push: true + sbom: true + provenance: mode=max tags: ${{ steps.meta.outputs.tags }} labels: ${{ steps.meta.outputs.labels }}