Skip to content

issues Search Results · repo:actions/attest-sbom language:TypeScript

Filter by

6 results
 (72 ms)

6 results

inactions/attest-sbom (press backspace or delete to remove)

When I run the scan on my container image using Syft v1.19.0, the json file generated is ~1.4Mb and when I do the scan on the same container image with a Syft version later than v1.19.0 the generated file ...
  • daniel-porsche
  • 3
  • Opened 
    on May 2
  • #168

img width= 1248 alt= Image src= https://github.com/user-attachments/assets/eaa914d0-cd33-4854-8637-fa99761ad126 / Here s an example of the summary created, it would be useful if we could configure this ...
feature-request
  • pputman-clabs
  • Opened 
    on Apr 24
  • #165

I m unable to verify the attestation of the sbom. In my workflow (added below), I create an sbom.json file which is uploaded as an artifact for sbom.spdx.json. If I download the artifact created, and run ...
  • pputman-clabs
  • 6
  • Opened 
    on Jan 7
  • #145

Hi there 👋🏻 It would be great if there was some more documentation not only to generate the attestation for a SBOM but also to know how to verify what this action generates. Because if you are not an ...
  • 0GiS0
  • 1
  • Opened 
    on Dec 12, 2024
  • #138

What is the recommended way to attest SBOMs for multi-arch images? The documented way of generating and attesting surely doesn t work: - First anchore/sbom-action generates an SBOM for a single platform ...
  • jkreileder
  • 2
  • Opened 
    on May 10, 2024
  • #60

After successfully generating an SBOM and then attesting it, this action fails to upload the artifact with a generic error: Error uploading artifact to container registry Here s the action log (IDs redacted): ...
  • davidmytton
  • 4
  • Opened 
    on May 5, 2024
  • #55
Issue origami icon

Learn how you can use GitHub Issues to plan and track your work.

Save views for sprints, backlogs, teams, or releases. Rank, sort, and filter issues to suit the occasion. The possibilities are endless.Learn more about GitHub Issues
ProTip! 
Restrict your search to the title by using the in:title qualifier.
Issue origami icon

Learn how you can use GitHub Issues to plan and track your work.

Save views for sprints, backlogs, teams, or releases. Rank, sort, and filter issues to suit the occasion. The possibilities are endless.Learn more about GitHub Issues
ProTip! 
Restrict your search to the title by using the in:title qualifier.
Issue search results · GitHub