From 3252548d78b5f789e8c2ca8daf95820c36200854 Mon Sep 17 00:00:00 2001 From: Robert Zondervan Date: Wed, 27 Mar 2024 15:47:57 +0100 Subject: [PATCH] Add generating an SBOM file --- .github/workflows/release.yml | 12 ++++++++++++ 1 file changed, 12 insertions(+) diff --git a/.github/workflows/release.yml b/.github/workflows/release.yml index 67edde048..a99e1512e 100644 --- a/.github/workflows/release.yml +++ b/.github/workflows/release.yml @@ -481,3 +481,15 @@ jobs: - name: Chores if: (success() || failure()) run: docker-compose down + + Generate-SBOM: + needs: [Dependency-check,Database,Docker-Scout] + runs-on: ubuntu-latest + steps: + - uses: actions/checkout@v3 + - uses: advanced-security/generate-sbom-action@v1 + id: gensbom + - uses: actions/upload-artifact@v3 + with: + name: sbom + path: ${{ steps.gensbom.outputs.fileName }}