Skip to content

Conversation

@j-chmielewski
Copy link
Contributor

Introduces SBOM (Software Bill of Materials) generation into our CI pipelines.
SBOM files are generated only for release builds and are stored as json artifac

@j-chmielewski j-chmielewski merged commit efb3d39 into dev Sep 26, 2025
3 checks passed
@j-chmielewski j-chmielewski deleted the sbom branch September 26, 2025 08:32
j-chmielewski added a commit that referenced this pull request Sep 30, 2025
* CI sbom implementation

* uncomment build-binaries job

* run sbom on self-hosted workers

* use shogo82148/actions-upload-release-asset upload action
filipslezaklab added a commit that referenced this pull request Oct 10, 2025
* Create SBOM files (#173)

* CI sbom implementation

* uncomment build-binaries job

* run sbom on self-hosted workers

* use shogo82148/actions-upload-release-asset upload action

* CI: scan code with trivy (#174)

* CI: scan code with trivy

* bump trivy action version

* include low severity vulns in sbom

* Periodic sbom regeneration (#176)

* periodic sbom and advisories regeneration

* fix advisories upload

* remove branch push trigger

* only generate sbom for full releases

---------

Co-authored-by: Jacek Chmielewski <jchmielewski@teonite.com>
Co-authored-by: Jacek Chmielewski <jacek@defguard.net>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants