Skip to content

chore(deps): bump distroless/static from 26f9b99 to 3a03fc0 (#253) #73

chore(deps): bump distroless/static from 26f9b99 to 3a03fc0 (#253)

chore(deps): bump distroless/static from 26f9b99 to 3a03fc0 (#253) #73

name: Build shim-downloader image, sign it, and generate SBOMs
on:
workflow_call:
outputs:
digest:
description: "Container image digest"
value: ${{jobs.build.outputs.digest}}
push:
branches:
- "main"
- "feat-**"
jobs:
build:
uses: ./.github/workflows/container-image.yml
permissions:
contents: read
packages: write
with:
image-name: shim-downloader
dockerfile: ./images/downloader/Dockerfile
docker-context: ./images/downloader
push-image: true
sign:
needs: build
uses: ./.github/workflows/sign-image.yml
permissions:
packages: write
id-token: write
with:
image-repository: ${{ needs.build.outputs.repository }}
image-digest: ${{ needs.build.outputs.digest }}
sbom:
needs: build
uses: ./.github/workflows/sbom.yml
permissions:
packages: write
id-token: write
with:
image-name: shim-downloader
image-digest: ${{ needs.build.outputs.digest }}