From 21dbdaa9c0840b79d59265b8ec6ab169d2901b87 Mon Sep 17 00:00:00 2001 From: DeveloperDurpBot Date: Sun, 5 May 2024 16:25:17 +0000 Subject: [PATCH] ci: render Rendered by https://gitlab.com/developerdurp/yml/-/pipelines/1279090575 --- jobs/codescan.yml | 10 ++++++++++ 1 file changed, 10 insertions(+) diff --git a/jobs/codescan.yml b/jobs/codescan.yml index d130312..ca56b64 100644 --- a/jobs/codescan.yml +++ b/jobs/codescan.yml @@ -20,6 +20,16 @@ syft go.mod -o cyclonedx-json=syft/${CI_PROJECT_NAME}.sbom.json fi # End of syft-go.sh + + # Begin of syft-docker.sh + - | + #Syft scan for go + for i in packages/*.tar.gz; + do filename=${i%.*.tar.gz}; + filename=${filename##/}; + syft $i -o cyclonedx-json=$filename.docker.sbom.json; + done + # End of syft-docker.sh artifacts: expire_in: 1 hour paths: