diff --git a/jobs/codescan.yml b/jobs/codescan.yml index d05f222..fb83f85 100644 --- a/jobs/codescan.yml +++ b/jobs/codescan.yml @@ -25,10 +25,11 @@ - | #Syft scan for docker for i in packages/*.tar.gz; - do filename=${i%.*.tar.gz}; + do filename=${i%.*.*.*.tar.gz}; filename="$(basename -- "$filename")" syft $i -o cyclonedx-json=syft/$filename.docker.sbom.json; done + ${version%.*.*.*.tar.gz} # End of syft-docker.sh artifacts: expire_in: 1 hour