fix: sbom-generate - calculer le nom image depuis les vars CI
Some checks failed
ci/woodpecker/push/woodpecker Pipeline failed
Some checks failed
ci/woodpecker/push/woodpecker Pipeline failed
Remplace la lecture de .env.deploy par un recalcul direct depuis CI_REPO_OWNER/CI_REPO_NAME/CI_COMMIT_BRANCH (meme logique que write-env), evitant la dependance sur le fichier. Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
This commit is contained in:
@@ -90,7 +90,7 @@ steps:
|
||||
- curl -sSfL https://raw.githubusercontent.com/anchore/syft/main/install.sh | sh -s -- -b /usr/local/bin latest
|
||||
- mkdir -p .reports
|
||||
- |
|
||||
PROJECT=$(grep '^COMPOSE_PROJECT_NAME=' .env.deploy | cut -d= -f2)
|
||||
PROJECT=$(printf '%s-%s-%s' "$CI_REPO_OWNER" "$CI_REPO_NAME" "$CI_COMMIT_BRANCH" | tr 'A-Z/' 'a-z-')
|
||||
IMAGE="${PROJECT}-radar-business"
|
||||
echo "SBOM sur image: $IMAGE"
|
||||
syft "$IMAGE" -o cyclonedx-json --file .reports/sbom-radar.cyclonedx.json
|
||||
|
||||
Reference in New Issue
Block a user