From 7862bb11b7eb16e42e520094c2be822ac813d167 Mon Sep 17 00:00:00 2001 From: syoul Date: Thu, 19 Mar 2026 19:13:00 +0100 Subject: [PATCH] fix: sbom-generate - calculer le nom image depuis les vars CI Remplace la lecture de .env.deploy par un recalcul direct depuis CI_REPO_OWNER/CI_REPO_NAME/CI_COMMIT_BRANCH (meme logique que write-env), evitant la dependance sur le fichier. Co-Authored-By: Claude Sonnet 4.6 --- .woodpecker.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.woodpecker.yml b/.woodpecker.yml index 5471994..0dab132 100644 --- a/.woodpecker.yml +++ b/.woodpecker.yml @@ -90,7 +90,7 @@ steps: - curl -sSfL https://raw.githubusercontent.com/anchore/syft/main/install.sh | sh -s -- -b /usr/local/bin latest - mkdir -p .reports - | - PROJECT=$(grep '^COMPOSE_PROJECT_NAME=' .env.deploy | cut -d= -f2) + PROJECT=$(printf '%s-%s-%s' "$CI_REPO_OWNER" "$CI_REPO_NAME" "$CI_COMMIT_BRANCH" | tr 'A-Z/' 'a-z-') IMAGE="${PROJECT}-radar-business" echo "SBOM sur image: $IMAGE" syft "$IMAGE" -o cyclonedx-json --file .reports/sbom-radar.cyclonedx.json