Skip to content

[TASK] Update SBOM workflow - #76

Merged
sbuerk merged 1 commit into
mainfrom
task/sbom-workflow
Aug 25, 2026
Merged

[TASK] Update SBOM workflow#76
sbuerk merged 1 commit into
mainfrom
task/sbom-workflow

Conversation

@sbuerk

@sbuerk sbuerk commented Aug 25, 2026

Copy link
Copy Markdown
Member

Adds the SBOM caller workflow, calling web-vision/.github/.github/workflows/sbom-reusable.yml@v1.

Generates one CycloneDX document per supported TYPO3 core version and uploads each to
Dependency-Track as a separate project version. Runs on pushes to main, on tags, and on demand.

Requires DTRACK_API_KEY and DTRACK_API_URL; both are organisation secrets.

Generate a CycloneDX SBOM and upload it to Dependency-Track on pushes to
the default branch and on tags, and on demand for an already published
tag via the target_ref input.

The reusable workflow lives in web-vision/.github and is pinned to the
moving v1 tag, so fixes reach this repository without another commit here.
@sbuerk
sbuerk merged commit 9831e9e into main Aug 25, 2026
3 checks passed
@sbuerk
sbuerk deleted the task/sbom-workflow branch August 25, 2026 12:05
@github-actions

Copy link
Copy Markdown

Documentation rendering

You can find files attached to the below linked Workflow Run URL (Logs).

Please note that files only stay for around 5 days!

Name Link
Commit ba0155b
Logs https://github.com/web-vision/deepl-write/actions/runs/32845723839
Documentation https://github.com/web-vision/deepl-write/actions/runs/32845723839/artifacts/9562213545

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant