File tree Expand file tree Collapse file tree 2 files changed +67
-0
lines changed Expand file tree Collapse file tree 2 files changed +67
-0
lines changed Original file line number Diff line number Diff line change 78
78
product_name : js-bson
79
79
file : sarif-report.json
80
80
dry_run : ${{ needs.release_please.outputs.release_created == '' }}
81
+
82
+ upload_sbom_lite :
83
+ environment : release
84
+ runs-on : ubuntu-latest
85
+ needs : [release_please]
86
+ permissions :
87
+ # required for all workflows
88
+ security-events : write
89
+ id-token : write
90
+ contents : write
91
+
92
+ steps :
93
+ - uses : actions/checkout@v4
94
+ - name : Set up drivers-github-tools
95
+ uses : mongodb-labs/drivers-github-tools/setup@v2
96
+ with :
97
+ aws_region_name : us-east-1
98
+ aws_role_arn : ${{ secrets.aws_role_arn }}
99
+ aws_secret_id : ${{ secrets.aws_secret_id }}
100
+
101
+ - name : Get release version and release package file name
102
+ id : get_version
103
+ shell : bash
104
+ run : |
105
+ package_version=$(jq --raw-output '.version' package.json)
106
+ echo "package_version=${package_version}" >> "$GITHUB_OUTPUT"
107
+
108
+ - name : actions/publish_asset_to_s3
109
+ uses : mongodb-labs/drivers-github-tools/node/publish_asset_to_s3@main
110
+ with :
111
+ version : ${{ steps.get_version.outputs.package_version }}
112
+ product_name : js-bson
113
+ file : sbom.json
114
+ dry_run : ${{ needs.release_please.outputs.release_created == '' }}
Original file line number Diff line number Diff line change 78
78
file : sarif-report.json
79
79
dry_run : ${{ needs.release_please.outputs.release_created == '' }}
80
80
81
+ upload_sbom_lite :
82
+ environment : release
83
+ runs-on : ubuntu-latest
84
+ needs : [release_please]
85
+ permissions :
86
+ # required for all workflows
87
+ security-events : write
88
+ id-token : write
89
+ contents : write
90
+
91
+ steps :
92
+ - uses : actions/checkout@v4
93
+ - name : Set up drivers-github-tools
94
+ uses : mongodb-labs/drivers-github-tools/setup@v2
95
+ with :
96
+ aws_region_name : us-east-1
97
+ aws_role_arn : ${{ secrets.aws_role_arn }}
98
+ aws_secret_id : ${{ secrets.aws_secret_id }}
99
+
100
+ - name : Get release version and release package file name
101
+ id : get_version
102
+ shell : bash
103
+ run : |
104
+ package_version=$(jq --raw-output '.version' package.json)
105
+ echo "package_version=${package_version}" >> "$GITHUB_OUTPUT"
106
+
107
+ - name : actions/publish_asset_to_s3
108
+ uses : mongodb-labs/drivers-github-tools/node/publish_asset_to_s3@main
109
+ with :
110
+ version : ${{ steps.get_version.outputs.package_version }}
111
+ product_name : js-bson
112
+ file : sbom.json
113
+ dry_run : ${{ needs.release_please.outputs.release_created == '' }}
You can’t perform that action at this time.
0 commit comments