diff options
author | Liran Tal <liran.tal@gmail.com> | 2022-06-21 15:57:35 +0300 |
---|---|---|
committer | GitHub <noreply@github.com> | 2022-06-21 15:57:35 +0300 |
commit | a40c60c8dc6d8d970431606b87df01dc71486b6c (patch) | |
tree | 0bc4dd33b67e50a7769279b402b0ff944ebdc889 | |
parent | 20641d928eebab4620b952f6e4936365c5575a27 (diff) |
chore: add more claims to signed image
-rw-r--r-- | .github/workflows/docker-publish.yml | 8 |
1 files changed, 7 insertions, 1 deletions
diff --git a/.github/workflows/docker-publish.yml b/.github/workflows/docker-publish.yml index ebb9f32..8d22940 100644 --- a/.github/workflows/docker-publish.yml +++ b/.github/workflows/docker-publish.yml @@ -64,4 +64,10 @@ jobs: COSIGN_PRIVATE_KEY: ${{ secrets.COSIGN_PRIVATE_KEY }} COSIGN_PASSWORD: ${{ secrets.COSIGN_PASSWORD }} TAGS: ${{ steps.meta.outputs.tags }} - run: cosign sign --key env://COSIGN_PRIVATE_KEY ${TAGS} + run: | + cosign sign --key env://COSIGN_PRIVATE_KEY ${TAGS} \ + -a "repo=${{ github.repository }}" \ + -a "workflow=${{ github.workflow }}" \ + -a "ref=${{ github.sha }}" \ + -a "actor=${{ github.actor }}" \ + -a "build=${{ github.run_id }}" |