summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorLiran Tal <liran.tal@gmail.com>2022-06-21 15:57:35 +0300
committerGitHub <noreply@github.com>2022-06-21 15:57:35 +0300
commita40c60c8dc6d8d970431606b87df01dc71486b6c (patch)
tree0bc4dd33b67e50a7769279b402b0ff944ebdc889
parent20641d928eebab4620b952f6e4936365c5575a27 (diff)
chore: add more claims to signed image
-rw-r--r--.github/workflows/docker-publish.yml8
1 files changed, 7 insertions, 1 deletions
diff --git a/.github/workflows/docker-publish.yml b/.github/workflows/docker-publish.yml
index ebb9f32..8d22940 100644
--- a/.github/workflows/docker-publish.yml
+++ b/.github/workflows/docker-publish.yml
@@ -64,4 +64,10 @@ jobs:
COSIGN_PRIVATE_KEY: ${{ secrets.COSIGN_PRIVATE_KEY }}
COSIGN_PASSWORD: ${{ secrets.COSIGN_PASSWORD }}
TAGS: ${{ steps.meta.outputs.tags }}
- run: cosign sign --key env://COSIGN_PRIVATE_KEY ${TAGS}
+ run: |
+ cosign sign --key env://COSIGN_PRIVATE_KEY ${TAGS} \
+ -a "repo=${{ github.repository }}" \
+ -a "workflow=${{ github.workflow }}" \
+ -a "ref=${{ github.sha }}" \
+ -a "actor=${{ github.actor }}" \
+ -a "build=${{ github.run_id }}"