From 426c0ef7777212c4acd14e457856a8932443df14 Mon Sep 17 00:00:00 2001 From: Thomas Carmet <8408330+tcarmet@users.noreply.github.com> Date: Tue, 30 Apr 2024 14:40:57 -0700 Subject: [PATCH] Update docker-build.yaml --- .github/workflows/docker-build.yaml | 8 ++++++++ 1 file changed, 8 insertions(+) diff --git a/.github/workflows/docker-build.yaml b/.github/workflows/docker-build.yaml index 0d2a0a5..0163c13 100644 --- a/.github/workflows/docker-build.yaml +++ b/.github/workflows/docker-build.yaml @@ -86,6 +86,7 @@ jobs: - name: Build and push ${{ inputs.name }} image uses: docker/build-push-action@v5 + id: push with: context: ${{ inputs.context }} provenance: ${{ inputs.provenance }} @@ -98,3 +99,10 @@ jobs: build-args: ${{ inputs.build-args }} file: ${{ env.FILE }} secrets: ${{ inputs.secrets }} + + - name: Attest image + uses: github-early-access/generate-build-provenance@main + with: + subject-name: ${{ inputs.registry }}/${{ inputs.namespace }}/${{ inputs.name }} + subject-digest: ${{ steps.push.outputs.digest }} + push-to-registry: true