36
36
37
37
- name : Download Linux ARM64 binary
38
38
run : |
39
- curl -L "https://github.com/mongodb/mongodb-atlas-cli/releases/download/atlascli%2Fv${{ inputs.release_version }}/mongodb-atlas-cli_${{ inputs.release_version }}_linux_arm64.tar.gz" \
39
+ curl -L "https://github.com/mongodb/mongodb-atlas-cli/releases/download/atlascli%2Fv${{ inputs.release_version || '1.42.2' }}/mongodb-atlas-cli_${{ inputs.release_version || '1.42.2' }}_linux_arm64.tar.gz" \
40
40
-o release.tar.gz
41
41
42
42
- name : Extract binary
45
45
46
46
- name : Generate PURLs from binary
47
47
run : |
48
- go version -m ./mongodb-atlas-cli_${{ inputs.release_version }}_linux_arm64/bin/atlas | \
48
+ go version -m ./mongodb-atlas-cli_${{ inputs.release_version || '1.42.2' }}_linux_arm64/bin/atlas | \
49
49
awk '$1 == "dep" || $1 == "=>" { print "pkg:golang/" $2 "@" $3 }' | \
50
50
LC_ALL=C sort > purls.txt
51
51
cat purls.txt
76
76
--sbom-in "/pwd/sbom_lite.json" \
77
77
--repo "${KONDUKTO_REPO}" \
78
78
--branch "${KONDUKTO_BRANCH_PREFIX}-linux-arm64" \
79
- --sbom-out "/pwd/linux_amd64_augmented_sbom_v${{ inputs.release_version }}.json"
79
+ --sbom-out "/pwd/linux_amd64_augmented_sbom_v${{ inputs.release_version || '1.42.2' }}.json"
80
80
81
81
- name : Get current date
82
82
id : date
@@ -86,15 +86,15 @@ jobs:
86
86
- name : Generate SSDLC report
87
87
env :
88
88
AUTHOR : ${{ github.actor }}
89
- VERSION : ${{ inputs.release_version }}
89
+ VERSION : ${{ inputs.release_version || '1.42.2' }}
90
90
AUGMENTED_SBOM_TEXT : " - See Augmented SBOM manifests (CycloneDX in JSON format):
91
- \n - This file has been provided along with this report under the name 'linux_amd64_augmented_sbom_v${{ inputs.release_version }}.json'
91
+ \n - This file has been provided along with this report under the name 'linux_amd64_augmented_sbom_v${{ inputs.release_version || '1.42.2' }}.json'
92
92
\n - Please note that this file was generated on ${{ env.date }} and may not reflect the latest security information of all third party dependencies."
93
93
run : ./build/package/gen-ssdlc-report.sh
94
94
- name : Upload augmented SBOM as artifact
95
95
uses : actions/upload-artifact@v4
96
96
with :
97
97
name : augmented_sbom_and_ssdlc_report
98
98
path : |
99
- linux-amd64-augmented-sbom-v${{ inputs.release_version }}-${{ env.date }}.json
100
- ssdlc-compliance-${{ inputs.release_version }}-${{ env.date }}.md
99
+ linux-amd64-augmented-sbom-v${{ inputs.release_version || '1.42.2' }}-${{ env.date }}.json
100
+ ssdlc-compliance-${{ inputs.release_version || '1.42.2' }}-${{ env.date }}.md
0 commit comments