pull before trivy

This commit is contained in:
Letro Bot
2026-04-30 14:18:00 +03:30
parent b531f55bd0
commit 107a95a100

View File

@@ -354,6 +354,12 @@ jobs:
--output sbom-repo.json \
.
- name: Pull the Docker image
env:
IMAGE_DIGEST: ${{ fromJSON(needs.build-image.outputs.metadata).regular.digest }}
run: |
docker pull "${{ env.IMAGE }}@${IMAGE_DIGEST}"
- name: Generate image SBOM with Trivy
env:
IMAGE_DIGEST: ${{ fromJSON(needs.build-image.outputs.metadata).regular.digest }}