We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
1 parent d05c55f commit 8879a04Copy full SHA for 8879a04
.github/workflows/docker-publish.yml
@@ -17,6 +17,11 @@ on:
17
jobs:
18
docker:
19
runs-on: ubuntu-latest
20
+ permissions:
21
+ contents: read
22
+ packages: write
23
+ attestations: write
24
+ id-token: write
25
steps:
26
- uses: actions/checkout@v4
27
- uses: docker/setup-qemu-action@v3
@@ -39,6 +44,7 @@ jobs:
39
44
tags: |
40
45
type=raw,value=${{ env.RELEASE_VERSION }}
41
46
- uses: docker/build-push-action@v5
47
+ id: build
42
48
with:
43
49
context: .
50
target: mermaid
@@ -47,3 +53,9 @@ jobs:
53
pull: true
54
tags: ${{ steps.meta.outputs.tags }}
55
labels: ${{ steps.meta.outputs.labels }}
56
+ - name: Generate Build Attestation
57
+ uses: actions/attest-build-provenance@v2
58
+ with:
59
+ subject-name: ghcr.io/${{ github.repository }}
60
+ subject-digest: ${{ steps.build.outputs.digest }}
61
+ push-to-registry: true
0 commit comments