From eb6b10b1fffa7c8f601451b8f2dd16a0f0b6f494 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Wed, 7 Dec 2022 11:05:45 +0000 Subject: [PATCH] chore(deps): bump CycloneDX/gh-gomod-generate-sbom from 1.0.0 to 1.1.0 (#5601) Bumps [CycloneDX/gh-gomod-generate-sbom](https://github.com/CycloneDX/gh-gomod-generate-sbom) from 1.0.0 to 1.1.0. - [Release notes](https://github.com/CycloneDX/gh-gomod-generate-sbom/releases) - [Commits](https://github.com/CycloneDX/gh-gomod-generate-sbom/compare/c18e41a4e3defe6dbf69b594e4d831a89db82ead...d4aee0cf5133055dbd98899978246c10c18c440f) --- updated-dependencies: - dependency-name: CycloneDX/gh-gomod-generate-sbom dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] Signed-off-by: dependabot[bot] Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> --- .github/workflows/reuse.yaml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.github/workflows/reuse.yaml b/.github/workflows/reuse.yaml index 9f154f0ea9..46370b6108 100644 --- a/.github/workflows/reuse.yaml +++ b/.github/workflows/reuse.yaml @@ -94,7 +94,7 @@ jobs: - name: Generate SBOM JSON if: ${{inputs.tag == 'release'}} - uses: CycloneDX/gh-gomod-generate-sbom@c18e41a4e3defe6dbf69b594e4d831a89db82ead # v1.0.0 + uses: CycloneDX/gh-gomod-generate-sbom@d4aee0cf5133055dbd98899978246c10c18c440f # v1.1.0 with: version: v1 args: app -licenses -json -output ${{inputs.image_name}}-${{ env.KYVERNO_VERSION }}-bom.cdx.json -main ${{inputs.main}}