@@ -126,7 +126,7 @@ jobs:
126126 uses :
slsa-framework/slsa-github-generator/.github/workflows/[email protected] 127127 with :
128128 provenance-name : " provenance.intoto.jsonl"
129- base64-subjects : " ${{ needs.release.outputs.hashes }}"
129+ base64-subjects : " ${{ needs.release.outputs.release-digests }}"
130130 upload-assets : true
131131
132132 dockerhub-provenance :
@@ -138,9 +138,9 @@ jobs:
138138 if : startsWith(github.ref, 'refs/tags/v')
139139 uses :
slsa-framework/slsa-github-generator/.github/workflows/[email protected] 140140 with :
141- image : ${{ needs.release.outputs.image_url }}
142- digest : ${{ needs.release.outputs.image_digest }}
143- registry-username : fluxcdbot
141+ image : ${{ needs.release.outputs.image-name }}
142+ digest : ${{ needs.release.outputs.image-digest }}
143+ registry-username : ${{ github.repository_owner == 'fluxcd' && ' fluxcdbot' || github.repository_owner }}
144144 secrets :
145145 registry-password : ${{ secrets.DOCKER_FLUXCD_PASSWORD }}
146146
@@ -153,8 +153,8 @@ jobs:
153153 if : startsWith(github.ref, 'refs/tags/v')
154154 uses :
slsa-framework/slsa-github-generator/.github/workflows/[email protected] 155155 with :
156- image : ghcr.io/${{ needs.release.outputs.image_url }}
157- digest : ${{ needs.release.outputs.image_digest }}
158- registry-username : fluxcdbot
156+ image : ghcr.io/${{ needs.release.outputs.image-name }}
157+ digest : ${{ needs.release.outputs.image-digest }}
158+ registry-username : fluxcdbot # not necessary for ghcr.io
159159 secrets :
160- registry-password : ${{ secrets.GHCR_TOKEN }}
160+ registry-password : ${{ secrets.GITHUB_TOKEN }}
0 commit comments