ci-includes-yml/scripts/scanner/syft-docker.sh

10 lines
233 B
Bash
Raw Permalink Normal View History

2024-05-05 11:24:25 -05:00
#!/usr/bin/env bash
#%%MULTILINE_YAML_START
2024-05-05 11:37:36 -05:00
#Syft scan for docker
2024-05-05 11:24:25 -05:00
for i in packages/*.tar.gz;
2024-05-06 06:15:47 -05:00
do filename=${i%.*.*.*.tar.gz};
2024-05-05 11:37:14 -05:00
filename="$(basename -- "$filename")"
syft $i -o cyclonedx-json=syft/$filename.docker.sbom.json;
2024-05-05 11:24:25 -05:00
done