You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
We already add a SBOM document to our release. Should we push that beside the container image into the registry and publish the container image with that reference?
yes I have seen the SBOM, but there are copyright notices missing and we found additional components in the docker container that are not included in the SBOM.
As of now there are no suitable guides/checklists for the distribution of binaries or containers and this should be tackled from our side too, together with the garm-operator maintainer team :)
please add foss disclosure for your container release.
Julian Schregle julian.schregle@mercedes-benz.com, Mercedes-Benz Tech Innovation GmbH, legal info/Impressum
The text was updated successfully, but these errors were encountered: