aboutsummaryrefslogtreecommitdiff
path: root/.github/workflows
diff options
context:
space:
mode:
authorJakob Stendahl <14180120+JakobST1n@users.noreply.github.com>2022-01-24 15:17:11 +0100
committerGitHub <noreply@github.com>2022-01-24 15:17:11 +0100
commit62e730d88ad3750d085f93257c5b70253f3cd5c1 (patch)
treecaf4c3b9f7d9f1f1955c72a0b958d9695f2fd337 /.github/workflows
parent435827769c7eb9ebd170c77e0cb5035b9c4935cd (diff)
downloadRSS-watcher-62e730d88ad3750d085f93257c5b70253f3cd5c1.tar.gz
RSS-watcher-62e730d88ad3750d085f93257c5b70253f3cd5c1.zip
:construction_worker: Remove signing :)
Diffstat (limited to '.github/workflows')
-rw-r--r--.github/workflows/docker-publish.yml14
1 files changed, 7 insertions, 7 deletions
diff --git a/.github/workflows/docker-publish.yml b/.github/workflows/docker-publish.yml
index 3b8884c..220b1f7 100644
--- a/.github/workflows/docker-publish.yml
+++ b/.github/workflows/docker-publish.yml
@@ -84,10 +84,10 @@ jobs:
# repository is public to avoid leaking data. If you would like to publish
# transparency data even for private images, pass --force to cosign below.
# https://github.com/sigstore/cosign
- - name: Sign the published Docker image
- if: ${{ github.event_name != 'pull_request' }}
- env:
- COSIGN_EXPERIMENTAL: "true"
- # This step uses the identity token to provision an ephemeral certificate
- # against the sigstore community Fulcio instance.
- run: cosign sign ${{ env.REGISTRY }}/${{ env.IMAGE_NAME }}@${{ steps.build-and-push.outputs.digest }}
+ #- name: Sign the published Docker image
+ # if: ${{ github.event_name != 'pull_request' }}
+ # env:
+ # COSIGN_EXPERIMENTAL: "true"
+ # # This step uses the identity token to provision an ephemeral certificate
+ # # against the sigstore community Fulcio instance.
+ # run: cosign sign ${{ env.REGISTRY }}/${{ env.IMAGE_NAME }}@${{ steps.build-and-push.outputs.digest }}