Add signing images and binaries.

This commit is contained in:
2025-12-14 23:37:40 +00:00
parent 05a07fde42
commit 623cbbcae3
2 changed files with 48 additions and 0 deletions
+31
View File
@@ -65,3 +65,34 @@ dockers_v2:
dockerfile: Dockerfile.goreleaser
extra_files:
- static/app
signs:
- cmd: cosign
env:
- COSIGN_PASSWORD={{ .Env.COSIGN_PASSWORD }}
certificate: "${artifact}.pem"
args:
- sign-blob
- "--key"
- "env://COSIGN_KEY"
- "--output-signature"
- "${signature}"
- "--output-certificate"
- "${certificate}"
- "${artifact}"
- "--yes"
artifacts: checksum
output: true
docker_signs:
- cmd: cosign
env:
- COSIGN_PASSWORD={{ .Env.COSIGN_PASSWORD }}
artifacts: manifests
output: true
args:
- sign
- "--key"
- "env://COSIGN_KEY"
- "${artifact}@${digest}"
- "--yes"