Skip to content

Commit

Permalink
fix(github): Move env from top level to steps (#1725)
Browse files Browse the repository at this point in the history
Signed-off-by: Javier Rodriguez <[email protected]>
  • Loading branch information
javirln authored Jan 10, 2025
1 parent f5505a3 commit bf99764
Showing 1 changed file with 12 additions and 4 deletions.
16 changes: 12 additions & 4 deletions .github/workflows/scorecards.yml
Original file line number Diff line number Diff line change
Expand Up @@ -28,10 +28,6 @@ jobs:
id-token: write
contents: read
actions: read
env:
CHAINLOOP_WORKFLOW_NAME: "chainloop-vault-scorecards"
CHAINLOOP_PROJECT: "chainloop"
CHAINLOOP_TOKEN: ${{ secrets.CHAINLOOP_TOKEN }}

steps:
- name: Install Chainloop
Expand All @@ -46,6 +42,10 @@ jobs:
- name: Initialize Attestation
run: |
chainloop attestation init --workflow $CHAINLOOP_WORKFLOW_NAME --project $CHAINLOOP_PROJECT
env:
CHAINLOOP_WORKFLOW_NAME: "chainloop-vault-scorecards"
CHAINLOOP_PROJECT: "chainloop"
CHAINLOOP_TOKEN: ${{ secrets.CHAINLOOP_TOKEN }}

- name: "Run analysis"
uses: ossf/scorecard-action@0864cf19026789058feabb7e87baa5f140aac736 # v2.3.1
Expand Down Expand Up @@ -87,18 +87,26 @@ jobs:
- name: Attest analysis
run: |
chainloop attestation add --name sarif-results --value results.sarif
env:
CHAINLOOP_TOKEN: ${{ secrets.CHAINLOOP_TOKEN }}

- name: Finish and Record Attestation
if: ${{ success() }}
run: |
chainloop attestation push
env:
CHAINLOOP_TOKEN: ${{ secrets.CHAINLOOP_TOKEN }}

- name: Mark attestation as failed
if: ${{ failure() }}
run: |
chainloop attestation reset
env:
CHAINLOOP_TOKEN: ${{ secrets.CHAINLOOP_TOKEN }}

- name: Mark attestation as cancelled
if: ${{ cancelled() }}
run: |
chainloop attestation reset --trigger cancellation
env:
CHAINLOOP_TOKEN: ${{ secrets.CHAINLOOP_TOKEN }}

0 comments on commit bf99764

Please sign in to comment.