diff --git a/.github/workflows/docker-build.yml b/.github/workflows/docker-build.yml index c9f4440..542537c 100644 --- a/.github/workflows/docker-build.yml +++ b/.github/workflows/docker-build.yml @@ -25,6 +25,8 @@ jobs: permissions: contents: read packages: write + id-token: write + attestations: write steps: - name: Checkout repository @@ -71,6 +73,8 @@ jobs: platforms: linux/amd64 - name: Generate artifact attestation + if: github.event_name != 'pull_request' + continue-on-error: true uses: actions/attest-build-provenance@v1 with: subject-name: ${{ env.REGISTRY }}/${{ env.IMAGE_NAME }}