Skip to content

Allow passing the sbomDir to KO #5689

@caarlos0

Description

@caarlos0

Discussed in https://github.com/orgs/goreleaser/discussions/5679

Originally posted by markussiebert March 26, 2025
Hello,

I would like to request support for passing the sbomDir flag to KO. This flag was introduced three years ago (reference: ko-build/ko#728) and enables publishing SBOMs (Software Bill of Materials) to the filesystem.

Implementing this feature would be highly beneficial for use cases that require managing SBOMs alongside publishing artifacts. It would provide users with more flexibility and alignment with workflows that require such build metadata for compliance, security, or auditing purposes.

Could you please consider adding support for this flag? Let me know if further clarification or assistance is needed for this feature request.

Thank you for your consideration!

Metadata

Metadata

Assignees

No one assigned

    Labels

    enhancementNew feature or request

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions