Puerco
Puerco
#### What would you like to be added: Derived from the branch management activities during the v1.22 cycle, it became evident that we need to add some information to the...
The animation on the main project page is very outdated. Some of the flags are no longer current and the tools supports a lot more features. We need to record...
#### What would you like to be added: SPDX has support for referencing elements defined in external SBOMs and building relationships pointing to them, while we already have support in...
### What would you like to be added: #### SPDX 2.3 Support :tada: The final SPDX 2.3 spec is expected to land before the end of July '22. `bom` should...
#### What would you like to be added: The SPDX license list should be included with the bom distribution to avoid downloading it. #### Why is this needed: On first...
#### What would you like to be added: We should publish a GitHub action that installs a released binary. We should create the action to install the bom and then...
#### What would you like to be added: When e2e's run, they wipe clean the entire test registry. We should prevent them from deleting everything and just cleaning their own...
#### What would you like to be added: Capturing previous discussions (ref https://github.com/kubernetes-sigs/promo-tools/pull/462#issuecomment-977534243 ), it would be useful to create an introductory document to get folks started quickly on the...
#### What would you like to be added: Sign any SBOMs attached to container images when promoting them. #### Why is this needed: Projects may attach SBOMs (software bills of...
#### What would you like to be added: When an image is promoted, kpromo pushes all signatures to the production registry. Technically, this means the promoter will copy all .sig...