From e8a5d67e4327fad68ab9967ebb8b50aa80084897 Mon Sep 17 00:00:00 2001 From: Adrian Dvergsdal Date: Sun, 19 Jul 2020 23:01:41 +0200 Subject: [PATCH] Using git sha tags does not make much sense If you pin to one sha, you won't get security updates after new commits are made --- .github/workflows/build.yml | 2 -- 1 file changed, 2 deletions(-) diff --git a/.github/workflows/build.yml b/.github/workflows/build.yml index 5886097..df9ce19 100644 --- a/.github/workflows/build.yml +++ b/.github/workflows/build.yml @@ -39,7 +39,6 @@ jobs: --file=Dockerfile \ --tag="$IMAGE_NAME:latest" \ --tag="$IMAGE_NAME:debian" \ - --tag="$IMAGE_NAME:debian-$GITHUB_SHA" \ --label="org.opencontainers.image.source=$GITHUB_SERVER_URL/$GITHUB_REPOSITORY" \ --label="org.opencontainers.image.revision=$GITHUB_SHA" \ --label="org.opencontainers.image.created=$(date --rfc-3339=seconds)" @@ -53,7 +52,6 @@ jobs: --pull=true \ --file=Dockerfile-alpine \ --tag="$IMAGE_NAME:alpine" \ - --tag="$IMAGE_NAME:alpine-$GITHUB_SHA" \ --label="org.opencontainers.image.source=$GITHUB_SERVER_URL/$GITHUB_REPOSITORY" \ --label="org.opencontainers.image.revision=$GITHUB_SHA" \ --label="org.opencontainers.image.created=$(date --rfc-3339=seconds)"