Skip to content

Conversation

@sureshmarikkannu
Copy link
Contributor

No description provided.

@sureshmarikkannu sureshmarikkannu requested a review from a team February 12, 2026 15:37
@gab-arrobo gab-arrobo requested a review from Copilot February 12, 2026 15:45
Copy link

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

Adds supply-chain artifacts and security scanning to the release pipeline, along with a version bump and Dependabot schedule adjustments.

Changes:

  • Bump VERSION to 1.7.0
  • Add SBOM generation and Grype vulnerability scanning jobs to the GitHub Actions release workflow
  • Stagger Dependabot update days across ecosystems

Reviewed changes

Copilot reviewed 3 out of 3 changed files in this pull request and generated 1 comment.

File Description
VERSION Updates the project version to 1.7.0.
.github/workflows/push.yml Adds reusable-workflow jobs for SBOM generation and Grype scanning in the release pipeline.
.github/dependabot.yml Adjusts weekly update days to stagger Dependabot PRs.

💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.

Signed-off-by: Marikkannu, Suresh <suresh.marikkannu@intel.com>
Copy link
Contributor

@gab-arrobo gab-arrobo left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

+1

@gab-arrobo gab-arrobo merged commit 4ecb6a0 into omec-project:main Feb 12, 2026
8 checks passed
@sureshmarikkannu sureshmarikkannu deleted the sbom-grype branch February 12, 2026 16:26
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants