Skip to content

Rekor Monitor

Rekor Monitor #12868

name: Rekor Monitor
on:
schedule:
- cron: '0 * * * *' # hourly
jobs:
run-consistency-proof:
permissions:
contents: read
issues: write
id-token: write
uses: sigstore/rekor-monitor/.github/workflows/reusable_monitoring.yml@be31d0d7ff5766e27baac1f6029edc07cbf04a54
with:
file_issue: true
artifact_retention_days: 14
identities: |
certIdentities:
- certSubject: ^${{ github.server_url }}/${{ github.repository }}/\.github/workflows/build-and-push\.yaml@.*
issuers:
- https://token.actions.githubusercontent.com
- certSubject: ^${{ github.server_url }}/${{ github.repository }}/\.github/workflows/scan-image\.yaml@.*
issuers:
- https://token.actions.githubusercontent.com
- certSubject: ^${{ github.server_url }}/${{ github.repository }}/\.github/workflows/policy-verification\.yaml@.*
issuers:
- https://token.actions.githubusercontent.com