No description
Find a file
dependabot[bot] e2aae1da73
chore(deps): bump sigstore/cosign-installer from 3.3.0 to 3.4.0 (#121)
Bumps [sigstore/cosign-installer](https://github.com/sigstore/cosign-installer) from 3.3.0 to 3.4.0.
- [Release notes](https://github.com/sigstore/cosign-installer/releases)
- [Commits](https://github.com/sigstore/cosign-installer/compare/v3.3.0...v3.4.0)

---
updated-dependencies:
- dependency-name: sigstore/cosign-installer
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-02-05 17:43:46 +00:00
.github chore(deps): bump sigstore/cosign-installer from 3.3.0 to 3.4.0 (#121) 2024-02-05 17:43:46 +00:00
empty fix: copy empty directory to be missing folders 2024-01-27 18:50:30 +02:00
modules fix(gschema-overrides): Get rid of files module dependency (#120) 2024-02-05 10:46:13 +00:00
Containerfile fix: copy empty directory to be missing folders 2024-01-27 18:50:30 +02:00
cosign.pub chore: add sample files and README 2023-06-25 00:09:55 -03:00
LICENSE Initial commit 2023-06-24 16:38:47 -04:00
modules.json fix: switch urls to fetch main branch in modules.json 2024-02-04 18:11:17 +02:00
README.md docs: update README to reflect current state of repo 2024-01-24 18:31:11 +02:00

bling

build-ublue

This repository containes modules to use in recipe.yml. See list of modules in ./modules

Usage

You can add this to your Containerfile to copy the modules from this image over:

COPY --from=ghcr.io/ublue-os/bling:latest /modules /tmp/modules/

Verification

These images are signed with sisgstore's cosign. You can verify the signature by downloading the cosign.pub key from this repo and running the following command:

cosign verify --key cosign.pub ghcr.io/ublue-os/bling

See what is in this image

Raw commands

NOTE: This makes it so you need to extract everything from the base image!

podman save ghcr.io/ublue-os/bling:latest -o bling.tar
tar xf bling.tar && rm bling.tar
tar xf *.tar

This should extract the image in a way that you can see everything in it!

Using Dive

This method allows you to inspect the image through a TUI

dive ghcr.io/ublue-os/bling:latest