Skip to content

ci(NODE-7025): New SBOM generation workflow on dependencies change#4807

Merged
baileympearson merged 16 commits intomongodb:mainfrom
ekovalets:main
Jan 30, 2026
Merged

ci(NODE-7025): New SBOM generation workflow on dependencies change#4807
baileympearson merged 16 commits intomongodb:mainfrom
ekovalets:main

Conversation

@ekovalets
Copy link
Contributor

Description

Summary of Changes

This PR adds a new GitHub Actions workflow that will be triggered on packages change.
The trigger will generate a new SBOM.json file and if it differs from the project on will create PR.

Notes for Reviewers

Please review if this is going to work for how you handle project branches.

What is the motivation for this change?

SSDLC Improvement Goals

Double check the following

  • Lint is passing (npm run check:lint)
  • Self-review completed using the steps outlined here
  • PR title follows the correct format: type(NODE-xxxx)[!]: description
    • Example: feat(NODE-1234)!: rewriting everything in coffeescript
  • Changes are covered by tests
  • New TODOs have a related JIRA ticket

@baileympearson baileympearson changed the title ci(NODE-7025)!: New SBOM generation workflow on dependencies change ci(NODE-7025): New SBOM generation workflow on dependencies change Dec 11, 2025
@baileympearson baileympearson marked this pull request as ready for review January 16, 2026 17:50
@baileympearson baileympearson requested a review from a team as a code owner January 16, 2026 17:50
@baileympearson baileympearson self-assigned this Jan 16, 2026
@baileympearson baileympearson added the Primary Review In Review with primary reviewer, not yet ready for team's eyes label Jan 16, 2026
baileympearson
baileympearson previously approved these changes Jan 30, 2026
tadjik1
tadjik1 previously approved these changes Jan 30, 2026
@github-actions github-actions bot dismissed stale reviews from tadjik1 and baileympearson via 79b9332 January 30, 2026 16:57
@baileympearson baileympearson merged commit ea31dcd into mongodb:main Jan 30, 2026
25 of 30 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Primary Review In Review with primary reviewer, not yet ready for team's eyes

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants