From a2ddc50ee794869fe2e73e71becec0d9394a2a87 Mon Sep 17 00:00:00 2001 From: "Jose I. Paris" Date: Mon, 23 Mar 2026 19:10:22 +0100 Subject: [PATCH 1/2] collect aiconfig material Signed-off-by: Jose I. Paris --- .github/workflows/author_verification.yml | 2 +- .../contracts/chainloop-vault-author-verification.yaml | 1 + 2 files changed, 2 insertions(+), 1 deletion(-) diff --git a/.github/workflows/author_verification.yml b/.github/workflows/author_verification.yml index 3c3c5aae0..714b2bd73 100644 --- a/.github/workflows/author_verification.yml +++ b/.github/workflows/author_verification.yml @@ -27,7 +27,7 @@ jobs: - name: Initialize Attestation run: | - chainloop attestation init --workflow $CHAINLOOP_WORKFLOW_NAME --project $CHAINLOOP_PROJECT + chainloop attestation init --workflow $CHAINLOOP_WORKFLOW_NAME --project $CHAINLOOP_PROJECT --collectors aiconfig env: # Needed for commit signature verification: https://docs.chainloop.dev/concepts/attestations#commit-verification GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }} diff --git a/.github/workflows/contracts/chainloop-vault-author-verification.yaml b/.github/workflows/contracts/chainloop-vault-author-verification.yaml index b769e7aa7..cbc6d7b8c 100644 --- a/.github/workflows/contracts/chainloop-vault-author-verification.yaml +++ b/.github/workflows/contracts/chainloop-vault-author-verification.yaml @@ -17,3 +17,4 @@ spec: - ref: slsa-checks with: runner: GITHUB_ACTION + - ref: ai-config-policies From 382f8760d54b6a582b260280b603299f9605de82 Mon Sep 17 00:00:00 2001 From: "Jose I. Paris" Date: Mon, 23 Mar 2026 19:13:26 +0100 Subject: [PATCH 2/2] remove setting Signed-off-by: Jose I. Paris --- .github/workflows/author_verification.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.github/workflows/author_verification.yml b/.github/workflows/author_verification.yml index 714b2bd73..3c3c5aae0 100644 --- a/.github/workflows/author_verification.yml +++ b/.github/workflows/author_verification.yml @@ -27,7 +27,7 @@ jobs: - name: Initialize Attestation run: | - chainloop attestation init --workflow $CHAINLOOP_WORKFLOW_NAME --project $CHAINLOOP_PROJECT --collectors aiconfig + chainloop attestation init --workflow $CHAINLOOP_WORKFLOW_NAME --project $CHAINLOOP_PROJECT env: # Needed for commit signature verification: https://docs.chainloop.dev/concepts/attestations#commit-verification GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }}