Enable SBOM generation during release

- add sbom plugin to main.js
- Add SBOM-related configurations to container's build.sbt and plugins.sbt
- Wrap release file downloads in a conditional check for pre-existing release directory
- update check-release/README.md with detailed workflow setup instructions.
- Add SBOM-related configurations to enable XML format publishing during the release process.
- verify reproducibility of sbom artifacts
- Add detailed testing instructions for the release-candidate action in its README.

DAFFODIL-2993
6 files changed
tree: aed1e002544292cf000d73f5fcbbde8f694c1efb
  1. .github/
  2. actions/
  3. containers/
  4. .asf.yaml
  5. .gitignore
  6. README.md
README.md

Apache Daffodil Infrastructure

This repository contains tools and utilities related to infrastructure (e.g. continuous integration, releases) for the Apache Daffodil project and subprojects.