BigHugger
sk Skill · harness

generate-slsa

Add a SLSA Generation step (YAML type: provenance) to an existing Harness pipeline to generate SLSA provenance and optionally attest with Cosign (keyless, key-based, or Vault). Supports container images (Docker, ECR, GCR, GAR, ACR, HAR) and Harness Local Stage artifacts. Place after image build/push; run sequentially after SBOM steps, not in parallel. Only works with existing pipelines. Use when asked to generate…

installs 8w
0
30-day movement
starts with the next reading
Related entries
1
Connections
0
yamlShell
Host repository
harness/harness-skills
Version
1.0.0
Compatible with
Requires Harness MCP v2 server (harness-mcp-v2)
Licence
Apache-2.0
Host stars
106
Host language
Shell