INFO: Using mounted CA bundle: /mnt/trusted-ca/ca-bundle.crt '/mnt/trusted-ca/ca-bundle.crt' -> '/etc/pki/ca-trust/source/anchors/ca-bundle.crt' Using token for quay.io/redhat-appstudio-qe/build-e2e-sample-python-basic-oci-docker-build/component-sample-python-basic-oci-docker-build [2026-08-13T06:07:27,277016620+00:00] Upload SBOM Pushing sbom to registry [retry] executing: cosign attach sbom --sbom sbom.json --type spdx quay.io/redhat-appstudio-qe/build-e2e-sample-python-basic-oci-docker-build/component-sample-python-basic-oci-docker-build:on-pr-796b6eba9933ba93cf94614711e709eabc615e3c@sha256:cde95b80c1be7c6a2b17edac2e4ec0520ef2f1647a204f36d8595e77f4b12af8 WARNING: SBOM attachments are deprecated and support will be removed in a Cosign release soon after 2024-02-22 (see https://github.com/sigstore/cosign/issues/2755). Instead, please use SBOM attestations. WARNING: Attaching SBOMs this way does not sign them. To sign them, use 'cosign attest --predicate sbom.json --key '. Uploading SBOM file for [quay.io/redhat-appstudio-qe/build-e2e-sample-python-basic-oci-docker-build/component-sample-python-basic-oci-docker-build@sha256:cde95b80c1be7c6a2b17edac2e4ec0520ef2f1647a204f36d8595e77f4b12af8] to [quay.io/redhat-appstudio-qe/build-e2e-sample-python-basic-oci-docker-build/component-sample-python-basic-oci-docker-build:sha256-cde95b80c1be7c6a2b17edac2e4ec0520ef2f1647a204f36d8595e77f4b12af8.sbom] with mediaType [text/spdx+json]. quay.io/redhat-appstudio-qe/build-e2e-sample-python-basic-oci-docker-build/component-sample-python-basic-oci-docker-build@sha256:7029a8432d903063be0679348fa9d0a9538d38628af1f6106f13b59005ffa800 [2026-08-13T06:07:29,826347279+00:00] Handle keyless signing if enabled [retry] executing: kubectl get configmap cluster-config -n konflux-info -o json Keyless signing is disabled (none of rekorInternalUrl, fulcioInternalUrl, defaultOIDCIssuer, tufInternalUrl are configured in the konflux-info/cluster-config configmap) [2026-08-13T06:07:30,481168468+00:00] End upload-sbom