[2026-03-27T15:37:28,516396125+00:00] Upload SBOM Using token for quay.io/rhtap_qe/default-tenant/tsf-comp-apkw Pushing sbom to registry Executing: cosign attach sbom --sbom sbom.json --type spdx quay.io/rhtap_qe/default-tenant/tsf-comp-apkw:a828becbb1245483833f5d7ab1f9c92dbc5203d2@sha256:62d546390bfa79ee8d38c9bb7832a8405a7fe44ad82dd763ca7be79ee66e5f57 quay.io/rhtap_qe/default-tenant/tsf-comp-apkw@sha256:9657ade22766b1608f27953d7105467e02d8043f3c1c79a0c9887b26da84624aInitializing TUF root from http://tuf.tsf-tas.svc.cluster.local Executing: cosign initialize --root http://tuf.tsf-tas.svc.cluster.local/root.json --mirror http://tuf.tsf-tas.svc.cluster.local Root status: { "local": "/tekton/home/.sigstore/root", "remote": "http://tuf.tsf-tas.svc.cluster.local", "metadata": { "root.json": { "version": 1, "len": 4128, "expiration": "26 Mar 27 15:21 UTC", "error": "" }, "snapshot.json": { "version": 1, "len": 994, "expiration": "26 Mar 27 15:21 UTC", "error": "" }, "targets.json": { "version": 1, "len": 2071, "expiration": "26 Mar 27 15:21 UTC", "error": "" }, "timestamp.json": { "version": 1, "len": 995, "expiration": "26 Mar 27 15:21 UTC", "error": "" } }, "targets": [ "rekor.pub", "fulcio_v1.crt.pem", "trusted_root.json", "ctfe.pub" ] } [2026-03-27T15:37:31,888300020+00:00] Sign SBOM Signing and attaching SBOM to quay.io/rhtap_qe/default-tenant/tsf-comp-apkw:a828becbb1245483833f5d7ab1f9c92dbc5203d2@sha256:62d546390bfa79ee8d38c9bb7832a8405a7fe44ad82dd763ca7be79ee66e5f57 using keyless signing Executing: cosign attest -y --type spdxjson --predicate sbom.json --rekor-url=http://rekor-server.tsf-tas.svc.cluster.local --fulcio-url=http://fulcio-server.tsf-tas.svc.cluster.local --oidc-issuer=https://oidc.op1.openshiftapps.com/2jtsga3i2etnl697l7bk5i1kmbm4a95j quay.io/rhtap_qe/default-tenant/tsf-comp-apkw:a828becbb1245483833f5d7ab1f9c92dbc5203d2@sha256:62d546390bfa79ee8d38c9bb7832a8405a7fe44ad82dd763ca7be79ee66e5f57 [2026-03-27T15:37:35,476217838+00:00] End upload-sbom