Skip to content

feat: publish container image to Docker Hub alongside GHCR - #193

Merged
advaitpatel merged 1 commit into
mainfrom
feat/dockerhub-publish
Sep 21, 2026
Merged

advaitpatel merged 1 commit into
mainfrom
feat/dockerhub-publish

Conversation

@advaitpatel

Copy link
Copy Markdown
Collaborator

Summary

  • Adds owasp/docksec on Docker Hub as a second push target in publish-container-image.yml, reusing the same multi-arch build and tag set already computed for GHCR
  • Fixes an invalid enable attribute in the metadata-action tags block that surfaced when the workflow is triggered directly via workflow_dispatch (inputs.publish_latest is unset in that path and rendered as an empty string instead of a boolean)
  • publish-to-pypi.yml now forwards DOCKERHUB_USERNAME/DOCKERHUB_TOKEN secrets to the reusable workflow

Requires before merge/run

  • Repository secrets DOCKERHUB_USERNAME and DOCKERHUB_TOKEN must exist (Docker Hub access token with Read & Write scope)

Test plan

  • Run "Publish Container Image" manually with tag: 2026.9.21 and confirm both ghcr.io/owasp/docksec:2026.9.21 and owasp/docksec:2026.9.21 are pushed

Adds owasp/docksec on Docker Hub as a second push target in
publish-container-image.yml, using the same multi-arch build and tag
set already computed for GHCR. Also fixes an invalid enable attribute
in the metadata-action tags block that surfaced when the workflow is
triggered directly via workflow_dispatch (inputs.publish_latest is
unset in that path, which rendered as an empty string instead of a
boolean).
@github-actions github-actions Bot added the ci Changes to CI/CD workflows label Sep 21, 2026
@github-actions

Copy link
Copy Markdown

Dependency Review

✅ No vulnerabilities or license issues or OpenSSF Scorecard issues found.

Scanned Files

None

@advaitpatel
advaitpatel merged commit 7e2433b into main Sep 21, 2026
12 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

ci Changes to CI/CD workflows

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant