Unusable command on the sdk page

Open
#148 0 comments 0 reactions 0 assignees View on GitHub

Nobody has claimed this yet.

Assessment

Difficulty
3/5
Estimated time
1-2 days
Newbie friendliness
35/100
Issue type
Bug
Clarity
Needs clarification
Activity status
Stale
Tech stack
docker
Domain
devops

Research direction

Start by reproducing the docker pull command shown on the GitHub Container Registry sdk package page and inspect how that instruction is generated. Trace the package metadata or publishing entry point responsible for the digest-based command; done means the displayed command no longer references an unsupported DSSE envelope and successfully pulls the sdk image.

Written by the indexing model from the issue text.

Description

bug needs-triage

The instructions at the top of https://github.com/wolfi-dev/tools/pkgs/container/sdk indicate to use the following command:

docker pull ghcr.io/wolfi-dev/sdk:sha256-a69b068bfde6e7d5c20f8cbe482939f795044d26cc5498b270ca75aba9b418f9.att

However, that command results in an error message:

sha256-a69b068bfde6e7d5c20f8cbe482939f795044d26cc5498b270ca75aba9b418f9.att: Pulling from wolfi-dev/sdk unsupported media type application/vnd.dsse.envelope.v1+json

I don't know where this instruction comes from but having a command at the top which is not working doesn't seem great.

Dominant language
HCL
Stars
28
Forks
25
Avg merge
4d 31m
Merged PRs (30d)
6

Contributor guide

No contributing guide indexed for this repository

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

More from wolfi-dev/tools

All issues in wolfi-dev/tools

Similar issues

More DevOps issues

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.