setup-kosli-cli
ActionsTags
(1)Verified
Sets up the Kosli CLI for GitHub Actions runners
This action sets up the Kosli CLI, on GitHub's hosted Actions runners.
This action can be run on ubuntu-latest, windows-latest, and macos-latest GitHub Actions runners,
and will install and expose a specified version of the kosli CLI on the runner environment.
Setup the kosli CLI (installs the latest release by default):
steps:
- uses: kosli-dev/setup-cli-action@v5A specific version of the kosli CLI can be installed:
steps:
- name: setup-kosli-cli
uses: kosli-dev/setup-cli-action@v5
with:
version: 2.11.43To track a major version and pick up every update within it without ever jumping to
the next (breaking) major, pass just the major number. version: "2" always installs
the newest stable 2.x release, and never 3.0.0:
steps:
- name: setup-kosli-cli
uses: kosli-dev/setup-cli-action@v5
with:
version: "2" # newest stable 2.x, never 3.xYou can pin a minor line the same way. version: "2.11" installs the newest stable
2.11.z patch:
steps:
- name: setup-kosli-cli
uses: kosli-dev/setup-cli-action@v5
with:
version: "2.11"Quote the version. In YAML,
version: 2.10is parsed as the number2.1, which is not what you mean. Always quote a major or minor pin:version: "2",version: "2.10".
To explicitly pin to the newest published release at runtime, pass latest:
steps:
- name: setup-kosli-cli
uses: kosli-dev/setup-cli-action@v5
with:
version: latestThe action supports the following inputs:
-
version: The version ofkoslito install. Accepts:- a full semver, e.g.
2.11.43, installed as-is; - a major pin, e.g.
"2", which resolves to the newest stable2.xrelease; - a major.minor pin, e.g.
"2.11", which resolves to the newest stable2.11.zrelease; - the alias
latest, which resolves to the newest stable release ofkosli-dev/cli.
Major and minor pins resolve at runtime and never select a pre-release or a higher major. Quote partial versions (see the note above). Defaults to
latest. - a full semver, e.g.
-
github-token: Token used to authenticate the GitHub API calls that resolvelatestor a major/minor pin. Defaults to${{ github.token }}; normally you do not need to set this.
version: The resolvedkosliCLI version that was installed. Whenversionislatestor a major/minor pin, this contains the concrete semver that was selected (e.g.2.12.0) and can be referenced by later steps viasteps.<id>.outputs.version.
env:
KOSLI_DRY_RUN: ${{ vars.KOSLI_DRY_RUN }} # false
KOSLI_API_TOKEN: ${{ secrets.KOSLI_API_TOKEN }}
KOSLI_ORG: my-org
KOSLI_FLOW: my-flow
KOSLI_TRAIL: ${{ github.sha }}
jobs:
build-image:
runs-on: ubuntu-latest
steps:
- ...
- name: Build and push Docker image to ECR
id: build
uses: docker/build-push-action@v5
with:
push: true
...
- name: Setup kosli
uses: kosli-dev/setup-cli-action@v5
- name: Attest ECR image provenance
run:
kosli attest artifact "${IMAGE_NAME}" --artifact-type=ociMIT.
setup-kosli-cli is not certified by GitHub. It is provided by a third-party and is governed by separate terms of service, privacy policy, and support documentation.