feat: audit mode #428
pr.yml
on: pull_request
ci
/
conditionals
0s
ci
/
...
/
ossf-scorecard
15s
ci
/
...
/
dependency review
6s
ci
/
...
/
check-commit-message
5s
ci
/
...
/
unit tests
31s
ci
/
...
/
validate rules
30s
ci
/
...
/
test rules
33s
ci
/
...
/
bandit
37s
ci
/
...
/
black
29s
ci
/
...
/
checkov
27s
ci
/
...
/
codeql
2m 11s
ci
/
...
/
hadolint
16s
ci
/
...
/
kubelinter
13s
ci
/
...
/
pylint
38s
ci
/
...
/
semgrep
34s
ci
/
...
/
trivy config
26s
ci
/
...
/
docs
25s
ci
/
...
/
semgrep policy
1m 6s
ci
/
...
/
trivy image
42s
ci
/
...
/
grype
0s
ci
/
...
/
dependency review
0s
Matrix: ci / integration-test / functional
Matrix: ci / integration-test / k8s versions
Matrix: ci / integration-test / optional
Matrix: ci / integration-test / optional k8s versions
Annotations
11 errors and 6 warnings
ci / sast / kubelinter
Process completed with exit code 1.
|
ci / sast / checkov:
deployment/deployment.yaml#L3
CKV_K8S_21: "The default namespace should not be used"
|
ci / sast / checkov:
deployment/deployment.yaml#L15
CKV_K8S_21: "The default namespace should not be used"
|
ci / sast / checkov:
deployment/deployment.yaml#L31
CKV_K8S_21: "The default namespace should not be used"
|
ci / sast / checkov:
deployment/deployment.yaml#L47
CKV_K8S_21: "The default namespace should not be used"
|
ci / sast / checkov:
deployment/deployment.yaml#L83
CKV_K8S_21: "The default namespace should not be used"
|
ci / sast / checkov:
deployment/deployment.yaml#L83
CKV_K8S_49: "Minimize wildcard use in Roles and ClusterRoles"
|
ci / sast / checkov:
deployment/deployment.yaml#L99
CKV_K8S_21: "The default namespace should not be used"
|
ci / sast / checkov:
deployment/deployment.yaml#L119
CKV_K8S_21: "The default namespace should not be used"
|
ci / sast / checkov:
deployment/deployment.yaml#L139
CKV_K8S_21: "The default namespace should not be used"
|
ci / sast / checkov:
deployment/deployment.yaml#L139
CKV_K8S_43: "Image should use digest"
|
ci / build / context
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: docker/metadata-action@507c2f2dc502c992ad446e3d7a5dfbe311567a96. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
|
ci / sast / trivy config
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: github/codeql-action/upload-sarif@32dc499307d133bb5085bae78498c0ac2cf762d5. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
|
ci / build / build
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: docker/setup-buildx-action@f03ac48505955848960e80bbb68046aa35c7b9e7, docker/login-action@f4ef78c080cd8ba55a85445d5b36e214a81df20a, docker/build-push-action@3b5e8027fcad23fda98b2e3ac259d8d67585f671, anchore/sbom-action@07978da4bdb4faa726e52dfc6b1bed63d4b56479. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
|
ci / sca / trivy image
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: docker/login-action@f4ef78c080cd8ba55a85445d5b36e214a81df20a, github/codeql-action/upload-sarif@32dc499307d133bb5085bae78498c0ac2cf762d5. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
|
ci / sast / codeql
1 issue was detected with this workflow: Please specify an on.push hook to analyze and see code scanning alerts from the default branch on the Security tab.
|
Deprecation notice: v1, v2, and v3 of the artifact actions
The following artifacts were uploaded using a version of actions/upload-artifact that is scheduled for deprecation: "sbom.cdx".
Please update your workflow to use v4 of the artifact actions.
Learn more: https://github.blog/changelog/2024-04-16-deprecation-notice-v3-of-the-artifact-actions/
|
Artifacts
Produced during runtime
Name | Size | |
---|---|---|
sbom.cdx
Expired
|
202 KB |
|