Skip to content

feat: audit mode

feat: audit mode #156

Triggered via push June 13, 2024 22:30
Status Success
Total duration 3m 59s
Artifacts 2

push.yml

on: push
ci  /  conditionals
0s
ci / conditionals
ci  /  ...  /  context
5s
ci / build / context
ci  /  ...  /  ossf-scorecard
0s
ci / compliance / ossf-scorecard
ci  /  ...  /  dependency review
0s
ci / compliance / dependency review
ci  /  ...  /  check-commit-message
0s
ci / compliance / check-commit-message
ci  /  ...  /  semgrep policy
ci / semgrep / semgrep policy
ci  /  ...  /  trivy image
40s
ci / sca / trivy image
ci  /  ...  /  grype
41s
ci / sca / grype
ci  /  ...  /  dependency review
13s
ci / sca / syft / dependency review
Matrix: ci / integration-test / functional
Matrix: ci / integration-test / k8s versions
Matrix: ci / integration-test / optional
Matrix: ci / integration-test / optional k8s versions
Fit to window
Zoom out
Zoom in

Annotations

11 errors and 7 warnings
ci / sast / checkov: deployment/deployment.yaml#L3
CKV_K8S_21: "The default namespace should not be used"
ci / sast / checkov: deployment/deployment.yaml#L15
CKV_K8S_21: "The default namespace should not be used"
ci / sast / checkov: deployment/deployment.yaml#L31
CKV_K8S_21: "The default namespace should not be used"
ci / sast / checkov: deployment/deployment.yaml#L47
CKV_K8S_21: "The default namespace should not be used"
ci / sast / checkov: deployment/deployment.yaml#L83
CKV_K8S_21: "The default namespace should not be used"
ci / sast / checkov: deployment/deployment.yaml#L83
CKV_K8S_49: "Minimize wildcard use in Roles and ClusterRoles"
ci / sast / checkov: deployment/deployment.yaml#L99
CKV_K8S_21: "The default namespace should not be used"
ci / sast / checkov: deployment/deployment.yaml#L119
CKV_K8S_21: "The default namespace should not be used"
ci / sast / checkov: deployment/deployment.yaml#L139
CKV_K8S_21: "The default namespace should not be used"
ci / sast / checkov: deployment/deployment.yaml#L139
CKV_K8S_43: "Image should use digest"
ci / sast / kubelinter
Process completed with exit code 1.
ci / build / context
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: docker/metadata-action@507c2f2dc502c992ad446e3d7a5dfbe311567a96. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
ci / sast / trivy config
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: github/codeql-action/upload-sarif@32dc499307d133bb5085bae78498c0ac2cf762d5. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
ci / build / build
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: docker/setup-buildx-action@f03ac48505955848960e80bbb68046aa35c7b9e7, docker/login-action@f4ef78c080cd8ba55a85445d5b36e214a81df20a, docker/build-push-action@3b5e8027fcad23fda98b2e3ac259d8d67585f671, anchore/sbom-action@07978da4bdb4faa726e52dfc6b1bed63d4b56479. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
ci / sca / grype
Failed minimum severity level. Found vulnerabilities with level 'medium' or higher
ci / sca / grype
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: docker/login-action@f4ef78c080cd8ba55a85445d5b36e214a81df20a, anchore/scan-action@dafbc97d7259af88b61bd260f2fde565d0668a72, github/codeql-action/upload-sarif@32dc499307d133bb5085bae78498c0ac2cf762d5. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
ci / sca / trivy image
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: docker/login-action@f4ef78c080cd8ba55a85445d5b36e214a81df20a, github/codeql-action/upload-sarif@32dc499307d133bb5085bae78498c0ac2cf762d5. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
Deprecation notice: v1, v2, and v3 of the artifact actions
The following artifacts were uploaded using a version of actions/upload-artifact that is scheduled for deprecation: "sbom.cdx". Please update your workflow to use v4 of the artifact actions. Learn more: https://github.blog/changelog/2024-04-16-deprecation-notice-v3-of-the-artifact-actions/

Artifacts

Produced during runtime
Name Size
sbom.cdx
202 KB
semgr8ns-semgr8s_sha-e958504.cyclonedx.json
10.4 KB