Build and release image manually #22
Annotations
5 errors and 2 warnings
Linting Dockerfile with hadolint in GH Actions:
ckan/Dockerfile#L26
DL3013 warning: Pin versions in pip. Instead of `pip install <package>` use `pip install <package>==<version>` or `pip install --requirement <requirements file>`
|
Linting Dockerfile with hadolint in GH Actions:
ckan/Dockerfile#L26
SC3013 warning: In POSIX sh, -ef is undefined.
|
Linting Dockerfile with hadolint in GH Actions:
ckan/Dockerfile#L69
DL3003 warning: Use WORKDIR to switch to a directory
|
Linting Dockerfile with hadolint in GH Actions:
ckan/Dockerfile#L69
DL4006 warning: Set the SHELL option -o pipefail before RUN with a pipe in it. If you are using /bin/sh in an alpine image or if your shell is symlinked to busybox then consider explicitly setting your SHELL to /bin/ash, or disable this check
|
Linting Dockerfile with hadolint in GH Actions:
ckan/Dockerfile#L69
SC2086 info: Double quote to prevent globbing and word splitting.
|
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: docker/metadata-action@v4, github/codeql-action/upload-sarif@v2. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
|
Upload Trivy scan results to GitHub Security tab
CodeQL Action v2 will be deprecated on December 5th, 2024. Please update all occurrences of the CodeQL Action in your workflow files to v3. For more information, see https://github.blog/changelog/2024-01-12-code-scanning-deprecation-of-codeql-action-v2/
|
Loading