Skip to content

ci: add main ci jobs #16

ci: add main ci jobs

ci: add main ci jobs #16

Triggered via pull request February 1, 2024 15:44
@xophamxopham
synchronize #13
ci/add-main-ci
Status Failure
Total duration 2m 38s
Artifacts 3

pr.yml

on: pull_request
ci  /  conditionals
0s
ci / conditionals
ci  /  ...  /  context
6s
ci / build / context
ci  /  ...  /  ossf-scorecard
23s
ci / compliance / ossf-scorecard
ci  /  ...  /  dependency review
9s
ci / compliance / dependency review
ci  /  ...  /  check-commit-message
2s
ci / compliance / check-commit-message
ci  /  ...  /  unit tests
0s
ci / unit-test / unit tests
ci  /  ...  /  bandit
41s
ci / sast / bandit
ci  /  ...  /  black
28s
ci / sast / black
ci  /  ...  /  checkov
35s
ci / sast / checkov
ci  /  ...  /  codeql
2m 12s
ci / sast / codeql
ci  /  ...  /  hadolint
22s
ci / sast / hadolint
ci  /  ...  /  kubelinter
13s
ci / sast / kubelinter
ci  /  ...  /  pylint
32s
ci / sast / pylint
ci  /  ...  /  semgrep
39s
ci / sast / semgrep
ci  /  ...  /  trivy config
46s
ci / sast / trivy config
ci  /  ...  /  deploy
5s
ci / docs / deploy
ci  /  ...  /  trivy image
47s
ci / sca / trivy image
ci  /  ...  /  grype
59s
ci / sca / grype
ci  /  ...  /  dependency review
14s
ci / sca / syft / dependency review
ci  /  ...  /  functional
3s
ci / integration-test / functional
Fit to window
Zoom out
Zoom in

Annotations

13 errors and 16 warnings
ci / docs / deploy
Process completed with exit code 1.
ci / sast / kubelinter
Process completed with exit code 1.
ci / sast / pylint
Process completed with exit code 20.
ci / sast / checkov: deployment/deployment.yaml#L3
CKV_K8S_21: "The default namespace should not be used"
ci / sast / checkov: deployment/deployment.yaml#L15
CKV_K8S_21: "The default namespace should not be used"
ci / sast / checkov: deployment/deployment.yaml#L31
CKV_K8S_21: "The default namespace should not be used"
ci / sast / checkov: deployment/deployment.yaml#L46
CKV_K8S_21: "The default namespace should not be used"
ci / sast / checkov: deployment/deployment.yaml#L119
CKV_K8S_21: "The default namespace should not be used"
ci / sast / checkov: deployment/deployment.yaml#L164
CKV_K8S_21: "The default namespace should not be used"
ci / sast / checkov: deployment/deployment.yaml#L225
CKV_K8S_21: "The default namespace should not be used"
ci / sast / checkov: deployment/deployment.yaml#L319
CKV_K8S_21: "The default namespace should not be used"
ci / sast / checkov: deployment/deployment.yaml#L319
CKV_K8S_49: "Minimize wildcard use in Roles and ClusterRoles"
ci / sast / checkov: deployment/deployment.yaml#L335
CKV_K8S_21: "The default namespace should not be used"
ci / build / context
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: docker/metadata-action@507c2f2dc502c992ad446e3d7a5dfbe311567a96. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
ci / compliance / dependency review
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: actions/dependency-review-action@7bbfa034e752445ea40215fff1c3bf9597993d3f. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
ci / sast / hadolint
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: github/codeql-action/upload-sarif@66b90a5db151a8042fa97405c6cf843bbe433f7b. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
ci / compliance / ossf-scorecard
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: github/codeql-action/upload-sarif@66b90a5db151a8042fa97405c6cf843bbe433f7b. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
ci / sast / checkov
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: github/codeql-action/upload-sarif@66b90a5db151a8042fa97405c6cf843bbe433f7b. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
ci / sast / semgrep
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: github/codeql-action/upload-sarif@66b90a5db151a8042fa97405c6cf843bbe433f7b. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
ci / sast / bandit
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: github/codeql-action/upload-sarif@407ffafae6a767df3e0230c3df91b6443ae8df75. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
ci / sast / trivy config
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: github/codeql-action/upload-sarif@32dc499307d133bb5085bae78498c0ac2cf762d5. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
ci / build / build
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: docker/setup-buildx-action@f03ac48505955848960e80bbb68046aa35c7b9e7, docker/login-action@f4ef78c080cd8ba55a85445d5b36e214a81df20a, docker/build-push-action@3b5e8027fcad23fda98b2e3ac259d8d67585f671, anchore/sbom-action@07978da4bdb4faa726e52dfc6b1bed63d4b56479, actions/upload-artifact@0b7f8abb1508181956e8e162db84b466c27e18ce. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
ci / sca / syft / dependency review
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: anchore/sbom-action@78fc58e266e87a38d4194b2137a3d4e9bcaf7ca1. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
ci / sca / syft / dependency review
Error uploading depdendency snapshot: { "url": "https://api.github.com/repos/sse-secure-systems/semgr8s/dependency-graph/snapshots", "status": 422, "headers": { "access-control-allow-origin": "*", "access-control-expose-headers": "ETag, Link, Location, Retry-After, X-GitHub-OTP, X-RateLimit-Limit, X-RateLimit-Remaining, X-RateLimit-Used, X-RateLimit-Resource, X-RateLimit-Reset, X-OAuth-Scopes, X-Accepted-OAuth-Scopes, X-Poll-Interval, X-GitHub-Media-Type, X-GitHub-SSO, X-GitHub-Request-Id, Deprecation, Sunset", "connection": "close", "content-length": "289", "content-security-policy": "default-src 'none'", "content-type": "application/json; charset=utf-8", "date": "Thu, 01 Feb 2024 15:46:01 GMT", "referrer-policy": "origin-when-cross-origin, strict-origin-when-cross-origin", "server": "GitHub.com", "strict-transport-security": "max-age=31536000; includeSubdomains; preload", "vary": "Accept-Encoding, Accept, X-Requested-With", "x-accepted-github-permissions": "contents=write", "x-content-type-options": "nosniff", "x-frame-options": "deny", "x-github-api-version-selected": "2022-11-28", "x-github-media-type": "github.v3; format=json", "x-github-request-id": "1840:1C1E:575E8EF:B0EA8FC:65BBBCB8", "x-ratelimit-limit": "100", "x-ratelimit-remaining": "99", "x-ratelimit-reset": "1706802420", "x-ratelimit-resource": "dependency_snapshots", "x-ratelimit-used": "1", "x-xss-protection": "0" }, "data": { "message": "invalid package url: in manifest \"ghcr.io/sse-secure-systems/semgr8s-test:sha-64b7aea:/bin/busybox\" decoding \"\": scheme is missing", "documentation_url": "https://docs.github.com/rest/dependency-graph/dependency-submission#create-a-snapshot-of-dependencies-for-a-repository" } }
ci / sca / trivy image
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: docker/login-action@f4ef78c080cd8ba55a85445d5b36e214a81df20a, github/codeql-action/upload-sarif@32dc499307d133bb5085bae78498c0ac2cf762d5. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
ci / sca / grype
Failed minimum severity level. Found vulnerabilities with level 'medium' or higher
ci / sca / grype
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: docker/login-action@f4ef78c080cd8ba55a85445d5b36e214a81df20a, anchore/scan-action@dafbc97d7259af88b61bd260f2fde565d0668a72, github/codeql-action/upload-sarif@32dc499307d133bb5085bae78498c0ac2cf762d5. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
ci / sast / codeql
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: github/codeql-action/init@407ffafae6a767df3e0230c3df91b6443ae8df75, github/codeql-action/analyze@407ffafae6a767df3e0230c3df91b6443ae8df75. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
ci / sast / codeql
1 issue was detected with this workflow: Please specify an on.push hook to analyze and see code scanning alerts from the default branch on the Security tab.

Artifacts

Produced during runtime
Name Size
cosign.pub Expired
178 Bytes
sbom.cdx Expired
298 KB
sse-secure-systems-semgr8s-test_sha-64b7aea.cyclonedx.json Expired
358 KB