Skip to content

feat: dependency scan & update #3

feat: dependency scan & update

feat: dependency scan & update #3

Triggered via pull request August 24, 2026 10:10
Status Success
Total duration 47s
Artifacts 2

dependency-security.yml

on: pull_request
Submit dependency graph
34s
Submit dependency graph
OSV scan (all modules)
27s
OSV scan (all modules)
Review dependency changes
6s
Review dependency changes
Fit to window
Zoom out
Zoom in

Annotations

6 warnings and 1 notice
OSV scan (all modules)
Node.js 20 is deprecated. The following actions target Node.js 20 but are being forced to run on Node.js 24: actions/checkout@v4, actions/github-script@v7, actions/setup-java@v4, actions/upload-artifact@v4, gradle/actions/setup-gradle@v4. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
OSV scan (all modules)
setup-java v4 is deprecated and will no longer receive updates. Please migrate to actions/setup-java@v5.
Submit dependency graph
Node.js 20 is deprecated. The following actions target Node.js 20 but are being forced to run on Node.js 24: actions/checkout@v4, actions/setup-java@v4, gradle/actions/dependency-submission@v4. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
Submit dependency graph
setup-java v4 is deprecated and will no longer receive updates. Please migrate to actions/setup-java@v5.
Review dependency changes
Node.js 20 is deprecated. The following actions target Node.js 20 but are being forced to run on Node.js 24: actions/checkout@v4, actions/dependency-review-action@v4. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
OpenSSF Scorecard Warning
maven/kr.motd.maven:os-maven-plugin has an OpenSSF Scorecard of 2.5, which is less than this repository's threshold of 3.
Submit dependency graph
Submitted dependency-graph-reports/dependency_security_scan-dependency-submission.json: The snapshot was accepted, but it is not for the default branch. It will not update dependency results for the repository.

Artifacts

Produced during runtime
Name Size Digest
dependency-graph_dependency_security_scan-dependency-submission.json
1.1 KB
sha256:7f351107129c04dac0c0d7f0dc98e4ce7f4b9965ae2a7e21aabefa818b67ae7f
resolved-dependencies
896 Bytes
sha256:2633bd3010372842e050b0819e18b0559e46dce18c9738d03139f18a8781fe49