Skip to content

feat: add pause resume billing adjustment #920

feat: add pause resume billing adjustment

feat: add pause resume billing adjustment #920

Triggered via pull request August 28, 2026 15:17
Status Failure
Total duration 3m 58s
Artifacts 4

security-scan.yml

on: pull_request
SAST - Semgrep OWASP Top 10
1m 45s
SAST - Semgrep OWASP Top 10
Dependency Scanning
3m 37s
Dependency Scanning
Container Scanning - Trivy
2s
Container Scanning - Trivy
DAST - OWASP ZAP Baseline
3m 39s
DAST - OWASP ZAP Baseline
Security Dashboard
11s
Security Dashboard
Fit to window
Zoom out
Zoom in

Annotations

6 errors and 8 warnings
Container Scanning - Trivy
Unable to resolve action `aquasecurity/trivy-action@0.30.0`, unable to find version `0.30.0`
SAST - Semgrep OWASP Top 10
Process completed with exit code 1.
SAST - Semgrep OWASP Top 10
11 critical semgrep finding(s) block merge.
Dependency Scanning
Process completed with exit code 1.
Dependency Scanning
8 critical dependencies finding(s) block merge.
DAST - OWASP ZAP Baseline
Process completed with exit code 1.
SAST - Semgrep OWASP Top 10
Node.js 20 is deprecated. The following actions target Node.js 20 but are being forced to run on Node.js 24: actions/setup-python@v5, actions/upload-artifact@v4, github/codeql-action/upload-sarif@v3. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
SAST - Semgrep OWASP Top 10
CodeQL Action v3 will be deprecated in December 2026. Please update all occurrences of the CodeQL Action in your workflow files to v4. For more information, see https://github.blog/changelog/2025-10-28-upcoming-deprecation-of-codeql-action-v3/
SAST - Semgrep OWASP Top 10
198 high-severity semgrep finding(s) require security-team review.
Dependency Scanning
Node.js 20 is deprecated. The following actions target Node.js 20 but are being forced to run on Node.js 24: actions/setup-python@v5, actions/upload-artifact@v4. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
Dependency Scanning
34 high-severity dependencies finding(s) require security-team review.
DAST - OWASP ZAP Baseline
Node.js 20 is deprecated. The following actions target Node.js 20 but are being forced to run on Node.js 24: actions/upload-artifact@v4. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
Security Dashboard
Node.js 20 is deprecated. The following actions target Node.js 20 but are being forced to run on Node.js 24: actions/download-artifact@v4, actions/upload-artifact@v4. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
Security Dashboard
232 high-severity security finding(s) require security-team review.

Artifacts

Produced during runtime
Name Size Digest
security-dashboard
8.22 KB
sha256:977839b3054af3a58799225fec6a8a6510363f1db27ed8b9443fddc905fb7fc2
security-dast-zap
277 Bytes
sha256:af9061b0c1ad8feb5fe4952641a0d102074c016fc3eb3b03a05115d35a3f8a84
security-dependency-scan
21.7 KB
sha256:9033879d819289c8fca9aa74612eedf7be292d77cd971e3a4c14601beb6b3563
security-sast-semgrep
147 KB
sha256:cf29094f460406e9e226c2b50a50ae5336b2e322870f46bbe35d22049a4c1c50