Skip to content

fix: use unpinned tags in Dockerfile.distroless per code review

c2444a0
Select commit
Loading
Failed to load commit list.
Merged

TT-16964 - remove sbom job from release workflow #962

fix: use unpinned tags in Dockerfile.distroless per code review
c2444a0
Select commit
Loading
Failed to load commit list.
SonarQubeCloud / SonarCloud Code Analysis failed Apr 14, 2026 in 27s

Quality Gate failed

Failed conditions
C Security Rating on New Code (required ≥ A)

See analysis details on SonarQube Cloud

Catch issues before they fail your Quality Gate with our IDE extension SonarQube for IDE

Annotations

Check warning on line 10 in .github/workflows/ci-test.yml

See this annotation in the file changed.

@sonarqubecloud sonarqubecloud / SonarCloud Code Analysis

Move this read permission from workflow level to job level.

See more on https://sonarcloud.io/project/issues?id=TykTechnologies_tyk-pump&issues=AZ2LTXCrXJkIqGYU4kIy&open=AZ2LTXCrXJkIqGYU4kIy&pullRequest=962

Check warning on line 27 in .github/workflows/release.yml

See this annotation in the file changed.

@sonarqubecloud sonarqubecloud / SonarCloud Code Analysis

Move this read permission from workflow level to job level.

See more on https://sonarcloud.io/project/issues?id=TykTechnologies_tyk-pump&issues=AZ2LTXELXJkIqGYU4kI0&open=AZ2LTXELXJkIqGYU4kI0&pullRequest=962

Check warning on line 15 in .github/workflows/linter.yaml

See this annotation in the file changed.

@sonarqubecloud sonarqubecloud / SonarCloud Code Analysis

Move this write permission from workflow level to job level.

See more on https://sonarcloud.io/project/issues?id=TykTechnologies_tyk-pump&issues=AZ2LTXDkXJkIqGYU4kIz&open=AZ2LTXDkXJkIqGYU4kIz&pullRequest=962