Skip to content

feat(security): Add comprehensive security scanning infrastructure #195

feat(security): Add comprehensive security scanning infrastructure

feat(security): Add comprehensive security scanning infrastructure #195

Triggered via pull request November 30, 2025 16:37
Status Success
Total duration 6m 5s
Artifacts 2

ci.yml

on: pull_request
Detect Changes
6s
Detect Changes
Dependency Review
8s
Dependency Review
Matrix: Docker Build Test
Matrix: Python CI
Frontend CI
36s
Frontend CI
CI Summary
2s
CI Summary
Fit to window
Zoom out
Zoom in

Annotations

13 warnings
OpenSSF Scorecard Warning
npm/regexp-tree has an OpenSSF Scorecard of 2.5, which is less than this repository's threshold of 3.
Frontend CI: frontend/scripts/validate-i18n.js#L233
Function Call Object Injection Sink
Frontend CI: frontend/scripts/validate-i18n.js#L225
Function Call Object Injection Sink
Frontend CI: frontend/scripts/validate-i18n.js#L191
Generic Object Injection Sink
Frontend CI: frontend/scripts/validate-i18n.js#L141
Generic Object Injection Sink
Frontend CI: frontend/scripts/validate-i18n.js#L132
Function Call Object Injection Sink
Frontend CI: frontend/scripts/validate-i18n.js#L124
Function Call Object Injection Sink
Frontend CI: frontend/scripts/validate-i18n.js#L64
Generic Object Injection Sink
Frontend CI: frontend/scripts/validate-i18n.js#L63
Found readFileSync from package "fs" with non literal argument at index 0
Frontend CI: frontend/scripts/validate-i18n.js#L50
Found readdirSync from package "fs" with non literal argument at index 0
Frontend CI: frontend/scripts/validate-i18n.js#L46
Found existsSync from package "fs" with non literal argument at index 0
Variables should be defined before their use: api/Dockerfile#L151
UndefinedVar: Usage of undefined variable '$LD_LIBRARY_PATH' More info: https://docs.docker.com/go/dockerfile/rule/undefined-var/
Variables should be defined before their use: api/Dockerfile#L68
UndefinedVar: Usage of undefined variable '$LD_LIBRARY_PATH' More info: https://docs.docker.com/go/dockerfile/rule/undefined-var/

Artifacts

Produced during runtime
Name Size Digest
berntpopp~phentrieve~4P7ABJ.dockerbuild Expired
45.3 KB
sha256:d73091fa7f4730c3efbfba381cbc2a77dea84019696ced60dbef7a6bac581d36
berntpopp~phentrieve~XOPJCE.dockerbuild Expired
98.3 KB
sha256:a587d0f18cca6d61e39487a3030731f3ef176176096a1f59b61d53925b8d1a74