Skip to content

Security

Security #57

Triggered via schedule November 5, 2025 03:09
Status Failure
Total duration 1m 12s
Artifacts 1

security.yml

on: schedule
Dependency Vulnerability Scan
11s
Dependency Vulnerability Scan
Code Security Analysis
13s
Code Security Analysis
Secrets Detection
8s
Secrets Detection
Container Security Scan
1m 3s
Container Security Scan
Matrix: CodeQL Analysis
Fit to window
Zoom out
Zoom in

Annotations

5 errors and 7 warnings
Secrets Detection
Process completed with exit code 1.
Secrets Detection
BASE and HEAD commits are the same. TruffleHog won't scan anything. Please see documentation (https://github.com/trufflesecurity/trufflehog#octocat-trufflehog-github-action).
Dependency Vulnerability Scan
Process completed with exit code 1.
Code Security Analysis
Process completed with exit code 1.
Container Security Scan
Resource not accessible by integration - https://docs.github.com/rest
Dependency Vulnerability Scan
Failed to save: <h2>Our services aren't available right now</h2><p>We're working to restore all services as soon as possible. Please check back soon.</p>09L8KaQAAAABviPUJsEK0Q6+cHlKybf3+UEhMMzBFREdFMDExMABFZGdl
Dependency Vulnerability Scan
No files were found with the provided path: safety-report.json. No artifacts will be uploaded.
Dependency Vulnerability Scan
Failed to restore: Cache service responded with 400
Code Security Analysis
Failed to restore: Cache service responded with 400
Container Security Scan
This run of the CodeQL Action does not have permission to access the CodeQL Action API endpoints. This could be because the Action is running on a pull request from a fork. If not, please ensure the workflow has at least the 'security-events: read' permission. Details: Resource not accessible by integration - https://docs.github.com/rest
Container Security Scan
Resource not accessible by integration - https://docs.github.com/rest
Container Security Scan
This run of the CodeQL Action does not have permission to access the CodeQL Action API endpoints. This could be because the Action is running on a pull request from a fork. If not, please ensure the workflow has at least the 'security-events: read' permission. Details: Resource not accessible by integration - https://docs.github.com/rest

Artifacts

Produced during runtime
Name Size Digest
bandit-report
1.3 KB
sha256:0b8ec78cdabe7c1a9ebeb613585806d255fc684e8d0d8aa80bf19c88203dca7e