Security #73
security.yml
on: schedule
Dependency Vulnerability Scan
12s
Code Security Analysis
12s
Secrets Detection
6s
Container Security Scan
1m 36s
Matrix: CodeQL Analysis
Annotations
5 errors and 9 warnings
|
Secrets Detection
Process completed with exit code 1.
|
|
Secrets Detection
BASE and HEAD commits are the same. TruffleHog won't scan anything. Please see documentation (https://github.com/trufflesecurity/trufflehog#octocat-trufflehog-github-action).
|
|
Dependency Vulnerability Scan
Process completed with exit code 1.
|
|
Code Security Analysis
Process completed with exit code 1.
|
|
Container Security Scan
Resource not accessible by integration - https://docs.github.com/rest
|
|
Dependency Vulnerability Scan
Failed to save: <h2>Our services aren't available right now</h2><p>We're working to restore all services as soon as possible. Please check back soon.</p>0wdcfaQAAAAAD0ZwACxyiSJBDrIaIT9LVUEhMMzBFREdFMDQxNwBFZGdl
|
|
Dependency Vulnerability Scan
No files were found with the provided path: safety-report.json. No artifacts will be uploaded.
|
|
Dependency Vulnerability Scan
Failed to restore: Cache service responded with 400
|
|
Code Security Analysis
Failed to restore: Cache service responded with 400
|
|
CodeQL Analysis (python)
CodeQL Action v3 will be deprecated in December 2026. Please update all occurrences of the CodeQL Action in your workflow files to v4. For more information, see https://github.blog/changelog/2025-10-28-upcoming-deprecation-of-codeql-action-v3/
|
|
Container Security Scan
This run of the CodeQL Action does not have permission to access the CodeQL Action API endpoints. This could be because the Action is running on a pull request from a fork. If not, please ensure the workflow has at least the 'security-events: read' permission. Details: Resource not accessible by integration - https://docs.github.com/rest
|
|
Container Security Scan
Resource not accessible by integration - https://docs.github.com/rest
|
|
Container Security Scan
This run of the CodeQL Action does not have permission to access the CodeQL Action API endpoints. This could be because the Action is running on a pull request from a fork. If not, please ensure the workflow has at least the 'security-events: read' permission. Details: Resource not accessible by integration - https://docs.github.com/rest
|
|
Container Security Scan
CodeQL Action v3 will be deprecated in December 2026. Please update all occurrences of the CodeQL Action in your workflow files to v4. For more information, see https://github.blog/changelog/2025-10-28-upcoming-deprecation-of-codeql-action-v3/
|
Artifacts
Produced during runtime
| Name | Size | Digest | |
|---|---|---|---|
|
bandit-report
|
1.3 KB |
sha256:5299996b3300a53e9d75cb9d6bd49af283d9b880bd009c4648e1083fa75b681a
|
|