Vulnerability Scanning #61
vulnerability-scanning.yml
on: schedule
Dependency Vulnerability Scan
29s
Container Image Scan
15s
Code Vulnerability Scan
1m 44s
NPM Audit
2s
Security Headers Check
5s
Secrets Detection
6s
Annotations
6 errors and 15 warnings
|
NPM Audit
This request has been automatically failed because it uses a deprecated version of `actions/upload-artifact: v3`. Learn more: https://github.blog/changelog/2024-04-16-deprecation-notice-v3-of-the-artifact-actions/
|
|
Secrets Detection
Process completed with exit code 1.
|
|
Secrets Detection
BASE and HEAD commits are the same. TruffleHog won't scan anything. Please see documentation (https://github.com/trufflesecurity/trufflehog#octocat-trufflehog-github-action).
|
|
Container Image Scan
Process completed with exit code 1.
|
|
Code Vulnerability Scan
Resource not accessible by integration
|
|
Code Vulnerability Scan
CodeQL Action major versions v1 and v2 have been deprecated. Please update all occurrences of the CodeQL Action in your workflow files to v3. For more information, see https://github.blog/changelog/2025-01-10-code-scanning-codeql-action-v2-is-now-deprecated/
|
|
Security Headers Check
Node.js 20 is deprecated. The following actions target Node.js 20 but are being forced to run on Node.js 24: actions/checkout@v4. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
|
|
Secrets Detection
Node.js 20 is deprecated. The following actions target Node.js 20 but are being forced to run on Node.js 24: actions/checkout@v4. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
|
|
Container Image Scan
Node.js 20 is deprecated. The following actions target Node.js 20 but are being forced to run on Node.js 24: actions/checkout@v4. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
|
|
Dependency Vulnerability Scan
Node.js 20 is deprecated. The following actions target Node.js 20 but are being forced to run on Node.js 24: actions/checkout@v4. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
|
|
Code Vulnerability Scan
Node.js 20 is deprecated. The following actions target Node.js 20 but are being forced to run on Node.js 24: actions/checkout@v4, github/codeql-action/analyze@v2, github/codeql-action/autobuild@v2, github/codeql-action/init@v2. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
|
|
Code Vulnerability Scan
Resource not accessible by integration
|
|
Code Vulnerability Scan
Resource not accessible by integration
|
|
Code Vulnerability Scan
Resource not accessible by integration
|
|
Code Vulnerability Scan
Resource not accessible by integration
|
|
Code Vulnerability Scan
Resource not accessible by integration
|
|
Code Vulnerability Scan
Resource not accessible by integration
|
|
Code Vulnerability Scan
Resource not accessible by integration
|
|
Code Vulnerability Scan
Feature flags do not specify a default CLI version. Falling back to the CLI version shipped with the Action. This is 2.20.1.
|
|
Code Vulnerability Scan
This run of the CodeQL Action does not have permission to access Code Scanning API endpoints. As a result, it will not be opted into any experimental features. This could be because the Action is running on a pull request from a fork. If not, please ensure the Action has the 'security-events: write' permission. Details: Resource not accessible by integration
|
|
Code Vulnerability Scan
Resource not accessible by integration
|