Add GitHub Security Actions Workflow #1
ci-main-pull-request-checks.yml
on: pull_request
call-ci-main-pr-check-pipeline
/
Checkout repository
3s
Echo stub version
2s
call-ci-main-pr-check-pipeline
/
Pre-compilation checks
4s
call-ci-main-pr-check-pipeline
/
Build and compilation
2s
call-ci-main-pr-check-pipeline
/
...
/
Complexity and SLOC generation
16s
call-ci-main-pr-check-pipeline
/
Language-specific pre-compilation steps and linting
0s
call-ci-main-pr-check-pipeline
/
Language-agnostic pre-compilation steps
0s
call-ci-main-pr-check-pipeline
/
...
/
Trufflehog
7s
call-ci-main-pr-check-pipeline
/
polaris-sast
0s
call-ci-main-pr-check-pipeline
/
run-blackduck-sca
0s
call-ci-main-pr-check-pipeline
/
Creating packaged binaries
0s
call-ci-main-pr-check-pipeline
/
...
/
Export SBOM from GitHub Dependency Graph API
9s
call-ci-main-pr-check-pipeline
/
...
/
Generate SBOM using Blackduck Tool
0s
call-ci-main-pr-check-pipeline
/
...
/
Generate MSFT SBOM
0s
call-ci-main-pr-check-pipeline
/
...
/
license_scout
0s
call-ci-main-pr-check-pipeline
/
...
/
Echo inputs
call-ci-main-pr-check-pipeline
/
...
/
SonarQube
call-ci-main-pr-check-pipeline
/
...
/
Echo inputs
call-ci-main-pr-check-pipeline
/
...
/
SonarQube
call-ci-main-pr-check-pipeline
/
...
/
Echo inputs
call-ci-main-pr-check-pipeline
/
...
/
SonarQube
Matrix: call-ci-main-pr-check-pipeline / Unit tests
call-ci-main-pr-check-pipeline
/
Creating Habitat packages
0s
call-ci-main-pr-check-pipeline
/
Publishing packages
0s
Artifacts
Produced during runtime
Name | Size | Digest | |
---|---|---|---|
habitat-sh-sample-node-app-20250823012959-GitHub-sbom.csv
|
307 Bytes |
sha256:40965732d3e26e69d9205f15df91f7b54d36e683790f6fc8919660aa91cfeedc
|
|
habitat-sh-sample-node-app-20250823012959-GitHub-sbom.json
|
7.9 KB |
sha256:baa6137a0090d74ad5e1557ca736cacac1fa0050da6315bc54a8ce0450bbafb9
|
|
scc-output.txt
Expired
|
1.25 KB |
sha256:6d4c042f0d599fe83a0a2119d7d419eadfa206743a4b3c72e9b6179744002b30
|
|