Add GitHub Security Actions Workflow #1
ci-main-pull-request-checks.yml
on: pull_request
call-ci-main-pr-check-pipeline
/
Checkout repository
5s
Echo stub version
2s
call-ci-main-pr-check-pipeline
/
Pre-compilation checks
5s
call-ci-main-pr-check-pipeline
/
Build and compilation
3s
call-ci-main-pr-check-pipeline
/
...
/
Complexity and SLOC generation
20s
call-ci-main-pr-check-pipeline
/
Language-specific pre-compilation steps and linting
0s
call-ci-main-pr-check-pipeline
/
Language-agnostic pre-compilation steps
0s
call-ci-main-pr-check-pipeline
/
...
/
Trufflehog
8s
call-ci-main-pr-check-pipeline
/
polaris-sast
0s
call-ci-main-pr-check-pipeline
/
run-blackduck-sca
0s
call-ci-main-pr-check-pipeline
/
Creating packaged binaries
0s
call-ci-main-pr-check-pipeline
/
...
/
Export SBOM from GitHub Dependency Graph API
10s
call-ci-main-pr-check-pipeline
/
...
/
Generate SBOM using Blackduck Tool
0s
call-ci-main-pr-check-pipeline
/
...
/
Generate MSFT SBOM
0s
call-ci-main-pr-check-pipeline
/
...
/
license_scout
0s
call-ci-main-pr-check-pipeline
/
...
/
Echo inputs
call-ci-main-pr-check-pipeline
/
...
/
SonarQube
call-ci-main-pr-check-pipeline
/
...
/
Echo inputs
call-ci-main-pr-check-pipeline
/
...
/
SonarQube
call-ci-main-pr-check-pipeline
/
...
/
Echo inputs
call-ci-main-pr-check-pipeline
/
...
/
SonarQube
Matrix: call-ci-main-pr-check-pipeline / Unit tests
call-ci-main-pr-check-pipeline
/
Creating Habitat packages
0s
call-ci-main-pr-check-pipeline
/
Publishing packages
0s
Artifacts
Produced during runtime
| Name | Size | Digest | |
|---|---|---|---|
|
inspec-inspec-alicloud-20250723124115-GitHub-sbom.csv
Expired
|
299 Bytes |
sha256:501cdbc4b99b813845c08b41c3dc801df63ace7b12ff60979c2b8583b8bb57bd
|
|
|
inspec-inspec-alicloud-20250723124115-GitHub-sbom.json
Expired
|
1.25 KB |
sha256:88a1ed4e87f974ad2da1fb5527cba7362fd148580b0aa806efea22d4083af467
|
|
|
scc-output.txt
Expired
|
7.41 KB |
sha256:4e7a3a0c8a5c174b189f89e54ece73ee1e9a5b10357f9fa8f8fdf859766d3531
|
|