Add GitHub Security Actions Workflow #1
ci-main-pull-request-checks.yml
on: pull_request
call-ci-main-pr-check-pipeline
/
Checkout repository
5s
Echo stub version
4s
call-ci-main-pr-check-pipeline
/
Pre-compilation checks
3s
call-ci-main-pr-check-pipeline
/
Build and compilation
4s
call-ci-main-pr-check-pipeline
/
...
/
Complexity and SLOC generation
18s
call-ci-main-pr-check-pipeline
/
Language-specific pre-compilation steps and linting
0s
call-ci-main-pr-check-pipeline
/
Language-agnostic pre-compilation steps
0s
call-ci-main-pr-check-pipeline
/
...
/
Trufflehog
13s
call-ci-main-pr-check-pipeline
/
polaris-sast
0s
call-ci-main-pr-check-pipeline
/
run-blackduck-sca
call-ci-main-pr-check-pipeline
/
Creating packaged binaries
0s
call-ci-main-pr-check-pipeline
/
...
/
Export SBOM from GitHub Dependency Graph API
6s
call-ci-main-pr-check-pipeline
/
...
/
Generate SBOM using Blackduck Tool
0s
call-ci-main-pr-check-pipeline
/
...
/
Generate MSFT SBOM
0s
call-ci-main-pr-check-pipeline
/
...
/
license_scout
0s
call-ci-main-pr-check-pipeline
/
...
/
Echo inputs
call-ci-main-pr-check-pipeline
/
...
/
SonarQube
call-ci-main-pr-check-pipeline
/
...
/
Echo inputs
call-ci-main-pr-check-pipeline
/
...
/
SonarQube
call-ci-main-pr-check-pipeline
/
...
/
Echo inputs
call-ci-main-pr-check-pipeline
/
...
/
SonarQube
Matrix: call-ci-main-pr-check-pipeline / Unit tests
call-ci-main-pr-check-pipeline
/
Creating Habitat packages
0s
call-ci-main-pr-check-pipeline
/
Publishing packages
Artifacts
Produced during runtime
| Name | Size | Digest | |
|---|---|---|---|
|
inspec-inspec-gcp-20250723124419-GitHub-sbom.csv
Expired
|
289 Bytes |
sha256:806ea46361fb534e717e191e3e4a85f894dc24321ba1dfc53147246d849800fc
|
|
|
inspec-inspec-gcp-20250723124419-GitHub-sbom.json
Expired
|
1.41 KB |
sha256:b78cb9f3c8170ee444eee1fd6cce90ac2a052477cca7b516537b87dd4997cef4
|
|
|
scc-output.txt
Expired
|
88.1 KB |
sha256:2ff2f475e8ee0a7b34e151cfb49447824f39a55f8d0ba27a18875ba9215783c7
|
|