Add GitHub Security Actions Workflow #1
ci-main-pull-request-checks.yml
on: pull_request
call-ci-main-pr-check-pipeline
/
Checkout repository
5s
Echo stub version
2s
call-ci-main-pr-check-pipeline
/
Pre-compilation checks
6s
call-ci-main-pr-check-pipeline
/
Build and compilation
3s
call-ci-main-pr-check-pipeline
/
...
/
Complexity and SLOC generation
17s
call-ci-main-pr-check-pipeline
/
Language-specific pre-compilation steps and linting
0s
call-ci-main-pr-check-pipeline
/
Language-agnostic pre-compilation steps
0s
call-ci-main-pr-check-pipeline
/
...
/
Trufflehog
8s
call-ci-main-pr-check-pipeline
/
polaris-sast
0s
call-ci-main-pr-check-pipeline
/
run-blackduck-sca
0s
call-ci-main-pr-check-pipeline
/
Creating packaged binaries
0s
call-ci-main-pr-check-pipeline
/
...
/
Export SBOM from GitHub Dependency Graph API
9s
call-ci-main-pr-check-pipeline
/
...
/
Generate SBOM using Blackduck Tool
0s
call-ci-main-pr-check-pipeline
/
...
/
Generate MSFT SBOM
0s
call-ci-main-pr-check-pipeline
/
...
/
license_scout
0s
call-ci-main-pr-check-pipeline
/
...
/
Echo inputs
call-ci-main-pr-check-pipeline
/
...
/
SonarQube
call-ci-main-pr-check-pipeline
/
...
/
Echo inputs
call-ci-main-pr-check-pipeline
/
...
/
SonarQube
call-ci-main-pr-check-pipeline
/
...
/
Echo inputs
call-ci-main-pr-check-pipeline
/
...
/
SonarQube
Matrix: call-ci-main-pr-check-pipeline / Unit tests
call-ci-main-pr-check-pipeline
/
Creating Habitat packages
0s
call-ci-main-pr-check-pipeline
/
Publishing packages
0s
Artifacts
Produced during runtime
| Name | Size | Digest | |
|---|---|---|---|
|
inspec-inspec-train-20250723124531-GitHub-sbom.csv
Expired
|
293 Bytes |
sha256:19005247d04b08714ba5825f5f8044e370a2bdd5c4f2e7e9aec1c15bc5d7da65
|
|
|
inspec-inspec-train-20250723124531-GitHub-sbom.json
Expired
|
1.02 KB |
sha256:de73837f8b79b35347d8bbbd211348b67b11ce1f14420b8bbe981fa37de83cf3
|
|
|
scc-output.txt
Expired
|
841 Bytes |
sha256:7c60f2d6e585df17812261502598d99a4fed652ec340fc355b8f765f53f15dc3
|
|