Security Audit #432
security-audit.yml
on: schedule
Detect Languages
/
Detect Languages
Common SAST
/
Semgrep SAST
Dependencies
/
Dependency Scan
Go SAST
/
Gosec Security Scan
Python SAST
/
Bandit Security Scan
Secrets
/
Secret Detection
Security Gate
/
Security Gate
Annotations
1 error
|
Invalid workflow file:
.github/workflows/security-audit.yml#L122
The workflow is not valid. .github/workflows/security-audit.yml (Line: 122, Col: 3): Error calling workflow 'SimplyLiz/CodeMCP/.github/workflows/security-dependencies.yml@3de722363e9a1110ea3ee5c46245c053b436c61c'. The nested job 'deps' is requesting 'attestations: write, id-token: write', but is only allowed 'attestations: none, id-token: none'.
|