Skip to content

Enable trusted compute for docker deployment #1332

Enable trusted compute for docker deployment

Enable trusted compute for docker deployment #1332

Triggered via pull request April 15, 2026 09:18
Status Success
Total duration 28m 28s
Artifacts 7

pre-merge.yml

on: pull_request
pre-checks
14s
pre-checks
Matrix: pre-merge-pipeline-no-docker
Waiting for pending jobs
Matrix: pre-merge-pipeline
pre-merge-root
0s
pre-merge-root
final-check
2s
final-check
Fit to window
Zoom out
Zoom in

Annotations

2 errors and 5 warnings
pre-merge-pipeline (trusted-workload) / secrets-gitleaks-scan
Unexpected input(s) 'github_token', valid inputs are ['scan-scope', 'source', 'version', 'config_path', 'baseline_path', 'report_format', 'redact', 'exit_code_on_leak', 'report_suffix', 'upload-sarif']
pre-merge-pipeline (trusted-workload) / secrets-gitleaks-scan
Unexpected input(s) 'github_token', valid inputs are ['scan-scope', 'source', 'version', 'config_path', 'baseline_path', 'report_format', 'redact', 'exit_code_on_leak', 'report_suffix', 'upload-sarif']
pre-merge-pipeline (trusted-workload) / trivy-critical-scan
Node.js 20 actions are deprecated. The following actions are running on Node.js 20 and may not work as expected: actions/cache@0400d5f644dc74513175e3cd8d07132dd4860809. Actions will be forced to run with Node.js 24 by default starting June 2nd, 2026. Node.js 20 will be removed from the runner on September 16th, 2026. Please check if updated versions of these actions are available that support Node.js 24. To opt into Node.js 24 now, set the FORCE_JAVASCRIPT_ACTIONS_TO_NODE24=true environment variable on the runner or in your workflow file. Once Node.js 24 becomes the default, you can temporarily opt out by setting ACTIONS_ALLOW_USE_UNSECURE_NODE_VERSION=true. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
pre-merge-pipeline (trusted-workload) / trivy-filesystem-scan
Node.js 20 actions are deprecated. The following actions are running on Node.js 20 and may not work as expected: actions/cache@0400d5f644dc74513175e3cd8d07132dd4860809. Actions will be forced to run with Node.js 24 by default starting June 2nd, 2026. Node.js 20 will be removed from the runner on September 16th, 2026. Please check if updated versions of these actions are available that support Node.js 24. To opt into Node.js 24 now, set the FORCE_JAVASCRIPT_ACTIONS_TO_NODE24=true environment variable on the runner or in your workflow file. Once Node.js 24 becomes the default, you can temporarily opt out by setting ACTIONS_ALLOW_USE_UNSECURE_NODE_VERSION=true. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
pre-merge-pipeline (trusted-workload) / trivy-config-scan
Node.js 20 actions are deprecated. The following actions are running on Node.js 20 and may not work as expected: actions/cache@0400d5f644dc74513175e3cd8d07132dd4860809. Actions will be forced to run with Node.js 24 by default starting June 2nd, 2026. Node.js 20 will be removed from the runner on September 16th, 2026. Please check if updated versions of these actions are available that support Node.js 24. To opt into Node.js 24 now, set the FORCE_JAVASCRIPT_ACTIONS_TO_NODE24=true environment variable on the runner or in your workflow file. Once Node.js 24 becomes the default, you can temporarily opt out by setting ACTIONS_ALLOW_USE_UNSECURE_NODE_VERSION=true. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/

Artifacts

Produced during runtime
Name Size Digest
docker-images-trusted-workload
288 MB
sha256:b880ef2dd2fce63d75ac685e24c27980a13e4d2e6c954b75f3e597716935f265
gitleaks-results-zgrb8e-trusted-workload
175 Bytes
sha256:b0018be2dd16aafb1e5a897b71b92da116cbeac34d80be63a7e0ece324cd669a
trivy-cis-080137407410_dkr_ecr_us-west-2_amazonaws_com_edge-orch_trusted-compute_kata-deploy_1_4_9-pr-420-0c6b7a99
1001 Bytes
sha256:c57ea8db3e42306a7b9284dd29e72c307bbd69ec6c665d3c7b25c204e34537da
trivy-config-scan-trusted-workload
519 Bytes
sha256:d26ec42d0def91732a35c23ffd2ee5582b14db85a607e1c14c10e5008f40946c
trivy-fs-scan-report-trusted-workload
529 Bytes
sha256:6d58e006c4404b6233f45017a8eb66e40c438193e0c8515e8b23166d2ebb1a9c
trivy-image-vuln-080137407410.dkr.ecr.us-west-2.amazonaws.com_edge-orch_trusted-compute_kata-deploy_1.4.9-pr-420
5.36 KB
sha256:72101cd107301dd3fe0bb876459017e9a63fe5a2704eed8f77342b3ab81335ff
zizmor-scan-report-trusted-workload
624 Bytes
sha256:2f625b9d8af99f4248f52042323150c17e86fdbda4a5e6f9afc4f86563bc5429