Skip to content

Enable trusted compute for docker deployment #1353

Enable trusted compute for docker deployment

Enable trusted compute for docker deployment #1353

Triggered via pull request April 17, 2026 10:02
Status Success
Total duration 26m 23s
Artifacts 7

pre-merge.yml

on: pull_request
pre-checks
8s
pre-checks
Matrix: pre-merge-pipeline-no-docker
Waiting for pending jobs
Matrix: pre-merge-pipeline
pre-merge-root
pre-merge-root
final-check
3s
final-check
Fit to window
Zoom out
Zoom in

Annotations

2 errors and 5 warnings
pre-merge-pipeline (trusted-workload) / secrets-gitleaks-scan
Unexpected input(s) 'github_token', valid inputs are ['scan-scope', 'source', 'version', 'config_path', 'baseline_path', 'report_format', 'redact', 'exit_code_on_leak', 'report_suffix', 'upload-sarif']
pre-merge-pipeline (trusted-workload) / secrets-gitleaks-scan
Unexpected input(s) 'github_token', valid inputs are ['scan-scope', 'source', 'version', 'config_path', 'baseline_path', 'report_format', 'redact', 'exit_code_on_leak', 'report_suffix', 'upload-sarif']
pre-merge-pipeline (trusted-workload) / trivy-filesystem-scan
Node.js 20 actions are deprecated. The following actions are running on Node.js 20 and may not work as expected: actions/cache@0400d5f644dc74513175e3cd8d07132dd4860809. Actions will be forced to run with Node.js 24 by default starting June 2nd, 2026. Node.js 20 will be removed from the runner on September 16th, 2026. Please check if updated versions of these actions are available that support Node.js 24. To opt into Node.js 24 now, set the FORCE_JAVASCRIPT_ACTIONS_TO_NODE24=true environment variable on the runner or in your workflow file. Once Node.js 24 becomes the default, you can temporarily opt out by setting ACTIONS_ALLOW_USE_UNSECURE_NODE_VERSION=true. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
pre-merge-pipeline (trusted-workload) / trivy-config-scan
Node.js 20 actions are deprecated. The following actions are running on Node.js 20 and may not work as expected: actions/cache@0400d5f644dc74513175e3cd8d07132dd4860809. Actions will be forced to run with Node.js 24 by default starting June 2nd, 2026. Node.js 20 will be removed from the runner on September 16th, 2026. Please check if updated versions of these actions are available that support Node.js 24. To opt into Node.js 24 now, set the FORCE_JAVASCRIPT_ACTIONS_TO_NODE24=true environment variable on the runner or in your workflow file. Once Node.js 24 becomes the default, you can temporarily opt out by setting ACTIONS_ALLOW_USE_UNSECURE_NODE_VERSION=true. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
pre-merge-pipeline (trusted-workload) / trivy-critical-scan
Node.js 20 actions are deprecated. The following actions are running on Node.js 20 and may not work as expected: actions/cache@0400d5f644dc74513175e3cd8d07132dd4860809. Actions will be forced to run with Node.js 24 by default starting June 2nd, 2026. Node.js 20 will be removed from the runner on September 16th, 2026. Please check if updated versions of these actions are available that support Node.js 24. To opt into Node.js 24 now, set the FORCE_JAVASCRIPT_ACTIONS_TO_NODE24=true environment variable on the runner or in your workflow file. Once Node.js 24 becomes the default, you can temporarily opt out by setting ACTIONS_ALLOW_USE_UNSECURE_NODE_VERSION=true. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/

Artifacts

Produced during runtime
Name Size Digest
docker-images-trusted-workload
288 MB
sha256:a853e24d5714120448b665b75418023b83f166d851cc69f8e17958af66da7880
gitleaks-results-2qnp7d-trusted-workload
175 Bytes
sha256:9d99548e0b54fef2dcce1548a5425e69752ee4b06fad89d3e7d16a7727730027
trivy-cis-080137407410_dkr_ecr_us-west-2_amazonaws_com_edge-orch_trusted-compute_kata-deploy_1_4_9-pr-420-0c6b7a99
1001 Bytes
sha256:4be54847c26a50a8ed2c6a8d9f9badd0d0ce2831e1d2c9ea9d99e1e6ba51b103
trivy-config-scan-trusted-workload
519 Bytes
sha256:63c47b675fc5b5881bc0b9dd1b13bca2fb0fedc7b63f93f20851b7ccf7a2ffd0
trivy-fs-scan-report-trusted-workload
529 Bytes
sha256:f4e64c4453b22e90de8abede8e3a850aff9e84779ac86375c8ca95ba0bbd27dd
trivy-image-vuln-080137407410.dkr.ecr.us-west-2.amazonaws.com_edge-orch_trusted-compute_kata-deploy_1.4.9-pr-420
5.36 KB
sha256:bd8a0e3aa42634edcd2a70d840476303cf72f9c9b39a406524d34d396a88010c
zizmor-scan-report-trusted-workload
624 Bytes
sha256:08007c0ff43b9332274de978518204edd53e459b6b06a31b4f0edc935696c332