Skip to content

feat: governance access query implementation [OM-360] #4025

feat: governance access query implementation [OM-360]

feat: governance access query implementation [OM-360] #4025

Triggered via pull request June 8, 2026 13:35
Status Failure
Total duration 2m 32s
Artifacts 5

security.yaml

on: pull_request
Secret Scanning
29s
Secret Scanning
Repository Scan
2m 28s
Repository Scan
Scan GitHub Workflows
15s
Scan GitHub Workflows
Fit to window
Zoom out
Zoom in

Annotations

1 error, 4 warnings, and 1 notice
Repository Scan
Failed minimum severity level. Found vulnerabilities with level 'critical' or higher
Scan GitHub Workflows
Node.js 20 actions are deprecated. The following actions are running on Node.js 20 and may not work as expected: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02. Actions will be forced to run with Node.js 24 by default starting June 16th, 2026. Node.js 20 will be removed from the runner on September 16th, 2026. Please check if updated versions of these actions are available that support Node.js 24. To opt into Node.js 24 now, set the FORCE_JAVASCRIPT_ACTIONS_TO_NODE24=true environment variable on the runner or in your workflow file. Once Node.js 24 becomes the default, you can temporarily opt out by setting ACTIONS_ALLOW_USE_UNSECURE_NODE_VERSION=true. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
Repository Scan
Node.js 20 actions are deprecated. The following actions are running on Node.js 20 and may not work as expected: actions/cache@0400d5f644dc74513175e3cd8d07132dd4860809, actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02, anchore/sbom-action@f8bdd1d8ac5e901a77a92f111440fdb1b593736b, anchore/scan-action/download-grype@f6601287cdb1efc985d6b765bbf99cb4c0ac29d8, anchore/scan-action@f6601287cdb1efc985d6b765bbf99cb4c0ac29d8. Actions will be forced to run with Node.js 24 by default starting June 16th, 2026. Node.js 20 will be removed from the runner on September 16th, 2026. Please check if updated versions of these actions are available that support Node.js 24. To opt into Node.js 24 now, set the FORCE_JAVASCRIPT_ACTIONS_TO_NODE24=true environment variable on the runner or in your workflow file. Once Node.js 24 becomes the default, you can temporarily opt out by setting ACTIONS_ALLOW_USE_UNSECURE_NODE_VERSION=true. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
Repository Scan
Failed minimum severity level. Found vulnerabilities with level 'critical' or higher
Repository Scan
Failed minimum severity level. Found vulnerabilities with level 'critical' or higher
Repository Scan
Grype DB is updated successfully

Artifacts

Produced during runtime
Name Size Digest
openmeter-cloud-cve-report.json
35.8 KB
sha256:8534d0e391dfaf5103d185cbdaca83b4bc16febebeba26baac873936fb718cbd
openmeter-cloud-cve-report.sarif
14 KB
sha256:30d7af5e56a567caff6969f1283c2b8aab9bfb2ab17cc71341a8b64bc4e79dab
openmeter-cloud-sbom.cyclonedx.json
197 KB
sha256:2b3dcf815dc08271b076345bca50192079a0134f6958e3997caba4ae17f57a0f
openmeter-cloud-sbom.spdx.json
267 KB
sha256:8e6861497056b6faa3f692d797e0c8a641c8e6be0dfe3c966a9ebf33d34b160e
zizmor_gh_anti_pattern.zip
865 Bytes
sha256:cb750e7b2b685469803616a80219066b6a3a5da25df6222c62816f4b3baa8e50