Skip to content

chore(deps)(deps): bump alpine from 865b95f to 2510918 in /gearbox in the docker-images group #15

chore(deps)(deps): bump alpine from 865b95f to 2510918 in /gearbox in the docker-images group

chore(deps)(deps): bump alpine from 865b95f to 2510918 in /gearbox in the docker-images group #15

Triggered via pull request February 1, 2026 09:15
Status Failure
Total duration 1m 30s
Artifacts 1

security.yml

on: pull_request
Go Security Scan (gosec)
1m 16s
Go Security Scan (gosec)
Trivy Repository Scan
23s
Trivy Repository Scan
NPM Security Audit
7s
NPM Security Audit
Secret Scanning (gitleaks)
9s
Secret Scanning (gitleaks)
Dependency Review
4s
Dependency Review
Security Scan Summary
3s
Security Scan Summary
Fit to window
Zoom out
Zoom in

Annotations

4 errors and 9 warnings
Dependency Review
Unable to resolve action `actions/dependency-review-action@v6`, unable to find version `v6`
Trivy Repository Scan
Trivy Repository Scan
Failed to gather information for telemetry: Resource not accessible by integration - https://docs.github.com/rest/actions/workflow-runs#get-a-workflow-run. Will skip sending status report.
Trivy Repository Scan
Failed to gather information for telemetry: Resource not accessible by integration - https://docs.github.com/rest/actions/workflow-runs#get-a-workflow-run. Will skip sending status report.
Trivy Repository Scan
CodeQL Action v3 will be deprecated in December 2026. Please update all occurrences of the CodeQL Action in your workflow files to v4. For more information, see https://github.blog/changelog/2025-10-28-upcoming-deprecation-of-codeql-action-v3/
Go Security Scan (gosec)
Failed to gather information for telemetry: Resource not accessible by integration - https://docs.github.com/rest/actions/workflow-runs#get-a-workflow-run. Will skip sending status report.
Go Security Scan (gosec)
Failed to gather information for telemetry: Resource not accessible by integration - https://docs.github.com/rest/actions/workflow-runs#get-a-workflow-run. Will skip sending status report.
Go Security Scan (gosec)
Failed to gather information for telemetry: Resource not accessible by integration - https://docs.github.com/rest/actions/workflow-runs#get-a-workflow-run. Will skip sending status report.
Go Security Scan (gosec)
Failed to gather information for telemetry: Resource not accessible by integration - https://docs.github.com/rest/actions/workflow-runs#get-a-workflow-run. Will skip sending status report.
Go Security Scan (gosec)
CodeQL Action v3 will be deprecated in December 2026. Please update all occurrences of the CodeQL Action in your workflow files to v4. For more information, see https://github.blog/changelog/2025-10-28-upcoming-deprecation-of-codeql-action-v3/
Go Security Scan (gosec)
Restore cache failed: Dependencies file is not found in /home/runner/work/gearbox/gearbox. Supported file pattern: go.sum

Artifacts

Produced during runtime
Name Size Digest
npm-audit-results Expired
314 Bytes
sha256:7ebb48481233bdd23c6ba4cc14b8c023050ea1c115e3e2b8212a9b92e6c94c50