Merge pull request #6 from thevillagehacker/dev #36
security-pipeline.yml
on: push
Secrets scan (gitleaks)
8s
SAST (Semgrep)
38s
SCA / FS scan (Trivy)
10s
IaC scan (Checkov)
24s
Annotations
2 errors
|
SCA / FS scan (Trivy)
Process completed with exit code 1.
|
|
IaC scan (Checkov):
.github/workflows/security-pipeline.yml#L0
CKV2_GHA_1: "Ensure top-level permissions are not set to write-all"
|
Artifacts
Produced during runtime
| Name | Size | Digest | |
|---|---|---|---|
|
checkov-sarif
Expired
|
596 Bytes |
sha256:b05fb7fff18903069fd34cbde88dcaac334faea92ecb67761cac1af0f1e34c8d
|
|
|
gitleaks-results.sarif
Expired
|
6.59 KB |
sha256:b5e81f1f3c3ded0f01c3efe55a16f3e360b3ffee3fa7205bc755c19a3fe1f0cb
|
|
|
semgrep-sarif
Expired
|
29.1 KB |
sha256:a73a2492e7cd098fa511ab3081635b49ff002c77e1f8a6e112ea1878a3e389cf
|
|