Skip to content

ci(.github)[SEC-1084]: SLSA supply chain security controls #139

ci(.github)[SEC-1084]: SLSA supply chain security controls

ci(.github)[SEC-1084]: SLSA supply chain security controls #139

Triggered via pull request April 25, 2024 13:58
Status Success
Total duration 3m 4s
Artifacts 10

release.yaml

on: pull_request
build-images
53s
build-images
scan-images
49s
scan-images
release-images
28s
release-images
release-images-provenance  /  detect-env
release-images-provenance / detect-env
release-images-provenance  /  generator
release-images-provenance / generator
release-images-provenance  /  final
release-images-provenance / final
Fit to window
Zoom out
Zoom in

Annotations

8 warnings
check
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: actions/checkout@v3. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
build-images
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: actions/checkout@v3, actions/upload-artifact@v3. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
scan-images
Failed minimum severity level. Found vulnerabilities with level 'critical' or higher
scan-images
Failed minimum severity level. Found vulnerabilities with level 'critical' or higher
scan-images
Failed minimum severity level. Found vulnerabilities with level 'critical' or higher
scan-images
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: actions/download-artifact@v3. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
release-images
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: actions/download-artifact@v3. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
Deprecation notice: v1, v2, and v3 of the artifact actions
The following artifacts were uploaded using a version of actions/upload-artifact that is scheduled for deprecation: "docker-archive", "insomnia-mockbin-amd64-sbom.cyclonedx.json", "insomnia-mockbin-amd64-sbom.spdx.json", "sbom.cyclonedx.json", "sbom.spdx.json". Please update your workflow to use v4 of the artifact actions. Learn more: https://github.blog/changelog/2024-04-16-deprecation-notice-v3-of-the-artifact-actions/

Artifacts

Produced during runtime
Name Size Digest
cve-report.json Expired
4.53 KB
sha256:d97c4724877fed030d958beb66fe668db697626a9cb8bb58ec17fb0c6ef17fe2
cve-report.sarif Expired
1.65 KB
sha256:7c53a6e71c9886c47930c2a60d9e1138af69b378d93231dd93d2345bc1bf11e6
docker-archive Expired
96.9 MB
insomnia-mockbin-amd64-cis-report.json Expired
699 Bytes
sha256:d9768dc7228670f87fb656fd6c52d3547002a84e917c552d7262e1cef424c0b6
insomnia-mockbin-amd64-cve-report.json Expired
45.9 KB
sha256:e833c4304586480f8fceccae0a89e45f381b15a30dc5f93aae0290c462ddc199
insomnia-mockbin-amd64-cve-report.sarif Expired
20 KB
sha256:e825f2d9d25b245d8c51acba5241e7f23caa70fe2e29c8b310ee9bc5029636d5
insomnia-mockbin-amd64-sbom.cyclonedx.json Expired
864 KB
insomnia-mockbin-amd64-sbom.spdx.json Expired
3.46 MB
sbom.cyclonedx.json Expired
323 KB
sbom.spdx.json Expired
561 KB