ci(.github)[SEC-1084]: SLSA supply chain security controls #140
release.yaml
on: pull_request
Annotations
8 warnings
check
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: actions/checkout@v3. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
|
build-images
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: actions/checkout@v3, actions/upload-artifact@v3. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
|
scan-images
Failed minimum severity level. Found vulnerabilities with level 'critical' or higher
|
scan-images
Failed minimum severity level. Found vulnerabilities with level 'critical' or higher
|
scan-images
Failed minimum severity level. Found vulnerabilities with level 'critical' or higher
|
scan-images
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: actions/download-artifact@v3. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
|
release-images
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: actions/download-artifact@v3. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
|
Deprecation notice: v1, v2, and v3 of the artifact actions
The following artifacts were uploaded using a version of actions/upload-artifact that is scheduled for deprecation: "docker-archive", "insomnia-mockbin-amd64-sbom.cyclonedx.json", "insomnia-mockbin-amd64-sbom.spdx.json", "sbom.cyclonedx.json", "sbom.spdx.json".
Please update your workflow to use v4 of the artifact actions.
Learn more: https://github.blog/changelog/2024-04-16-deprecation-notice-v3-of-the-artifact-actions/
|
Artifacts
Produced during runtime
Name | Size | Digest | |
---|---|---|---|
cve-report.json
Expired
|
4.53 KB |
sha256:4f7bf5435ea6c345b8eca2b8dbac19076cabcb7c503841a65872050ca534c2fb
|
|
cve-report.sarif
Expired
|
1.65 KB |
sha256:d249a50130b572843cdfd1f21020232055455ec094636d1b7185b0f3a0a7c6bf
|
|
docker-archive
Expired
|
96.9 MB |
|
|
insomnia-mockbin-amd64-cis-report.json
Expired
|
699 Bytes |
sha256:297a8e8797c5ac0e6f6d3048077a392adc17c983d1bb71a5ed0338cfd5223ac1
|
|
insomnia-mockbin-amd64-cve-report.json
Expired
|
45.9 KB |
sha256:0f9fb9824829dc1b5600f358b91abda7ae35792d4346fd68f0fc764e8156a0e0
|
|
insomnia-mockbin-amd64-cve-report.sarif
Expired
|
20 KB |
sha256:33ddbd26a7740dcd58e05f279b10a2b0634a87e4d19fc7418777484ec1050d9b
|
|
insomnia-mockbin-amd64-sbom.cyclonedx.json
Expired
|
864 KB |
|
|
insomnia-mockbin-amd64-sbom.spdx.json
Expired
|
3.46 MB |
|
|
sbom.cyclonedx.json
Expired
|
323 KB |
|
|
sbom.spdx.json
Expired
|
561 KB |
|