security(actions): bump actions/download-artifact from 4 to 6 (#3) #10
security.yml
on: push
Dependency Vulnerability Scan
1m 36s
Static Application Security Testing
2m 28s
Secrets Scanning
5s
Container Security Scan
2m 34s
Security Summary
4s
Annotations
6 errors
|
Secrets Scanning
Process completed with exit code 1.
|
|
Secrets Scanning
BASE and HEAD commits are the same. TruffleHog won't scan anything. Please see documentation (https://github.com/trufflesecurity/trufflehog#octocat-trufflehog-github-action).
|
|
Static Application Security Testing
CodeQL Action major versions v1 and v2 have been deprecated. Please update all occurrences of the CodeQL Action in your workflow files to v3. For more information, see https://github.blog/changelog/2025-01-10-code-scanning-codeql-action-v2-is-now-deprecated/
|
|
Container Security Scan
Path does not exist: scout-results.sarif
|
|
Container Security Scan
could not authenticate: user githubactions not entitled to use Docker Scout
|
|
Container Security Scan
CodeQL Action major versions v1 and v2 have been deprecated. Please update all occurrences of the CodeQL Action in your workflow files to v3. For more information, see https://github.blog/changelog/2025-01-10-code-scanning-codeql-action-v2-is-now-deprecated/
|
Artifacts
Produced during runtime
| Name | Size | Digest | |
|---|---|---|---|
|
container-scan-reports
|
2.11 KB |
sha256:ae4c782694f27a2902f80176b8fa78d656e5bd772cf3b7a8edf8d5f13cf8b630
|
|
|
dependency-scan-reports
|
1.05 KB |
sha256:5cd2c7f07cf5c99ec58c0899f2246a4fd2ae94ffe2a7656bd54db4fbfde514cb
|
|
|
sast-reports
|
11.9 KB |
sha256:9db2ab81e2dea95d94cdad83663e5ba0cbbdec173bde817516a530cc23284e87
|
|
|
security-summary
|
407 Bytes |
sha256:de40a9e330572725470e2c6fb165a166581c783172ad3c56043108091cd411d6
|
|