security(actions): bump actions/setup-node from 4 to 6 (#4) #11
security.yml
on: push
Dependency Vulnerability Scan
1m 21s
Static Application Security Testing
2m 27s
Secrets Scanning
6s
Container Security Scan
2m 22s
Security Summary
7s
Annotations
6 errors
|
Secrets Scanning
Process completed with exit code 1.
|
|
Secrets Scanning
BASE and HEAD commits are the same. TruffleHog won't scan anything. Please see documentation (https://github.com/trufflesecurity/trufflehog#octocat-trufflehog-github-action).
|
|
Container Security Scan
Path does not exist: scout-results.sarif
|
|
Container Security Scan
could not authenticate: user githubactions not entitled to use Docker Scout
|
|
Container Security Scan
CodeQL Action major versions v1 and v2 have been deprecated. Please update all occurrences of the CodeQL Action in your workflow files to v3. For more information, see https://github.blog/changelog/2025-01-10-code-scanning-codeql-action-v2-is-now-deprecated/
|
|
Static Application Security Testing
CodeQL Action major versions v1 and v2 have been deprecated. Please update all occurrences of the CodeQL Action in your workflow files to v3. For more information, see https://github.blog/changelog/2025-01-10-code-scanning-codeql-action-v2-is-now-deprecated/
|
Artifacts
Produced during runtime
| Name | Size | Digest | |
|---|---|---|---|
|
container-scan-reports
|
2.11 KB |
sha256:3f2e713330c7177393bb5f46c6217dc058c7e55050b73116a6313040b43f8625
|
|
|
dependency-scan-reports
|
1.05 KB |
sha256:340021be7bb6b208604d28dfddfc0b25b58f7428397960c6b416cf0ee46db937
|
|
|
sast-reports
|
11.9 KB |
sha256:b76f7f9dd28586bafcebd8e18c465f5997f60bb75edceef1a8a67a2fcf91dd35
|
|
|
security-summary
|
407 Bytes |
sha256:77f39c15ea594ae6098012ab0e814cbf5c0b5fab407456736ac96f2dba29a9e7
|
|