OSS_pygoat-devsecops-basic #22
oss_pygoat-devsecops-basic.yml
on: workflow_dispatch
Build and Push App
1m 28s
Deploy To Prod K8S Cluster
13s
Annotations
11 errors and 13 warnings
Do DevSecOps Tasks
🛑 missing gitleaks license. Go grab one at gitleaks.io and store it as a GitHub Secret named GITLEAKS_LICENSE. For more info about the recent breaking update, see [here](https://github.com/gitleaks/gitleaks-action#-announcement).
|
Run DevOps Shield Scan Linux
Errors: 100
|
Run DevOps Shield Scan Linux
Error - DOS6710:GhRepositoryDevsecopsControlSsSecretScanning
|
Run DevOps Shield Scan Linux
Error - DOS6710:GhRepositoryDevsecopsControlSsSecretScanning
|
Run DevOps Shield Scan Linux
Error - DOS6710:GhRepositoryDevsecopsControlSsSecretScanning
|
Run DevOps Shield Scan Linux
Error - DOS6710:GhRepositoryDevsecopsControlSsSecretScanning
|
Run DevOps Shield Scan Linux
Error - DOS6710:GhRepositoryDevsecopsControlSsSecretScanning
|
Run DevOps Shield Scan Linux
Error - DOS6710:GhRepositoryDevsecopsControlSsSecretScanning
|
Run DevOps Shield Scan Linux
Error - DOS6710:GhRepositoryDevsecopsControlSsSecretScanning
|
Run DevOps Shield Scan Linux
Error - DOS6720:GhRepositoryDevsecopsControlScaSoftwareCompositionAnalysis
|
Run DevOps Shield Scan Linux
Error - DOS6720:GhRepositoryDevsecopsControlScaSoftwareCompositionAnalysis
|
Do DevSecOps Tasks
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: microsoft/security-devops-action@v1, github/codeql-action/upload-sarif@v2. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
|
Do DevSecOps Tasks
CodeQL Action v2 will be deprecated on December 5th, 2024. Please update all occurrences of the CodeQL Action in your workflow files to v3. For more information, see https://github.blog/changelog/2024-01-12-code-scanning-deprecation-of-codeql-action-v2/
|
Run DevOps Shield Scan Linux
Warnings: 24
|
Run DevOps Shield Scan Linux
Warning - DOS5060:GhRepositoryPoliciesPullrequestsEnableAllowAutoMerge
|
Run DevOps Shield Scan Linux
Warning - DOS5060:GhRepositoryPoliciesPullrequestsEnableAllowAutoMerge
|
Run DevOps Shield Scan Linux
Warning - DOS5060:GhRepositoryPoliciesPullrequestsEnableAllowAutoMerge
|
Run DevOps Shield Scan Linux
Warning - DOS5060:GhRepositoryPoliciesPullrequestsEnableAllowAutoMerge
|
Run DevOps Shield Scan Linux
Warning - DOS5060:GhRepositoryPoliciesPullrequestsEnableAllowAutoMerge
|
Run DevOps Shield Scan Linux
Warning - DOS5060:GhRepositoryPoliciesPullrequestsEnableAllowAutoMerge
|
Run DevOps Shield Scan Linux
Warning - DOS5060:GhRepositoryPoliciesPullrequestsEnableAllowAutoMerge
|
Run DevOps Shield Scan Linux
Warning - DOS5060:GhRepositoryPoliciesPullrequestsEnableAllowAutoMerge
|
Run DevOps Shield Scan Linux
Warning - DOS5065:GhRepositoryPoliciesPullrequestsEnableAlwaysSuggestUpdatingPrBranches
|
Run SCA Analysis
No files were found with the provided path: /home/runner/work/devsecops-workshop/devsecops-workshop/image-scan-report.json. No artifacts will be uploaded.
|
Artifacts
Produced during runtime
Name | Size | |
---|---|---|
CodeAnalysisLogs
Expired
|
920 Bytes |
|
bandit-sast-report
Expired
|
2.59 KB |
|
dependency-check-reports
Expired
|
23.6 KB |
|
devops-shield-reports-linux
Expired
|
69.1 KB |
|
owasp_zap_report
Expired
|
920 Bytes |
|
selenium-test-results
Expired
|
373 Bytes |
|
unit-test-results
Expired
|
402 Bytes |
|