CCM-13343: Trivy Package and Library Scans #2309
cicd-1-pull-request.yaml
on: push
Set CI/CD metadata
4s
Commit stage
/
Scan secrets
9s
Commit stage
/
Check file format
10s
Commit stage
/
Check Markdown format
9s
Commit stage
/
Check English usage
9s
Commit stage
/
Check TODO usage
5s
Commit stage
/
Trivy Package Scan
1m 32s
Commit stage
/
Count lines of code
6s
Commit stage
/
Scan dependencies
43s
Commit stage
/
Check for changes to event schema package compared to main branch
4s
Commit stage
/
Check event schema version has been updated
0s
Commit stage
/
Check for event schemas package version change
0s
Commit stage
/
Run terraform-docs
7s
Commit stage
/
Lint Terraform
3s
Commit stage
/
Trivy IaC Scan
1m 42s
Test stage
/
Check generated dependencies
Test stage
/
Linting
Test stage
/
Pact tests
Test stage
/
Typecheck
Test stage
/
Perform static analysis
Test stage
/
Test coverage
Publish stage
/
Publish npm packages to npm.pkg.github.com
Publish stage
/
Publish nuget packages to nuget.pkg.github.com
Publish stage
/
Success notification
Annotations
2 errors
|
Commit stage / Check Markdown format
Process completed with exit code 1.
|
|
Commit stage / Trivy Package Scan
Process completed with exit code 1.
|
Artifacts
Produced during runtime
| Name | Size | Digest | |
|---|---|---|---|
|
lines-of-code-report.json.zip
Expired
|
1007 Bytes |
sha256:bd430467d2da8c217a25946d98b8ed7566e989c192dc301ea89cde045a83f8e7
|
|
|
sbom-repository-report.json.zip
Expired
|
109 KB |
sha256:77de725d34df071b0b12c47d406f113adc94e21ae8ca419bbbb5d81aa0d25d25
|
|
|
vulnerabilities-repository-report.json.zip
Expired
|
4.86 KB |
sha256:967825aec3922d708d4a4733f26eccc354aad86dd95186c86b99b63f0b0b28a5
|
|