Fix poetry cryptography vulnerability #3039
cicd-1-pull-request.yaml
on: push
Set CI/CD metadata
5s
Commit stage
/
Scan secrets
10s
Commit stage
/
Check file format
7s
Commit stage
/
Check Markdown format
7s
Commit stage
/
Check English usage
9s
Commit stage
/
Check TODO usage
7s
Commit stage
/
Trivy Package Scan
11s
Commit stage
/
Count lines of code
7s
Commit stage
/
Scan dependencies
46s
Commit stage
/
Check for changes to event schema package compared to main branch
8s
Commit stage
/
Check event schema version has been updated
0s
Commit stage
/
Check for event schemas package version change
0s
Commit stage
/
Run terraform-docs
7s
Commit stage
/
Lint Terraform
4s
Commit stage
/
Trivy IaC Scan
14s
Test stage
/
Check generated dependencies
47s
Test stage
/
Pact tests
1m 0s
Test stage
/
Linting
2m 36s
Test stage
/
Typecheck
1m 30s
Test stage
/
Test coverage
3s
Test stage
/
Perform static analysis
1m 4s
Matrix: Build stage / artefact-oas-spec
Waiting for pending jobs
Publish stage
/
Publish npm packages to npm.pkg.github.com
Publish stage
/
Publish nuget packages to nuget.pkg.github.com
Matrix: Publish stage / publish-oas-specs
Waiting for pending jobs
Publish stage
/
Success notification
Annotations
20 warnings
|
Test stage / Check generated dependencies
Unexpected input(s) 'node-version', valid inputs are ['GITHUB_TOKEN']
|
|
Test stage / Check generated dependencies
Unexpected input(s) 'node-version', valid inputs are ['GITHUB_TOKEN']
|
|
Test stage / Pact tests
Unexpected input(s) 'node-version', valid inputs are ['GITHUB_TOKEN']
|
|
Test stage / Pact tests
Unexpected input(s) 'node-version', valid inputs are ['GITHUB_TOKEN']
|
|
Test stage / Typecheck
Unexpected input(s) 'node-version', valid inputs are ['GITHUB_TOKEN']
|
|
Test stage / Typecheck
Unexpected input(s) 'node-version', valid inputs are ['GITHUB_TOKEN']
|
|
Test stage / Unit tests
Unexpected input(s) 'node-version', valid inputs are ['GITHUB_TOKEN']
|
|
Test stage / Unit tests
Unexpected input(s) 'node-version', valid inputs are ['GITHUB_TOKEN']
|
|
Test stage / Linting
Unexpected input(s) 'node-version', valid inputs are ['GITHUB_TOKEN']
|
|
Test stage / Linting:
lambdas/api-handler/src/utils/validation.ts#L41
Unsafe Regular Expression
|
|
Test stage / Linting:
lambdas/api-handler/src/utils/common-ids.ts#L5
Prefer default export on a file with single export
|
|
Test stage / Linting:
lambdas/api-handler/src/utils/__tests__/validation.test.ts#L74
Test has no assertions
|
|
Test stage / Linting:
lambdas/api-handler/src/handlers/post-mi.ts#L3
Caution: `mi-operations.ts` has a default export `postMI`. This imports `postMI` as `postMIOperation`. Check if you meant to write `import postMI from '../services/mi-operations'` instead
|
|
Test stage / Linting:
lambdas/api-handler/src/handlers/__tests__/utils/test-utils.ts#L3
Prefer default export on a file with single export
|
|
Test stage / Linting:
lambdas/api-handler/src/handlers/__tests__/post-mi.test.ts#L7
Caution: `mi-operations.ts` has a default export `postMI`. This imports `postMI` as `postMiOperation`. Check if you meant to write `import postMI from '../../services/mi-operations'` instead
|
|
Test stage / Linting:
internal/helpers/src/id-ref.ts#L54
Variable Assigned to Object Injection Sink
|
|
Test stage / Linting:
internal/events/src/events/event-envelope.ts#L94
Found non-literal argument to RegExp Constructor
|
|
Test stage / Linting:
internal/events/src/events/event-envelope.ts#L84
Unsafe Regular Expression
|
|
Test stage / Linting:
internal/datastore/src/letter-repository.ts#L76
Variable Assigned to Object Injection Sink
|
|
Test stage / Linting
Unexpected input(s) 'node-version', valid inputs are ['GITHUB_TOKEN']
|
Artifacts
Produced during runtime
| Name | Size | Digest | |
|---|---|---|---|
|
code-coverage-report
|
3.51 KB |
sha256:1de1ee788a898007ff8b419de008ba0fd2593b3189ba22b1794a1df8cce2521d
|
|
|
lines-of-code-report.json.zip
Expired
|
984 Bytes |
sha256:4813e2646786c7f10be9f5c8d306b492ed40d56fdaf244358e47fb5bf3adab80
|
|
|
sbom-repository-report.json.zip
Expired
|
145 KB |
sha256:ac1023b7b66b76d35217ab5683b6d4bb22232c8708f88403331eece51ed8cc45
|
|
|
unit-tests
|
673 KB |
sha256:3e6508860454ef65a34c01ad077fc047d667bce2f1acda4d4569b67b56c824b0
|
|
|
vulnerabilities-repository-report.json.zip
Expired
|
3.4 KB |
sha256:83fd369ef8c68eaf72f82b9190f153a4b5c0482067b8bdcc8a4761c2df5b0097
|
|