Bugfix/eja eli 306 adding kms decrypt for lambda rules bucket #1211
cicd-1-pull-request.yaml
on: pull_request
Set CI/CD metadata
4s
Commit stage
/
Scan secrets
5s
Commit stage
/
Check file format
7s
Commit stage
/
Check Markdown format
3s
Commit stage
/
Check English usage
6s
Commit stage
/
Lint Terraform
7s
Commit stage
/
Checkov Terraform
23s
Commit stage
/
Count lines of code
5s
Commit stage
/
Scan dependencies
33s
Acceptance stage
/
Accessibility test
Acceptance stage
/
Contract test
Acceptance stage
/
Integration test
Acceptance stage
/
Load test
Acceptance stage
/
Security test
Acceptance stage
/
UI performance test
Acceptance stage
/
UI test
Acceptance stage
/
Environment tear down
Annotations
9 errors
|
Commit stage / Checkov Terraform
CKV_AWS_109: "Ensure IAM policies does not allow permissions management / resource exposure without constraints"
|
|
Commit stage / Checkov Terraform
CKV_AWS_356: "Ensure no IAM policies documents allow "*" as a statement's resource for restrictable actions"
|
|
Commit stage / Checkov Terraform
CKV_AWS_111: "Ensure IAM policies does not allow write access without constraints"
|
|
Commit stage / Checkov Terraform
CKV_AWS_109: "Ensure IAM policies does not allow permissions management / resource exposure without constraints"
|
|
Commit stage / Checkov Terraform
CKV_AWS_356: "Ensure no IAM policies documents allow "*" as a statement's resource for restrictable actions"
|
|
Commit stage / Checkov Terraform
CKV_AWS_111: "Ensure IAM policies does not allow write access without constraints"
|
|
Commit stage / Checkov Terraform
CKV_AWS_109: "Ensure IAM policies does not allow permissions management / resource exposure without constraints"
|
|
Commit stage / Checkov Terraform
CKV_AWS_356: "Ensure no IAM policies documents allow "*" as a statement's resource for restrictable actions"
|
|
Commit stage / Checkov Terraform
CKV_AWS_111: "Ensure IAM policies does not allow write access without constraints"
|
Artifacts
Produced during runtime
| Name | Size | Digest | |
|---|---|---|---|
|
lines-of-code-report-.json.zip
Expired
|
829 Bytes |
sha256:1f271c950079a8aaaffd8cd0e53586d53e657a75b80bbdfb786c670a83a5e757
|
|
|
sbom-repository-report.json.zip
Expired
|
46.6 KB |
sha256:9372ec8b577dcd06be523920f5bd58272b705c30cb366c90baff8861b89c4861
|
|
|
vulnerabilities-repository-report-.json.zip
Expired
|
3.27 KB |
sha256:1c31abeaeccd716e8e24d7c2fc2bef80e940bd93402d42035c839229c5ed4d83
|
|