Eli 546/create hashing secrets #2510
cicd-1-pull-request.yaml
on: pull_request
Set CI/CD metadata
4s
Commit stage
/
Scan secrets
7s
Commit stage
/
Check file format
8s
Commit stage
/
Check Markdown format
3s
Commit stage
/
Check English usage
7s
Commit stage
/
Lint Terraform
6s
Commit stage
/
Checkov Terraform
30s
Commit stage
/
Count lines of code
10s
Commit stage
/
Scan dependencies
41s
Commit stage
/
OWASP Dependency Scan
35s
Acceptance stage
/
Accessibility test
Acceptance stage
/
Contract test
Acceptance stage
/
Integration test
Acceptance stage
/
Load test
Acceptance stage
/
Security test
Acceptance stage
/
UI performance test
Acceptance stage
/
UI test
Acceptance stage
/
Environment tear down
Annotations
2 errors and 1 warning
|
Commit stage / Checkov Terraform
CKV_AWS_290: "Ensure IAM policies does not allow write access without constraints"
|
|
Commit stage / Checkov Terraform
CKV_AWS_355: "Ensure no IAM policies documents allow "*" as a statement's resource for restrictable actions"
|
|
Commit stage / OWASP Dependency Scan
CodeQL Action v3 will be deprecated in December 2026. Please update all occurrences of the CodeQL Action in your workflow files to v4. For more information, see https://github.blog/changelog/2025-10-28-upcoming-deprecation-of-codeql-action-v3/
|
Artifacts
Produced during runtime
| Name | Size | Digest | |
|---|---|---|---|
|
lines-of-code-report-.json.zip
Expired
|
821 Bytes |
sha256:0a1e52fdd6b756924acc08dcbfe12447845a3216e36814e9aed28a9627418d55
|
|
|
sbom-repository-report.json.zip
Expired
|
57.3 KB |
sha256:532e47bff369ec584930ed845ee6f4a0ebe0692d4709c4a103c5b52267356867
|
|
|
vulnerabilities-repository-report-.json.zip
Expired
|
2.27 KB |
sha256:e3ea543a69aafabfc29fd4f4af89fd9ad90a9002748b1f85afcb51098a8212ac
|
|