CCM-13343: Trivy Package and Library Scans #2116
cicd-1-pull-request.yaml
on: pull_request
Set CI/CD metadata
5s
Commit stage
/
Scan secrets
10s
Commit stage
/
Check file format
10s
Commit stage
/
Check Markdown format
5s
Commit stage
/
Check English usage
7s
Commit stage
/
Check TODO usage
4s
Commit stage
/
Trivy Package Scan
1m 30s
Commit stage
/
Count lines of code
11s
Commit stage
/
Scan dependencies
27s
Commit stage
/
Check for changes to event schema package compared to main branch
7s
Commit stage
/
Check event schema version has been updated
0s
Commit stage
/
Check for event schemas package version change
0s
Commit stage
/
Run terraform-docs
0s
Commit stage
/
Lint Terraform
0s
Commit stage
/
Trivy IaC Scan
0s
Test stage
/
Check generated dependencies
Test stage
/
Linting
Test stage
/
Typecheck
Test stage
/
Perform static analysis
Test stage
/
Test coverage
Publish stage
/
Publish npm packages to npm.pkg.github.com
Publish stage
/
Publish nuget packages to nuget.pkg.github.com
Publish stage
/
Success notification
Annotations
1 error
|
Commit stage / Scan secrets
Process completed with exit code 1.
|
Artifacts
Produced during runtime
| Name | Size | Digest | |
|---|---|---|---|
|
lines-of-code-report.json.zip
|
961 Bytes |
sha256:b943a381fc65193e24081e9cae6ba435ecb9aea79cdc23948bf7c5c4ff2a54d2
|
|
|
sbom-repository-report.json.zip
|
232 KB |
sha256:82cf2d6c2950fec8a106b63f3b2b35592c984afac1454f5f1149816d1e66e16c
|
|
|
vulnerabilities-repository-report.json.zip
|
2.24 KB |
sha256:73e515be88fbd8496b8a8dbe608b0af85f11747db9fe86fe920a502d9f47fa2d
|
|