build(deps): bump aquasecurity/trivy-action from 0.28.0 to 0.34.0 (#12) #3
Annotations
3 warnings
|
Sensitive data should not be used in the ARG or ENV commands:
Dockerfile#L21
SecretsUsedInArgOrEnv: Do not use ARG or ENV instructions for sensitive data (ENV "GITLAB_PERSONAL_ACCESS_TOKEN")
More info: https://docs.docker.com/go/dockerfile/rule/secrets-used-in-arg-or-env/
|
|
Sensitive data should not be used in the ARG or ENV commands:
Dockerfile#L21
SecretsUsedInArgOrEnv: Do not use ARG or ENV instructions for sensitive data (ENV "OPENAI_API_KEY")
More info: https://docs.docker.com/go/dockerfile/rule/secrets-used-in-arg-or-env/
|
|
Sensitive data should not be used in the ARG or ENV commands:
Dockerfile#L21
SecretsUsedInArgOrEnv: Do not use ARG or ENV instructions for sensitive data (ENV "VSCODE_PASSWORD")
More info: https://docs.docker.com/go/dockerfile/rule/secrets-used-in-arg-or-env/
|
Artifacts
Produced during runtime
| Name | Size | Digest | |
|---|---|---|---|
|
netzulo~autonomousworld-vscode~TIA918.dockerbuild
|
254 KB |
sha256:e7d5671fb1862435f0ff7ca2adc98ba889cf8b649bdeb3a461ff46a5a704bf92
|
|