feat(security): implement comprehensive security scanning and reporti… #1
security.yml
on: push
NPM Audit
8s
Snyk Security Scan
31s
OSV Scanner
3s
CodeQL JavaScript/TypeScript Analysis
1m 11s
CodeQL C++ Analysis
5m 48s
Secrets Scanning
7s
Dependency Review
0s
Security Summary
3s
Annotations
4 errors
|
OSV Scanner
Top level 'runs:' section is required for google/osv-scanner-action/v1.8.3/action.yml
|
|
Secrets Scanning
Process completed with exit code 1.
|
|
Secrets Scanning
BASE and HEAD commits are the same. TruffleHog won't scan anything. Please see documentation (https://github.com/trufflesecurity/trufflehog#octocat-trufflehog-github-action).
|
|
Snyk Security Scan
Path does not exist: snyk.sarif
|