Add actionlint workflow and fix requirements traceability validator #326
security-scan.yml
on: pull_request
Python Security Scan (Bandit)
17s
NPM Security Audit
11s
Python Dependency Check (Safety)
20s
Django Security Check
8s
SQL Injection Check
8s
XSS Protection Check
6s
CSRF Protection Check
6s
Container Security Scan (Trivy)
26s
Scan for Secrets
7s
Security Scan Summary
5s
Generate Security Report
7s
Annotations
8 errors and 3 warnings
|
NPM Security Audit
Process completed with exit code 1.
|
|
Python Security Scan (Bandit)
Process completed with exit code 1.
|
|
Django Security Check
Process completed with exit code 1.
|
|
Container Security Scan (Trivy)
Resource not accessible by integration - https://docs.github.com/rest/actions/workflow-runs#get-a-workflow-run
|
|
Container Security Scan (Trivy)
CodeQL Action v3 will be deprecated in December 2026. Please update all occurrences of the CodeQL Action in your workflow files to v4. For more information, see https://github.blog/changelog/2025-10-28-upcoming-deprecation-of-codeql-action-v3/
|
|
CSRF Protection Check
Process completed with exit code 1.
|
|
SQL Injection Check
Process completed with exit code 1.
|
|
Security Scan Summary
Process completed with exit code 1.
|
|
Python Dependency Check (Safety)
No files were found with the provided path: api/safety-report.json. No artifacts will be uploaded.
|
|
Container Security Scan (Trivy)
Caught an exception while gathering information for telemetry: HttpError: Resource not accessible by integration - https://docs.github.com/rest/actions/workflow-runs#get-a-workflow-run. Will skip sending status report.
|
|
Container Security Scan (Trivy)
Caught an exception while gathering information for telemetry: HttpError: Resource not accessible by integration - https://docs.github.com/rest/actions/workflow-runs#get-a-workflow-run. Will skip sending status report.
|
Artifacts
Produced during runtime
| Name | Size | Digest | |
|---|---|---|---|
|
security-report
Expired
|
650 Bytes |
sha256:494ae18708712bd1e93a7530437669f9d1eab594387f49158f989a5c3b19a5a9
|
|