chore: update smurf shared workflows for Docker, Helm, and Terraform,… #248
ci.yml
on: push
✅ Validate YAML Syntax
10s
🧹 Lint YAML Files
5s
🔍 Validate Workflow Structure
4s
🔒 Security Scan
24s
📚 Validate Documentation
4s
🏷️ Validate Naming Conventions
4s
🔍 Actionlint
10s
📝 Generate Documentation Index
5s
⚠️ Check Deprecated Actions
4s
🔐 Validate Permissions
4s
📊 CI Summary
5s
🩺 Diagnose failure (naoru)
Annotations
11 errors, 1 warning, and 1 notice
|
🧹 Lint YAML Files
Process completed with exit code 1.
|
|
🔒 Security Scan
CKV2_GHA_1: "Ensure top-level permissions are not set to write-all"
|
|
🔒 Security Scan
CKV2_GHA_1: "Ensure top-level permissions are not set to write-all"
|
|
🔒 Security Scan
CKV2_GHA_1: "Ensure top-level permissions are not set to write-all"
|
|
🔒 Security Scan
CKV2_GHA_1: "Ensure top-level permissions are not set to write-all"
|
|
🔒 Security Scan
CKV2_GHA_1: "Ensure top-level permissions are not set to write-all"
|
|
🔒 Security Scan
CKV2_GHA_1: "Ensure top-level permissions are not set to write-all"
|
|
🔒 Security Scan
CKV_GHA_2: "Ensure run commands are not vulnerable to shell injection"
|
|
🔒 Security Scan
CKV_GHA_2: "Ensure run commands are not vulnerable to shell injection"
|
|
🔒 Security Scan
CKV_GHA_7: "The build output cannot be affected by user parameters other than the build entry point and the top-level source location. GitHub Actions workflow_dispatch inputs MUST be empty. "
|
|
🔒 Security Scan
CKV_GHA_2: "Ensure run commands are not vulnerable to shell injection"
|
|
🔍 Actionlint
Input 'fail_on_error' has been deprecated with message: Deprecated, use `fail_level` instead.
|
|
GitHub API token
Consider setting a GITHUB_TOKEN to prevent GitHub api rate limits
|
Artifacts
Produced during runtime
| Name | Size | Digest | |
|---|---|---|---|
|
workflow-index
Expired
|
560 Bytes |
sha256:cfab08b69ae6eb61ac54401f5a6a55ca843aba8500981ed7203ea79d3b99dc32
|
|