Skip to content

Bug/963 fix contract agreements in edc version 0.7.0 #1313

Bug/963 fix contract agreements in edc version 0.7.0

Bug/963 fix contract agreements in edc version 0.7.0 #1313

Triggered via pull request May 15, 2024 08:05
Status Success
Total duration 52s
Artifacts 1

kics.yml

on: pull_request
Fit to window
Zoom out
Zoom in

Annotations

13 warnings
Deprecation notice: v1, v2, and v3 of the artifact actions
The following artifacts were uploaded using a version of actions/upload-artifact that is scheduled for deprecation: "kicsResults.json". Please update your workflow to use v4 of the artifact actions. Learn more: https://github.blog/changelog/2024-04-16-deprecation-notice-v3-of-the-artifact-actions/
Analyze
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: github/codeql-action/upload-sarif@v2, actions/upload-artifact@v3. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
Analyze
CodeQL Action v2 will be deprecated on December 5th, 2024. Please update all occurrences of the CodeQL Action in your workflow files to v3. For more information, see https://github.blog/changelog/2024-01-12-code-scanning-deprecation-of-codeql-action-v2/
[MEDIUM] Using Unrecommended Namespace: charts/item-relationship-service/templates/configmap-spring-app-config.yaml#L26
Namespaces like 'default', 'kube-system' or 'kube-public' should not be used
[MEDIUM] Using Unrecommended Namespace: charts/item-relationship-service/templates/service.yaml#L25
Namespaces like 'default', 'kube-system' or 'kube-public' should not be used
[MEDIUM] Using Unrecommended Namespace: charts/item-relationship-service/templates/deployment.yaml#L24
Namespaces like 'default', 'kube-system' or 'kube-public' should not be used
[LOW] Image Without Digest: charts/item-relationship-service/templates/deployment.yaml#L58
Images should be specified together with their digests to ensure integrity
[LOW] Missing AppArmor Profile: charts/item-relationship-service/templates/deployment.yaml#L40
Containers should be configured with an AppArmor profile to enforce fine-grained access control over low-level system resources
[LOW] Pod or Container Without LimitRange: charts/item-relationship-service/templates/deployment.yaml#L23
Each namespace should have a LimitRange policy associated to ensure that resource allocations of Pods, Containers and PersistentVolumeClaims do not exceed the defined boundaries
[LOW] Pod or Container Without ResourceQuota: charts/item-relationship-service/templates/deployment.yaml#L23
Each namespace should have a ResourceQuota policy associated to limit the total amount of resources Pods, Containers and PersistentVolumeClaims can consume
[LOW] Secrets As Environment Variables: charts/item-relationship-service/templates/deployment.yaml#L73
Container should not use secrets as environment variables
[LOW] Secrets As Environment Variables: charts/item-relationship-service/templates/deployment.yaml#L73
Container should not use secrets as environment variables
[LOW] Secrets As Environment Variables: charts/item-relationship-service/templates/deployment.yaml#L73
Container should not use secrets as environment variables

Artifacts

Produced during runtime
Name Size
kicsResults.json Expired
32.6 KB