Skip to content

ci: restrict workflow permissions #54

ci: restrict workflow permissions

ci: restrict workflow permissions #54

Triggered via pull request February 5, 2024 14:22
Status Startup failure
Total duration
Artifacts

pr.yml

on: pull_request
ci  /  conditionals
ci / conditionals
ci  /  ...  /  context
ci / build / context
ci  /  ...  /  check-commit-message
ci / compliance / check-commit-message
ci  /  ...  /  dependency review
ci / compliance / dependency review
ci  /  ...  /  ossf-scorecard
ci / compliance / ossf-scorecard
ci  /  ...  /  docs
ci / docs / docs
ci  /  ...  /  bandit
ci / sast / bandit
ci  /  ...  /  black
ci / sast / black
ci  /  ...  /  checkov
ci / sast / checkov
ci  /  ...  /  codeql
ci / sast / codeql
ci  /  ...  /  hadolint
ci / sast / hadolint
ci  /  ...  /  kubelinter
ci / sast / kubelinter
ci  /  ...  /  pylint
ci / sast / pylint
ci  /  ...  /  semgrep
ci / sast / semgrep
ci  /  ...  /  trivy config
ci / sast / trivy config
ci  /  ...  /  unit tests
ci / unit-test / unit tests
ci  /  ...  /  build
ci / build / build
ci  /  ...  /  grype
ci / sca / grype
ci  /  ...  /  dependency review
ci / sca / syft / dependency review
ci  /  ...  /  trivy image
ci / sca / trivy image
Matrix: ci / integration-test / functional
Waiting for pending jobs
Matrix: ci / integration-test / k8s versions
Waiting for pending jobs
Matrix: ci / integration-test / optional
Waiting for pending jobs
Matrix: ci / integration-test / optional k8s versions
Waiting for pending jobs
Fit to window
Zoom out
Zoom in

Annotations

1 error
Invalid workflow file: .github/workflows/pr.yml#L105
The workflow is not valid. sse-secure-systems/semgr8s/.github/workflows/.reusable-ci.yml@1dcf82c6c40625edb84f2480732178231ea3c591 (Line: 105, Col: 3): Error calling workflow 'sse-secure-systems/semgr8s/.github/workflows/.reusable-compliance.yml@1dcf82c6c40625edb84f2480732178231ea3c591'. The nested job 'dependency-review' is requesting 'pull-requests: write', but is only allowed 'pull-requests: read'.