[PRM-691] Removal of automated release tool (cross repo) #233
automated-pr-validator.yml
on: pull_request
SBOM Repo Scan
40s
Markdown Validation
14s
Checkov Scan
42s
Annotations
10 errors and 1 warning
|
Checkov Scan:
stacks/deductions-cross-account/terraform/ecr.tf#L37
CKV_AWS_136: "Ensure that ECR repositories are encrypted using KMS"
|
|
Checkov Scan:
stacks/deductions-cross-account/terraform/ecr.tf#L37
CKV_AWS_163: "Ensure ECR image scanning on push is enabled"
|
|
Checkov Scan:
stacks/deductions-cross-account/terraform/ecr.tf#L29
CKV_AWS_136: "Ensure that ECR repositories are encrypted using KMS"
|
|
Checkov Scan:
stacks/deductions-cross-account/terraform/ecr.tf#L29
CKV_AWS_163: "Ensure ECR image scanning on push is enabled"
|
|
Checkov Scan:
stacks/deductions-cross-account/terraform/ecr.tf#L21
CKV_AWS_136: "Ensure that ECR repositories are encrypted using KMS"
|
|
Checkov Scan:
stacks/deductions-cross-account/terraform/ecr.tf#L21
CKV_AWS_163: "Ensure ECR image scanning on push is enabled"
|
|
Checkov Scan:
stacks/deductions-cross-account/terraform/ecr.tf#L13
CKV_AWS_136: "Ensure that ECR repositories are encrypted using KMS"
|
|
Checkov Scan:
stacks/deductions-cross-account/terraform/ecr.tf#L13
CKV_AWS_163: "Ensure ECR image scanning on push is enabled"
|
|
Checkov Scan:
stacks/deductions-cross-account/terraform/ecr.tf#L5
CKV_AWS_136: "Ensure that ECR repositories are encrypted using KMS"
|
|
Checkov Scan:
stacks/deductions-cross-account/terraform/ecr.tf#L5
CKV_AWS_163: "Ensure ECR image scanning on push is enabled"
|
|
SBOM Repo Scan
Node.js 20 actions are deprecated. The following actions are running on Node.js 20 and may not work as expected: anchore/sbom-action@v0, anchore/scan-action@v7. Actions will be forced to run with Node.js 24 by default starting June 2nd, 2026. Please check if updated versions of these actions are available that support Node.js 24. To opt into Node.js 24 now, set the FORCE_JAVASCRIPT_ACTIONS_TO_NODE24=true environment variable on the runner or in your workflow file. Once Node.js 24 becomes the default, you can temporarily opt out by setting ACTIONS_ALLOW_USE_UNSECURE_NODE_VERSION=true. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
|
Artifacts
Produced during runtime
| Name | Size | Digest | |
|---|---|---|---|
|
orphaned-record-continuity-infrastructure-sbom_scan.cyclonedx.json
|
3.1 KB |
sha256:f508ed069d9c025abe98b87e184b13af26e6d4eb51f623d4fe40282a876395e9
|
|