Skip to content

Document Security CI workflow functionality comprehensively #2

Document Security CI workflow functionality comprehensively

Document Security CI workflow functionality comprehensively #2

Triggered via push January 2, 2026 21:57
Status Failure
Total duration 32s
Artifacts 1

security-ci.yml

on: push
Secret scan (Gitleaks)
8s
Secret scan (Gitleaks)
SAST (Semgrep CE)
28s
SAST (Semgrep CE)
Dependency vulns (OSV-Scanner)
2s
Dependency vulns (OSV-Scanner)
Fit to window
Zoom out
Zoom in

Annotations

1 error and 2 warnings
Dependency vulns (OSV-Scanner)
Unable to resolve action `google/osv-scanner-action@v2`, unable to find version `v2`
SAST (Semgrep CE)
CodeQL Action v3 will be deprecated in December 2026. Please update all occurrences of the CodeQL Action in your workflow files to v4. For more information, see https://github.blog/changelog/2025-10-28-upcoming-deprecation-of-codeql-action-v3/
SAST (Semgrep CE)
Unexpected input(s) 'generateSarif', valid inputs are ['entryPoint', 'args', 'config', 'publishToken']

Artifacts

Produced during runtime
Name Size Digest
gitleaks-results.sarif Expired
6.7 KB
sha256:adfdc160998b86f52d2ba7401e099c14bbc9007c8184c2a4acdde774f3a34b43