Skip to content

Merge pull request #3682 from bcgov/dependabot/npm_and_yarn/app/aws-s… #9978

Merge pull request #3682 from bcgov/dependabot/npm_and_yarn/app/aws-s…

Merge pull request #3682 from bcgov/dependabot/npm_and_yarn/app/aws-s… #9978

Triggered via push November 21, 2024 15:37
Status Success
Total duration 15m 40s
Artifacts 5

main.yaml

on: push
Matrix: build / build-and-push-image
install-env  /  install-test-env
4m 49s
install-env / install-test-env
is-tagged-release
27s
is-tagged-release
test-checks  /  trivy-scan-code
1m 40s
test-checks / trivy-scan-code
test-checks  /  cocogitto
26s
test-checks / cocogitto
test-checks  /  gitleaks
1m 31s
test-checks / gitleaks
test-checks  /  check_immutable_sqitch_files
30s
test-checks / check_immutable_sqitch_files
test-checks  /  check_deleted_sqitch_tags
50s
test-checks / check_deleted_sqitch_tags
rebase-feature-pr
32s
rebase-feature-pr
Matrix: test-checks / codeql-scan
setup-s3-backup  /  deploy-s3-secret-to-dev
26s
setup-s3-backup / deploy-s3-secret-to-dev
setup-s3-backup  /  deploy-s3-secret-to-test
21s
setup-s3-backup / deploy-s3-secret-to-test
setup-s3-backup  /  deploy-s3-secret-to-prod
24s
setup-s3-backup / deploy-s3-secret-to-prod
has-merge-conflict  /  check_merge_conflicts
27s
has-merge-conflict / check_merge_conflicts
cleanup_feature  /  clean-feature-env
cleanup_feature / clean-feature-env
test-checks  /  lint-chart
23s
test-checks / lint-chart
deploy-feature  /  setup-feature-database
deploy-feature / setup-feature-database
test-containers  /  trivy-scan-app
3m 51s
test-containers / trivy-scan-app
test-containers  /  trivy-scan-db
51s
test-containers / trivy-scan-db
test-e2e  /  yarn-test-e2e-applicant
5m 22s
test-e2e / yarn-test-e2e-applicant
test-e2e  /  yarn-test-e2e-admin
3m 37s
test-e2e / yarn-test-e2e-admin
test-e2e  /  yarn-test-e2e-analyst
5m 35s
test-e2e / yarn-test-e2e-analyst
test-zap  /  zap-owasp-full
4m 45s
test-zap / zap-owasp-full
ensure-sqitch-plan-ends-with-tag
0s
ensure-sqitch-plan-ends-with-tag
deploy-feature  /  deploy-feature-to-openshift-development
deploy-feature / deploy-feature-to-openshift-development
test-containers  /  renovate
48s
test-containers / renovate
test-e2e  /  yarn-test-e2e-finalize
54s
test-e2e / yarn-test-e2e-finalize
deploy-feature  /  update-jira-issue
deploy-feature / update-jira-issue
deploy  /  is-tagged-release
22s
deploy / is-tagged-release
deploy  /  deploy-to-openshift-development
33s
deploy / deploy-to-openshift-development
deploy  /  ensure-sqitch-plan-ends-with-tag
0s
deploy / ensure-sqitch-plan-ends-with-tag
deploy  /  ...  /  export-secrets
21s
deploy / backup-secrets-dev / export-secrets
deploy  /  deploy-to-openshift-test
0s
deploy / deploy-to-openshift-test
deploy  /  deploy-to-openshift-production
0s
deploy / deploy-to-openshift-production
deploy  /  ...  /  export-secrets
deploy / backup-secrets-test / export-secrets
deploy  /  create-release
0s
deploy / create-release
deploy  /  ...  /  export-secrets
deploy / backup-secrets-prod / export-secrets
deploy  /  ...  /  create_hotfix_branch
deploy / create_hotfix_branch / create_hotfix_branch
Fit to window
Zoom out
Zoom in

Annotations

5 warnings
Sensitive data should not be used in the ARG or ENV commands: app/Dockerfile#L20
SecretsUsedInArgOrEnv: Do not use ARG or ENV instructions for sensitive data (ARG "SENTRY_AUTH_TOKEN") More info: https://docs.docker.com/go/dockerfile/rule/secrets-used-in-arg-or-env/
Sensitive data should not be used in the ARG or ENV commands: app/Dockerfile#L21
SecretsUsedInArgOrEnv: Do not use ARG or ENV instructions for sensitive data (ENV "SENTRY_AUTH_TOKEN") More info: https://docs.docker.com/go/dockerfile/rule/secrets-used-in-arg-or-env/
deploy / deploy-to-openshift-development
Unexpected input(s) 'openshift_app_namespace', 'openshift_metabase_namespace', 'openshift_metabase_prod_namespace', 'next_public_growthbook_api_key', 'aws_s3_bucket', 'aws_s3_region', 'aws_s3_key', 'aws_s3_secret_key', 'aws_role_arn', 'aws_clam_s3_bucket', 'metabase_site_url', 'metabase_embed_secret', 'cert', 'cert_key', 'cert_ca', 'pgbackrest_s3_bucket', valid inputs are ['openshift_server_url', 'openshift_token', 'openshift_username', 'openshift_password', 'insecure_skip_tls_verify', 'certificate_authority_data', 'namespace', 'reveal_cluster_name']
deploy / deploy-to-openshift-development
Unexpected input(s) 'keycloak_host', 'sa_client_secret', 'sa_client_id', 'pgbackrest_s3_key', 'pgbackrest_s3_key_secret', valid inputs are ['openshift_server_url', 'openshift_token', 'openshift_app_namespace', 'openshift_metabase_namespace', 'openshift_metabase_prod_namespace', 'tag', 'client_secret', 'secure_route', 'next_public_growthbook_api_key', 'aws_s3_bucket', 'aws_clam_s3_bucket', 'aws_s3_region', 'aws_s3_key', 'aws_s3_secret_key', 'aws_role_arn', 'certbot_email', 'certbot_server', 'environment', 'enable_load_test', 'metabase_site_url', 'metabase_embed_secret', 'cert', 'cert_key', 'cert_ca', 'sp_sa_user', 'sp_sa_password', 'sp_site', 'sp_doc_library', 'sp_ms_file_name', 'sp_list_name', 'ches_url', 'ches_client', 'ches_client_secret', 'ches_to', 'ches_keycloak_host', 'pgbackrest_s3_bucket', 'er_file', 'rd_file', 'coverages_file']
Deprecation notice: v1, v2, and v3 of the artifact actions
The following artifacts were uploaded using a version of actions/upload-artifact that is scheduled for deprecation: "zap_scan". Please update your workflow to use v4 of the artifact actions. Learn more: https://github.blog/changelog/2024-04-16-deprecation-notice-v3-of-the-artifact-actions/

Artifacts

Produced during runtime
Name Size
bcgov~CONN-CCBC-portal~DSJPHX.dockerbuild
71.3 KB
bcgov~CONN-CCBC-portal~MHP6L3.dockerbuild
70.7 KB
bcgov~CONN-CCBC-portal~Y4SVIG.dockerbuild
38.8 KB
bcgov~CONN-CCBC-portal~YST2SU.dockerbuild
97.6 KB
zap_scan
976 KB