๐ก๏ธ Sentinel: [security improvement] Base ํ๊ทธ ์ฝ์ ๊ณต๊ฒฉ ๋ฐฉ์ง ์ ์ฉ #153
security-scan.yml Required
on: pull_request
cancel-closed-pr-runs
osv-scan
21s
dependency-review
8s
trivy-fs
30s
scorecard
9s
Annotations
1 notice
|
osv-scan
OSV hard gate scans direct manifest and lockfile evidence with --no-resolve so external transitive registry resolver stalls cannot hold the required-check queue indefinitely. The job is capped at 25 minutes; if this budget is exceeded, rerun after the upstream registry/service recovers or inspect the uploaded debug artifacts.
|
Artifacts
Produced during runtime
| Name | Size | Digest | |
|---|---|---|---|
|
osv-scan-debug
Expired
|
1023 Bytes |
sha256:e494fcc69cd5bd7be8b654395d830c8d5ba1cf742a3890e43e82e1c0726da988
|
|