Optimize detect-secrets.sh for significant performance improvements #3
security-ci.yml
on: push
Secret scan (Gitleaks)
5s
SAST (Semgrep CE)
22s
Dependency vulns (OSV-Scanner)
2s
Annotations
1 error and 2 warnings
|
Dependency vulns (OSV-Scanner)
Unable to resolve action `google/osv-scanner-action@v2`, unable to find version `v2`
|
|
SAST (Semgrep CE)
CodeQL Action v3 will be deprecated in December 2026. Please update all occurrences of the CodeQL Action in your workflow files to v4. For more information, see https://github.blog/changelog/2025-10-28-upcoming-deprecation-of-codeql-action-v3/
|
|
SAST (Semgrep CE)
Unexpected input(s) 'generateSarif', valid inputs are ['entryPoint', 'args', 'config', 'publishToken']
|
Artifacts
Produced during runtime
| Name | Size | Digest | |
|---|---|---|---|
|
gitleaks-results.sarif
Expired
|
6.7 KB |
sha256:567b807e46694967c003e10efcef904073f5bd27e37c3955f9447d07b26f8947
|
|