Skip to content

Bump the github-actions group across 1 directory with 10 updates #267

Bump the github-actions group across 1 directory with 10 updates

Bump the github-actions group across 1 directory with 10 updates #267

Triggered via pull request July 7, 2026 03:54
Status Failure
Total duration 7m 26s
Artifacts 1

ci.yml

on: pull_request
Matrix: Go Build & Test
Python Test & Lint
32s
Python Test & Lint
Hadolint & Semgrep
30s
Hadolint & Semgrep
Security Regression Tests
47s
Security Regression Tests
Test Count Drift Check
46s
Test Count Drift Check
Dependency Vulnerability Audit
58s
Dependency Vulnerability Audit
Documentation Validation
7s
Documentation Validation
Shell Script Lint
6s
Shell Script Lint
Release Helper Script Smoke
10s
Release Helper Script Smoke
Validate YAML configs
6s
Validate YAML configs
Image Reference Consistency
4s
Image Reference Consistency
Verify action, container, and EOL pins
7s
Verify action, container, and EOL pins
Supply Chain & SBOM Verification
19s
Supply Chain & SBOM Verification
Sandbox OpenVEX Smoke
7m 22s
Sandbox OpenVEX Smoke
Release Branch Hardened Gate
Release Branch Hardened Gate
Fit to window
Zoom out
Zoom in

Annotations

11 errors and 4 warnings
Verify action, container, and EOL pins
Process completed with exit code 1.
Dependency Vulnerability Audit
registry: govulncheck found vulnerabilities
Dependency Vulnerability Audit
securectl.cmdStatus calls fmt.Fprintf, which eventually calls x509.HostnameError.Error
Dependency Vulnerability Audit
registry.main calls http.Server.ListenAndServe, which eventually calls x509.Certificate.VerifyHostname
Dependency Vulnerability Audit
registry.main calls http.Server.ListenAndServe, which eventually calls x509.Certificate.Verify
Dependency Vulnerability Audit
registry.main calls http.Server.ListenAndServe, which eventually calls textproto.Reader.ReadMIMEHeader
Dependency Vulnerability Audit
airlock: govulncheck found vulnerabilities
Dependency Vulnerability Audit
airlock.loadSources calls fmt.Errorf, which eventually calls x509.HostnameError.Error
Dependency Vulnerability Audit
airlock.main calls http.Server.ListenAndServe, which eventually calls x509.Certificate.VerifyHostname
Dependency Vulnerability Audit
airlock.main calls http.Server.ListenAndServe, which eventually calls x509.Certificate.Verify
Dependency Vulnerability Audit
airlock.main calls http.Server.ListenAndServe, which eventually calls textproto.Reader.ReadMIMEHeader
Supply Chain & SBOM Verification
Restore cache failed: Dependencies file is not found in /home/runner/work/SecAI_OS/SecAI_OS. Supported file pattern: go.mod
Test Count Drift Check
Restore cache failed: Dependencies file is not found in /home/runner/work/SecAI_OS/SecAI_OS. Supported file pattern: go.mod
Security Regression Tests
Restore cache failed: Dependencies file is not found in /home/runner/work/SecAI_OS/SecAI_OS. Supported file pattern: go.mod
Dependency Vulnerability Audit
Restore cache failed: Dependencies file is not found in /home/runner/work/SecAI_OS/SecAI_OS. Supported file pattern: go.mod

Artifacts

Produced during runtime
Name Size Digest
sandbox-vex-smoke
1.43 KB
sha256:86db8f6e0f7b0b971d0b94ba808726a8967f0b43d94f16eab092dba5a0fda2c1