Skip to content

Use Rekor v2 for image attestations #318

Use Rekor v2 for image attestations

Use Rekor v2 for image attestations #318

Triggered via push August 3, 2026 23:46
Status Success
Total duration 7m 39s
Artifacts 1

ci.yml

on: push
Matrix: Go Build & Test
Python Test & Lint
1m 1s
Python Test & Lint
Hadolint & Semgrep
25s
Hadolint & Semgrep
Security Regression Tests
49s
Security Regression Tests
Test Count Drift Check
48s
Test Count Drift Check
Dependency Vulnerability Audit
1m 59s
Dependency Vulnerability Audit
Documentation Validation
8s
Documentation Validation
Secret Scan (Current Tree + Git History)
12s
Secret Scan (Current Tree + Git History)
Windows Sandbox Security Qualification
23s
Windows Sandbox Security Qualification
Shell Script Lint
6s
Shell Script Lint
Release Helper Script Smoke
11s
Release Helper Script Smoke
Validate YAML configs
14s
Validate YAML configs
Image Reference Consistency
5s
Image Reference Consistency
Verify action, container, and EOL pins
12s
Verify action, container, and EOL pins
Supply Chain & SBOM Verification
18s
Supply Chain & SBOM Verification
Sandbox OpenVEX Smoke
7m 35s
Sandbox OpenVEX Smoke
Release Branch Hardened Gate
0s
Release Branch Hardened Gate
Fit to window
Zoom out
Zoom in

Annotations

15 warnings
Supply Chain & SBOM Verification
Restore cache failed: Dependencies file is not found in /home/runner/work/SecAI_OS/SecAI_OS. Supported file pattern: go.mod
Security Regression Tests
Restore cache failed: Dependencies file is not found in /home/runner/work/SecAI_OS/SecAI_OS. Supported file pattern: go.mod
Go Build & Test (ui-ingress)
Restore cache failed: Some specified paths were not resolved, unable to cache dependencies.
Test Count Drift Check
Restore cache failed: Dependencies file is not found in /home/runner/work/SecAI_OS/SecAI_OS. Supported file pattern: go.mod
Python Test & Lint
services/quarantine/quarantine/watcher.py:538: [MEDIUM] Chmod setting a permissive mask 0o2770 on file (source_root).
Python Test & Lint
services/quarantine/quarantine/watcher.py:535: [MEDIUM] Chmod setting a permissive mask 0o2770 on file (claim_root).
Python Test & Lint
services/quarantine/quarantine/watcher.py:430: [MEDIUM] Chmod setting a permissive mask 0o2770 on file (snapshot_root).
Python Test & Lint
services/quarantine/quarantine/watcher.py:409: [MEDIUM] Chmod setting a permissive mask 0o2770 on file (destination_dir).
Python Test & Lint
services/quarantine/quarantine/watcher.py:353: [MEDIUM] Chmod setting a permissive mask 0o2770 on file (destination_dir).
Python Test & Lint
services/common/auth.py:179: [MEDIUM] Chmod setting a permissive mask 0o660 on file (_creds_path).
Python Test & Lint
services/common/auth.py:170: [MEDIUM] Chmod setting a permissive mask 0o660 on file (tmp_path).
Python Test & Lint
services/common/audit_chain.py:262: [MEDIUM] Chmod setting a permissive mask 0o660 on file (tmp_path).
Python Test & Lint
services/common/audit_chain.py:198: [MEDIUM] Chmod setting a permissive mask 0o660 on file (NOT PARSED).
Python Test & Lint
services/agent/agent/app.py:1209: [MEDIUM] Chmod setting a permissive mask 0o660 on file (sock_file).
Dependency Vulnerability Audit
Restore cache failed: Dependencies file is not found in /home/runner/work/SecAI_OS/SecAI_OS. Supported file pattern: go.mod

Artifacts

Produced during runtime
Name Size Digest
sandbox-vex-smoke
1.43 KB
sha256:a47f46a9b4768cba81eeeab67c05fd6a0493efb6cf355e652021a8789df1d613