Skip to content

ci: remove the vu1nz security scan #4

ci: remove the vu1nz security scan

ci: remove the vu1nz security scan #4

Triggered via pull request August 3, 2026 14:13
Status Success
Total duration 32s
Artifacts 1

threatcrush-scan.yml

on: pull_request
Scan for credentials and vulnerable patterns
29s
Scan for credentials and vulnerable patterns
Fit to window
Zoom out
Zoom in

Annotations

11 warnings
Scan for credentials and vulnerable patterns
Node.js 20 is deprecated. The following actions target Node.js 20 but are being forced to run on Node.js 24: actions/checkout@v4, actions/github-script@v7, actions/setup-node@v4, actions/upload-artifact@v4, github/codeql-action/upload-sarif@v3. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
Scan for credentials and vulnerable patterns
Calculated fingerprint of cc31d593dce61158:4 for file apps/logicsrc-web/contract/logicsrc-web.contract.test.ts line 471, but found existing inconsistent fingerprint value secret-generic-credential:apps/logicsrc-web/contract/logicsrc-web.contract.test.ts:471
Scan for credentials and vulnerable patterns
Calculated fingerprint of 93c6079f460a8d32:1 for file apps/logicsrc-web/contract/logicsrc-web.contract.test.ts line 433, but found existing inconsistent fingerprint value secret-generic-credential:apps/logicsrc-web/contract/logicsrc-web.contract.test.ts:433
Scan for credentials and vulnerable patterns
Calculated fingerprint of 3cf2a41360cb7317:1 for file apps/logicsrc-web/contract/logicsrc-web.contract.test.ts line 428, but found existing inconsistent fingerprint value secret-generic-credential:apps/logicsrc-web/contract/logicsrc-web.contract.test.ts:428
Scan for credentials and vulnerable patterns
Calculated fingerprint of cc31d593dce61158:3 for file apps/logicsrc-web/contract/logicsrc-web.contract.test.ts line 426, but found existing inconsistent fingerprint value secret-generic-credential:apps/logicsrc-web/contract/logicsrc-web.contract.test.ts:426
Scan for credentials and vulnerable patterns
Calculated fingerprint of cc31d593dce61158:2 for file apps/logicsrc-web/contract/logicsrc-web.contract.test.ts line 410, but found existing inconsistent fingerprint value secret-generic-credential:apps/logicsrc-web/contract/logicsrc-web.contract.test.ts:410
Scan for credentials and vulnerable patterns
Calculated fingerprint of cc31d593dce61158:1 for file apps/logicsrc-web/contract/logicsrc-web.contract.test.ts line 392, but found existing inconsistent fingerprint value secret-generic-credential:apps/logicsrc-web/contract/logicsrc-web.contract.test.ts:392
Scan for credentials and vulnerable patterns
Calculated fingerprint of a43ab9b18ac558a:1 for file apps/commandboard-web/package.json line 20, but found existing inconsistent fingerprint value manifest-typosquat:apps/commandboard-web/package.json:20
Scan for credentials and vulnerable patterns
Calculated fingerprint of 299af852f94c2ee5:1 for file plugins/credential-sharing/src/vault-encryption.test.ts line 21, but found existing inconsistent fingerprint value secret-generic-credential:plugins/credential-sharing/src/vault-encryption.test.ts:21
Scan for credentials and vulnerable patterns
Calculated fingerprint of 299af852f94c2ee5:1 for file plugins/credential-sharing/src/vault-encryption.test.ts line 21, but found existing inconsistent fingerprint value secret-openai-key:plugins/credential-sharing/src/vault-encryption.test.ts:21
Scan for credentials and vulnerable patterns
CodeQL Action v3 will be deprecated in December 2026. Please update all occurrences of the CodeQL Action in your workflow files to v4. For more information, see https://github.blog/changelog/2025-10-28-upcoming-deprecation-of-codeql-action-v3/

Artifacts

Produced during runtime
Name Size Digest
threatcrush-sarif
4.61 KB
sha256:3e1d671209afdecc781350f440c3052acac847df577e7e90b8d748c1e569cb77