release: cut [Unreleased] → [v0.4.1] (#167) #213
security.yml
on: push
OSV-Scanner (SCA)
7s
Trivy (filesystem + container scan)
14s
Semgrep (SAST)
25s
Gitleaks (secret scan)
11s
jscpd (duplication < 3% on touched code)
20s
SBOM (SPDX + CycloneDX)
15s
Artifacts
Produced during runtime
| Name | Size | Digest | |
|---|---|---|---|
|
sbom
|
13.1 KB |
sha256:3c64219fdc03668d7453b2acf10b4476d402d1744950f2b0e9ded012c32b9ebe
|
|