Add check to see if auto tagging will work #75
ci-cd.yml
on: pull_request
check-auto-tagging-will-work
0s
manual-semver
/
semver
release
/
auto-release
Annotations
3 errors and 1 warning
checkov(CKV_GHA_2):
.github/workflows/ci-cd.yml#L50
[new] Ensure run commands are not vulnerable to shell injection
|
actionlint(expression):
.github/workflows/ci-cd.yml#L51
[new] "github.event.pull_request.body" is potentially untrusted. avoid using it directly in inline scripts. instead, pass it through an environment variable. see https://docs.github.com/en/actions/security-guides/security-hardening-for-github-actions for more details
|
code-quality / python
Process completed with exit code 1.
|
code-quality / python
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: actions/cache@v3. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
|