Actions: chandrur44/Testing-CodeQL
Actions
Showing runs from all workflows
17 workflow runs
17 workflow runs
Collapse Trivy workflow into a single job
Security
#6:
Commit 9988b6a
pushed
by
chandrur44
Drop SARIF artifact uploads; rely on Security tab only
Security
#4:
Commit 456f4bd
pushed
by
chandrur44
Merge image SARIF runs into a single run to satisfy Code Scanning
Security
#3:
Commit 48d2f1e
pushed
by
chandrur44
Add bait artifacts for each Trivy scanner to verify SARIF tool labels
Security
#2:
Commit e652eef
pushed
by
chandrur44
Drop CodeQL job; rename workflow; label each Trivy SARIF by scanner
Security
#1:
Commit 36a141b
pushed
by
chandrur44
Resolve Trivy findings across secrets, image CVEs, and Dockerfile mis…
Security
#10:
Commit 94a5d4c
pushed
by
chandrur44
Pin trivy-action to v0.36.0 (valid release tag)
Security
#9:
Commit f64d243
pushed
by
chandrur44
Replace Gitleaks with Trivy secret scanning
Security
#8:
Commit 44d5e07
pushed
by
chandrur44
Add Trivy Dockerfile + image scans, force Node 24 for JS actions
Security
#7:
Commit c60efd0
pushed
by
chandrur44
Bump GitHub Actions to clear Node.js 20 and CodeQL v3 deprecations
Security
#6:
Commit 6efdd5d
pushed
by
chandrur44
Use non-allowlisted fake credentials as Gitleaks bait
Security
#5:
Commit 1666cc1
pushed
by
chandrur44
Switch Gitleaks to OSS binary with SARIF upload
Security
#4:
Commit 6ac7478
pushed
by
chandrur44
Fix CodeQL findings; add secret scanning bait
Security
#2:
Commit 6cf64f4
pushed
by
chandrur44