Skip to content

Conversation

cx-artur-ribeiro
Copy link
Contributor

@cx-artur-ribeiro cx-artur-ribeiro commented Feb 24, 2025

Add groups to dependabot.yml github action

Reason for Proposed Changes

  • Update github action for better pull request message;

Proposed Changes

  • Add groups to all dependabot action steps;
  • Update Dockerfile images to fix vulnerabilities;

I submit this contribution under the Apache-2.0 license.

Copy link
Contributor

kics-logo

KICS version: v2.1.4

Category Results
CRITICAL CRITICAL 0
HIGH HIGH 0
MEDIUM MEDIUM 0
LOW LOW 0
INFO INFO 0
TRACE TRACE 0
TOTAL TOTAL 0
Metric Values
Files scanned placeholder 1
Files parsed placeholder 1
Files failed to scan placeholder 0
Total executed queries placeholder 47
Queries failed to execute placeholder 0
Execution time placeholder 0

@cx-artur-ribeiro cx-artur-ribeiro self-assigned this Feb 24, 2025
@cx-artur-ribeiro cx-artur-ribeiro added the security Security issues label Feb 24, 2025
@cx-artur-ribeiro cx-artur-ribeiro marked this pull request as ready for review February 24, 2025 21:37
@cx-artur-ribeiro cx-artur-ribeiro requested a review from a team as a code owner February 24, 2025 21:37
Copy link
Contributor

@cx-rui-araujo cx-rui-araujo left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@cx-artur-ribeiro cx-artur-ribeiro merged commit eb2914b into master Feb 25, 2025
26 checks passed
@cx-artur-ribeiro cx-artur-ribeiro deleted the AST-0000-update-dependabot branch February 25, 2025 09:28
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dockerfile security Security issues
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants