Skip to content

Reject nested Grype database statuses marked invalid (db.status.valid… #81

Reject nested Grype database statuses marked invalid (db.status.valid…

Reject nested Grype database statuses marked invalid (db.status.valid… #81

Triggered via push August 25, 2026 17:03
Status Success
Total duration 9m 57s
Artifacts 7

release.yml

on: push
Build distributions
7m 13s
Build distributions
Matrix: code-security
Matrix: encryption
Matrix: python-matrix
Matrix: reproducibility-build
Browser accessibility release gate
5m 1s
Browser accessibility release gate
Pi extension release gate
52s
Pi extension release gate
Production image release gate
2m 58s
Production image release gate
Repair GitHub Release
0s
Repair GitHub Release
Matrix: installed-artifact-platform-smoke
Python 3.9 installed release artifacts
37s
Python 3.9 installed release artifacts
Compare independent distribution builders
14s
Compare independent distribution builders
Generate public release evidence
22s
Generate public release evidence
Publish to PyPI
1m 19s
Publish to PyPI
Publish GitHub Release
9s
Publish GitHub Release
Fit to window
Zoom out
Zoom in

Annotations

14 warnings and 1 notice
CodeQL javascript-typescript release gate
This run of the CodeQL Action does not have permission to access the CodeQL Action API endpoints. This could be because the Action is running on a pull request from a fork. If not, please ensure the workflow has at least the 'security-events: read' permission. Details: Resource not accessible by integration - https://docs.github.com/rest
CodeQL javascript-typescript release gate
This run of the CodeQL Action does not have permission to access the CodeQL Action API endpoints. This could be because the Action is running on a pull request from a fork. If not, please ensure the workflow has at least the 'security-events: read' permission. Details: Resource not accessible by integration - https://docs.github.com/rest
CodeQL javascript-typescript release gate
This run of the CodeQL Action does not have permission to access the CodeQL Action API endpoints. This could be because the Action is running on a pull request from a fork. If not, please ensure the workflow has at least the 'security-events: read' permission. Details: Resource not accessible by integration - https://docs.github.com/rest
CodeQL javascript-typescript release gate
This run of the CodeQL Action does not have permission to access the CodeQL Action API endpoints. This could be because the Action is running on a pull request from a fork. If not, please ensure the workflow has at least the 'security-events: read' permission. Details: Resource not accessible by integration - https://docs.github.com/rest
CodeQL javascript-typescript release gate
Feature flags do not specify a default CLI version. Falling back to the CLI version shipped with the Action. This is 2.26.3.
CodeQL javascript-typescript release gate
This run of the CodeQL Action does not have permission to access the CodeQL Action API endpoints. As a result, it will not be opted into any experimental features. This could be because the Action is running on a pull request from a fork. If not, please ensure the workflow has at least the 'security-events: read' permission. Details: Resource not accessible by integration - https://docs.github.com/rest
CodeQL javascript-typescript release gate
This run of the CodeQL Action does not have permission to access the CodeQL Action API endpoints. This could be because the Action is running on a pull request from a fork. If not, please ensure the workflow has at least the 'security-events: read' permission. Details: Resource not accessible by integration - https://docs.github.com/rest
CodeQL python release gate
This run of the CodeQL Action does not have permission to access the CodeQL Action API endpoints. This could be because the Action is running on a pull request from a fork. If not, please ensure the workflow has at least the 'security-events: read' permission. Details: Resource not accessible by integration - https://docs.github.com/rest
CodeQL python release gate
This run of the CodeQL Action does not have permission to access the CodeQL Action API endpoints. This could be because the Action is running on a pull request from a fork. If not, please ensure the workflow has at least the 'security-events: read' permission. Details: Resource not accessible by integration - https://docs.github.com/rest
CodeQL python release gate
This run of the CodeQL Action does not have permission to access the CodeQL Action API endpoints. This could be because the Action is running on a pull request from a fork. If not, please ensure the workflow has at least the 'security-events: read' permission. Details: Resource not accessible by integration - https://docs.github.com/rest
CodeQL python release gate
This run of the CodeQL Action does not have permission to access the CodeQL Action API endpoints. This could be because the Action is running on a pull request from a fork. If not, please ensure the workflow has at least the 'security-events: read' permission. Details: Resource not accessible by integration - https://docs.github.com/rest
CodeQL python release gate
Feature flags do not specify a default CLI version. Falling back to the CLI version shipped with the Action. This is 2.26.3.
CodeQL python release gate
This run of the CodeQL Action does not have permission to access the CodeQL Action API endpoints. As a result, it will not be opted into any experimental features. This could be because the Action is running on a pull request from a fork. If not, please ensure the workflow has at least the 'security-events: read' permission. Details: Resource not accessible by integration - https://docs.github.com/rest
CodeQL python release gate
This run of the CodeQL Action does not have permission to access the CodeQL Action API endpoints. This could be because the Action is running on a pull request from a fork. If not, please ensure the workflow has at least the 'security-events: read' permission. Details: Resource not accessible by integration - https://docs.github.com/rest
Publish to PyPI
Generating and uploading digital attestations

Artifacts

Produced during runtime
Name Size Digest
build-environment-evidence
20.6 KB
sha256:cdfdf5f361ede0312fdc36bc39fc12d9a9648aea6eab5d342ce1a4a1099bbe4a
independent-reproducibility
555 Bytes
sha256:cb5bd3714d1ee7f14ea219f8e17a7ec37f0b6ea7c5c98538c18493fab73d55da
production-image-evidence
469 KB
sha256:7cff6caeb7f612c393bab84c6646c33d0878b91a28ea674f2ac201ed14341ab0
public-release-evidence
493 KB
sha256:6c74280a7fcc9553f5cc9ee4dc23cd7ade6fae738c449dfa96b90adc81973bc9
python-package-distributions
5.26 MB
sha256:3cd6d4bf8ed8318687ee947f5a2900af65c4dcc969088b5ef99b94c181a887d5
reproducibility-builder-a
5.26 MB
sha256:b1bc27c7e640b4e5cbbdcd9b54be1e040f7f4955e6667d34365e6b447916ecaf
reproducibility-builder-b
5.26 MB
sha256:99d9124d2ab5d8b664bbb1beb0551c8d5e2a36979c8ae06e503bca171cecb26a