Added suggested changes from code review #1019
cicd-1-pull-request.yaml
on: push
Set CI/CD metadata
5s
Commit stage
/
Scan secrets
6s
Commit stage
/
Check file format
6s
Commit stage
/
Check Markdown format
15s
Commit stage
/
Check English usage
8s
Commit stage
/
Lint Terraform
7s
Commit stage
/
Checkov Terraform
1m 1s
Commit stage
/
Count lines of code
23s
Commit stage
/
Scan dependencies
33s
Acceptance stage
/
Accessibility test
Acceptance stage
/
Contract test
Acceptance stage
/
Integration test
Acceptance stage
/
Load test
Acceptance stage
/
Security test
Acceptance stage
/
UI performance test
Acceptance stage
/
UI test
Acceptance stage
/
Environment tear down
Annotations
11 errors
|
Commit stage / Checkov Terraform
CKV_AWS_50: "X-Ray tracing is enabled for Lambda"
|
|
Commit stage / Checkov Terraform
CKV_AWS_173: "Check encryption settings for Lambda environmental variable"
|
|
Commit stage / Checkov Terraform
CKV_AWS_115: "Ensure that AWS Lambda function is configured for function-level concurrent execution limit"
|
|
Commit stage / Checkov Terraform
CKV_AWS_116: "Ensure that AWS Lambda function is configured for a Dead Letter Queue(DLQ)"
|
|
Commit stage / Checkov Terraform
CKV_AWS_272: "Ensure AWS Lambda function is configured to validate code-signing"
|
|
Commit stage / Checkov Terraform
CKV_AWS_28: "Ensure DynamoDB point in time recovery (backup) is enabled"
|
|
Commit stage / Checkov Terraform
CKV_AWS_300: "Ensure S3 lifecycle configuration sets period for aborting failed uploads"
|
|
Commit stage / Checkov Terraform
CKV_AWS_111: "Ensure IAM policies does not allow write access without constraints"
|
|
Commit stage / Checkov Terraform
CKV_AWS_356: "Ensure no IAM policies documents allow "*" as a statement's resource for restrictable actions"
|
|
Commit stage / Checkov Terraform
CKV_AWS_338: "Ensure CloudWatch log groups retains logs for at least 1 year"
|
|
Test stage / Linting
Process completed with exit code 2.
|
Artifacts
Produced during runtime
| Name | Size | Digest | |
|---|---|---|---|
|
coverage.xml
Expired
|
2.68 KB |
sha256:30a44bfdac03aa7f2c8c7e54b037661280dd83c661486472d86d324f7a1b6141
|
|
|
lines-of-code-report-.json.zip
Expired
|
835 Bytes |
sha256:3281b1796c9cd8dd7924c70c638c017e91fe17d6b2d1b805a01ccbbafa7467b1
|
|
|
sbom-repository-report.json.zip
Expired
|
40.7 KB |
sha256:c87b84af733b56d3625a5cb772a8939130bf7f032c3be198b21f133e36aef7d9
|
|
|
vulnerabilities-repository-report-.json.zip
Expired
|
2.17 KB |
sha256:060bcb3d772f8a91e1afce1b2a35dd5650167fb39ff2cbf534b1a0727df295a6
|
|