Skip to content

Checkov

Checkov #636

Triggered via schedule October 28, 2024 01:15
Status Success
Total duration 1m 2s
Artifacts

checkov.yaml

on: schedule
Checkov  /  Checkov Scan
54s
Checkov / Checkov Scan
Fit to window
Zoom out
Zoom in

Annotations

10 errors and 3 warnings
Checkov / Checkov Scan: init-container-fix.patch.yaml#L21
CKV_K8S_13: "Memory limits should be set"
Checkov / Checkov Scan: init-container-fix.patch.yaml#L21
CKV_K8S_29: "Apply security context to your pods and containers"
Checkov / Checkov Scan: init-container-fix.patch.yaml#L21
CKV_K8S_38: "Ensure that Service Account Tokens are only mounted where necessary"
Checkov / Checkov Scan: init-container-fix.patch.yaml#L21
CKV_K8S_12: "Memory requests should be set"
Checkov / Checkov Scan: init-container-fix.patch.yaml#L21
CKV_K8S_22: "Use read-only filesystem for containers where possible"
Checkov / Checkov Scan: init-container-fix.patch.yaml#L21
CKV_K8S_37: "Minimize the admission of containers with capabilities assigned"
Checkov / Checkov Scan: init-container-fix.patch.yaml#L21
CKV_K8S_20: "Containers should not run with allowPrivilegeEscalation"
Checkov / Checkov Scan: init-container-fix.patch.yaml#L21
CKV_K8S_14: "Image Tag should be fixed - not latest or blank"
Checkov / Checkov Scan: init-container-fix.patch.yaml#L21
CKV_K8S_10: "CPU requests should be set"
Checkov / Checkov Scan: init-container-fix.patch.yaml#L21
CKV_K8S_43: "Image should use digest"
Checkov / Checkov Scan
The following actions uses node12 which is deprecated and will be forced to run on node16: actions/setup-python@v1. For more info: https://github.blog/changelog/2023-06-13-github-actions-all-actions-will-run-on-node16-instead-of-node12-by-default/
Checkov / Checkov Scan
The following actions use a deprecated Node.js version and will be forced to run on node20: actions/setup-python@v1, actions/checkout@v3, github/codeql-action/upload-sarif@v2. For more info: https://github.blog/changelog/2024-03-07-github-actions-all-actions-will-run-on-node20-instead-of-node16-by-default/
Checkov / Checkov Scan
CodeQL Action v2 will be deprecated on December 5th, 2024. Please update all occurrences of the CodeQL Action in your workflow files to v3. For more information, see https://github.blog/changelog/2024-01-12-code-scanning-deprecation-of-codeql-action-v2/