Merge pull request #309 from smallstep/max/bump-dependencies #25
release.yml
on: push
Matrix: ci / ci / codeql / CodeQL Analyze
ci
/
...
/
set-go-matrix
0s
ci
/
...
/
set-go-matrix
0s
ci
/
...
/
actionlint
7s
ci
/
...
/
lint
1m 4s
ci
/
...
/
govulncheck
19s
Matrix: ci / ci / build / build
Matrix: ci / ci / test / test
goreleaser
/
Upload Assets To Github w/ goreleaser
1m 12s
Build & Upload Autocert Init Docker Images
/
Build & Upload Docker Images
46s
Build & Upload Autocert Renewer Images
/
Build & Upload Docker Images
51s
Build & Upload Autocert Bootstrapper Images
/
Build & Upload Docker Images
46s
Build & Upload Autocert Bootstrapper Images
/
Build & Upload Docker Images
9m 34s
Annotations
4 warnings
Sensitive data should not be used in the ARG or ENV commands:
bootstrapper/Dockerfile#L5
SecretsUsedInArgOrEnv: Do not use ARG or ENV instructions for sensitive data (ENV "KEY")
More info: https://docs.docker.com/go/dockerfile/rule/secrets-used-in-arg-or-env/
|
Sensitive data should not be used in the ARG or ENV commands:
renewer/Dockerfile#L5
SecretsUsedInArgOrEnv: Do not use ARG or ENV instructions for sensitive data (ENV "KEY")
More info: https://docs.docker.com/go/dockerfile/rule/secrets-used-in-arg-or-env/
|
goreleaser / Upload Assets To Github w/ goreleaser
You are using 'latest' as default version. Will lock to '~> v2'.
|
JSON arguments recommended for ENTRYPOINT/CMD to prevent unintended behavior related to OS signals:
controller/Dockerfile#L17
JSONArgsRecommended: JSON arguments recommended for ENTRYPOINT to prevent unintended behavior related to OS signals
More info: https://docs.docker.com/go/dockerfile/rule/json-args-recommended/
|
Artifacts
Produced during runtime
Name | Size | |
---|---|---|
smallstep~autocert~6D5MCU.dockerbuild
|
56.3 KB |
|
smallstep~autocert~JC3J9H.dockerbuild
|
39 KB |
|
smallstep~autocert~TJ1R01.dockerbuild
|
65.2 KB |
|
smallstep~autocert~YHDJTT.dockerbuild
|
82 KB |
|