Skip to content

KICS

KICS #1457

Triggered via schedule December 20, 2024 00:17
Status Success
Total duration 1m 0s
Artifacts 1

kics.yml

on: schedule
Fit to window
Zoom out
Zoom in

Annotations

11 warnings
Analyze
ubuntu-latest pipelines will use ubuntu-24.04 soon. For more details, see https://github.com/actions/runner-images/issues/10636
[MEDIUM] Service Account Token Automount Not Disabled: charts/digital-product-pass/templates/deployment-backend.yaml#L44
Service Account Tokens are automatically mounted even if not necessary
[MEDIUM] Service Account Token Automount Not Disabled: charts/digital-product-pass/templates/deployment-frontend.yaml#L48
Service Account Tokens are automatically mounted even if not necessary
[MEDIUM] Unpinned Package Version in Apk Add: dpp-frontend/Dockerfile#L72
Package version pinning reduces the range of versions that can be installed, reducing the chances of failure due to unanticipated changes
[MEDIUM] Unpinned Package Version in Apk Add: dpp-verification/simple-wallet/Dockerfile#L36
Package version pinning reduces the range of versions that can be installed, reducing the chances of failure due to unanticipated changes
[MEDIUM] Using Unrecommended Namespace: charts/digital-product-pass/templates/secret-backend.yaml#L29
Namespaces like 'default', 'kube-system' or 'kube-public' should not be used
[MEDIUM] Using Unrecommended Namespace: charts/digital-product-pass/templates/deployment-backend.yaml#L27
Namespaces like 'default', 'kube-system' or 'kube-public' should not be used
[MEDIUM] Using Unrecommended Namespace: charts/digital-product-pass/templates/service-backend.yaml#L28
Namespaces like 'default', 'kube-system' or 'kube-public' should not be used
[MEDIUM] Using Unrecommended Namespace: charts/digital-product-pass/templates/deployment-frontend.yaml#L31
Namespaces like 'default', 'kube-system' or 'kube-public' should not be used

Artifacts

Produced during runtime
Name Size
kicsResults.json
7.88 KB