Skip to content

fix(threatcrush-scan): pin the CLI install spec instead of @latest #70

fix(threatcrush-scan): pin the CLI install spec instead of @latest

fix(threatcrush-scan): pin the CLI install spec instead of @latest #70

Triggered via pull request August 11, 2026 09:24
Status Success
Total duration 1m 2s
Artifacts 1

threatcrush-scan.yml

on: pull_request
Scan for credentials and vulnerable patterns
33s
Scan for credentials and vulnerable patterns
Fit to window
Zoom out
Zoom in

Annotations

2 warnings
Scan for credentials and vulnerable patterns
Node.js 20 is deprecated. The following actions target Node.js 20 but are being forced to run on Node.js 24: actions/github-script@v7, actions/upload-artifact@v4, github/codeql-action/upload-sarif@v3. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
Scan for credentials and vulnerable patterns
CodeQL Action v3 will be deprecated in December 2026. Please update all occurrences of the CodeQL Action in your workflow files to v4. For more information, see https://github.blog/changelog/2025-10-28-upcoming-deprecation-of-codeql-action-v3/

Artifacts

Produced during runtime
Name Size Digest
threatcrush-sarif
15.2 KB
sha256:14db9d948b1724bd3fc87bafb3f7769d026a1065ab3ae04daa99aef571b0e8f6