Update bridgecrewio/checkov-action action to v12.2875.0 #1364
ci-infra.yml
on: pull_request
Lint GitHub Actions workflows
5s
Lint scripts
4s
Check Terraform format
5s
Validate Terraform modules
57s
Check compliance with checkov
20s
Check compliance with tfsec
10s
Annotations
10 errors and 6 warnings
Check compliance with checkov
CKV_AWS_354: "Ensure RDS Performance Insights are encrypted using KMS CMKs"
|
Check compliance with checkov
CKV_AWS_356: "Ensure no IAM policies documents allow "*" as a statement's resource for restrictable actions"
|
Check compliance with checkov
CKV_TF_1: "Ensure Terraform module sources use a commit hash"
|
Check compliance with checkov
CKV_AWS_356: "Ensure no IAM policies documents allow "*" as a statement's resource for restrictable actions"
|
Check compliance with checkov
CKV2_AWS_31: "Ensure WAF2 has a Logging Configuration"
|
Check compliance with checkov
CKV2_AWS_64: "Ensure KMS key Policy is defined"
|
Check compliance with checkov
CKV2_AWS_64: "Ensure KMS key Policy is defined"
|
Check compliance with checkov
CKV2_AWS_64: "Ensure KMS key Policy is defined"
|
Check compliance with checkov
CKV2_AWS_64: "Ensure KMS key Policy is defined"
|
Check compliance with checkov
CKV2_AWS_64: "Ensure KMS key Policy is defined"
|
Check Terraform format
The following actions use a deprecated Node.js version and will be forced to run on node20: actions/checkout@v3, hashicorp/setup-terraform@v2. For more info: https://github.blog/changelog/2024-03-07-github-actions-all-actions-will-run-on-node20-instead-of-node16-by-default/
|
Lint scripts
The following actions use a deprecated Node.js version and will be forced to run on node20: actions/checkout@v3. For more info: https://github.blog/changelog/2024-03-07-github-actions-all-actions-will-run-on-node20-instead-of-node16-by-default/
|
Lint GitHub Actions workflows
The following actions use a deprecated Node.js version and will be forced to run on node20: actions/checkout@v3. For more info: https://github.blog/changelog/2024-03-07-github-actions-all-actions-will-run-on-node20-instead-of-node16-by-default/
|
Check compliance with tfsec
The following actions use a deprecated Node.js version and will be forced to run on node20: actions/checkout@v3. For more info: https://github.blog/changelog/2024-03-07-github-actions-all-actions-will-run-on-node20-instead-of-node16-by-default/
|
Check compliance with checkov
The following actions use a deprecated Node.js version and will be forced to run on node20: actions/checkout@v3, actions/setup-python@v4. For more info: https://github.blog/changelog/2024-03-07-github-actions-all-actions-will-run-on-node20-instead-of-node16-by-default/
|
Validate Terraform modules
The following actions use a deprecated Node.js version and will be forced to run on node20: actions/checkout@v3, hashicorp/setup-terraform@v2. For more info: https://github.blog/changelog/2024-03-07-github-actions-all-actions-will-run-on-node20-instead-of-node16-by-default/
|