GSA-TTS / tts.gsa.gov

Making the website work for people who make websites work
https://federalist-a2423046-fe43-4e75-a2ef-2651e5e123ca.sites.pages.cloud.gov/preview/gsa-tts/tts.gsa.gov/staging/
Other
5 stars 3 forks source link

Pin signing workflow processes #180

Closed wesley-dean-gsa closed 2 weeks ago

wesley-dean-gsa commented 2 weeks ago

Changes proposed in this pull request

This pins a workflow used to sign MegaLinter commits

security considerations

This addresses an unpinned workflow finding.

github-actions[bot] commented 2 weeks ago

🦙 MegaLinter status: ⚠️ WARNING

Descriptor Linter Files Fixed Errors Elapsed time
✅ ACTION actionlint 4 0 0.06s
✅ BASH shellcheck 1 0 0.08s
✅ BASH shfmt 1 0 0 0.25s
⚠️ CSS scss-lint 2 1 2.95s
✅ JAVASCRIPT prettier 6 0 0 1.11s
✅ JSON jsonlint 7 0 0.21s
✅ JSON npm-package-json-lint yes no 0.59s
✅ JSON prettier 7 0 0 1.47s
✅ JSON v8r 7 0 10.58s
⚠️ MARKDOWN markdownlint 20 0 10 2.02s
✅ MARKDOWN markdown-link-check 20 0 9.17s
✅ MARKDOWN markdown-table-formatter 20 0 0 0.48s
✅ REPOSITORY checkov yes no 18.4s
✅ REPOSITORY gitleaks yes no 0.2s
✅ REPOSITORY git_diff yes no 0.27s
⚠️ REPOSITORY grype yes 3 16.41s
✅ REPOSITORY secretlint yes no 2.86s
⚠️ REPOSITORY trivy yes 1 9.76s
✅ REPOSITORY trivy-sbom yes no 3.19s
✅ REPOSITORY trufflehog yes no 4.09s
⚠️ SPELL cspell 20 1 2.84s
✅ YAML prettier 14 0 0 1.36s
✅ YAML v8r 11 0 12.96s
✅ YAML yamllint 14 0 0.53s

See detailed report in MegaLinter reports

_MegaLinter is graciously provided by OX Security_

github-actions[bot] commented 2 weeks ago
Pa11y testing results ``` Welcome to Pa11y > Running Pa11y on URL https://federalist-a2423046-fe43-4e75-a2ef-2651e5e123ca.sites.pages.cloud.gov/preview/gsa-tts/tts.gsa.gov//pin-megalinter-signer/ Results for URL: https://federalist-a2423046-fe43-4e75-a2ef-2651e5e123ca.sites.pages.cloud.gov/preview/gsa-tts/tts.gsa.gov//pin-megalinter-signer/ • Error: This element has insufficient contrast at this conformance level. Expected a contrast ratio of at least 4.5:1, but text in this element has a contrast ratio of 3.68:1. Recommendation: change background to #63686c. ├── WCAG2AA.Principle1.Guideline1_4.1_4_3.G18.Fail ├── #main-content > section:nth-child(3) > div > div > div:nth-child(2) > p └──

For over 50 years, GSA has been...

1 Errors ```
github-actions[bot] commented 2 weeks ago
Pa11y testing results ``` Welcome to Pa11y > Running Pa11y on URL https://federalist-a2423046-fe43-4e75-a2ef-2651e5e123ca.sites.pages.cloud.gov/preview/gsa-tts/tts.gsa.gov//pin-megalinter-signer/ Results for URL: https://federalist-a2423046-fe43-4e75-a2ef-2651e5e123ca.sites.pages.cloud.gov/preview/gsa-tts/tts.gsa.gov//pin-megalinter-signer/ • Error: This element has insufficient contrast at this conformance level. Expected a contrast ratio of at least 4.5:1, but text in this element has a contrast ratio of 3.68:1. Recommendation: change background to #63686c. ├── WCAG2AA.Principle1.Guideline1_4.1_4_3.G18.Fail ├── #main-content > section:nth-child(3) > div > div > div:nth-child(2) > p └──

For over 50 years, GSA has been...

1 Errors ```