Closed Eeebru closed 1 day ago
Checkmarx One ā Scan Summary & Details ā dba642ab-a100-4259-97ca-ff8289b1a30e
Severity | Issue | Source File / Package | Checkmarx Insight |
---|---|---|---|
Privacy_Violation | /app/src/main/java/com/x8bit/bitwarden/ui/auth/feature/completeregistration/CompleteRegistrationViewModel.kt: 346 | Attack Vector | |
Privacy_Violation | /app/src/main/java/com/x8bit/bitwarden/ui/auth/feature/completeregistration/CompleteRegistrationViewModel.kt: 346 | Attack Vector | |
Privacy_Violation | /app/src/main/java/com/x8bit/bitwarden/ui/auth/feature/createaccount/CreateAccountViewModel.kt: 321 | Attack Vector | |
Privacy_Violation | /app/src/main/java/com/x8bit/bitwarden/ui/auth/feature/createaccount/CreateAccountViewModel.kt: 321 | Attack Vector | |
Privacy_Violation | /app/src/main/java/com/x8bit/bitwarden/ui/vault/feature/item/VaultItemViewModel.kt: 875 | Attack Vector | |
Unpinned Actions Full Length Commit SHA | /crowdin-push.yml: 26 | Pinning an action to a full length commit SHA is currently the only way to use an action as an immutable release. Pinning to a particular SHA helps... |
Severity | Issue | Source File / Package |
---|---|---|
Privacy_Violation | /app/src/main/java/com/x8bit/bitwarden/ui/auth/feature/completeregistration/CompleteRegistrationViewModel.kt: 341 | |
Privacy_Violation | /app/src/main/java/com/x8bit/bitwarden/ui/auth/feature/completeregistration/CompleteRegistrationViewModel.kt: 341 | |
Unpinned Actions Full Length Commit SHA | /crowdin-pull.yml: 26 |
All modified and coverable lines are covered by tests :white_check_mark:
Project coverage is 89.01%. Comparing base (
a96fcd9
) to head (85063d5
). Report is 1 commits behind head on main.
:umbrella: View full report in Codecov by Sentry.
:loudspeaker: Have feedback on the report? Share it here.
šļø Tracking
š Objective
bwwl lint
before deploymentšø Screenshots
ā° Reminders before review
š¦® Reviewer guidelines
:+1:
) or similar for great changes:memo:
) or ā¹ļø (:information_source:
) for notes or general info:question:
) for questions:thinking:
) or š (:thought_balloon:
) for more open inquiry that's not quite a confirmed issue and could potentially benefit from discussion:art:
) for suggestions / improvements:x:
) or ā ļø (:warning:
) for more significant problems or concerns needing attention:seedling:
) or ā»ļø (:recycle:
) for future improvements or indications of technical debt:pick:
) for minor or nitpick changes