hoxhunt / gitlab-ci-gcp

0 stars 3 forks source link

Security Policy violation Security Scorecards #3

Open allstar-app[bot] opened 7 months ago

allstar-app[bot] commented 7 months ago

This issue was automatically created by Allstar.

Security Policy Violation Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.

Results from policy: Code-Review : 0 out of last 3 changesets reviewed before merge -- score normalized to 0


:warning: There is an updated version of this policy result! Click here to see the latest update


This issue will auto resolve when the policy is in compliance.

Issue created by Allstar. See https://github.com/ossf/allstar/ for more information. For questions specific to the repository, please contact the owner or maintainer.

allstar-app[bot] commented 7 months ago

Updating issue after ping interval. See its status below.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.

Results from policy: Code-Review : 0 out of last 3 changesets reviewed before merge -- score normalized to 0

allstar-app[bot] commented 6 months ago

Updating issue after ping interval. See its status below.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.

Results from policy: Code-Review : 0 out of last 3 changesets reviewed before merge -- score normalized to 0

allstar-app[bot] commented 6 months ago

Updating issue after ping interval. See its status below.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.

Results from policy: Code-Review : 0 out of last 3 changesets reviewed before merge -- score normalized to 0

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected

allstar-app[bot] commented 6 months ago

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check. The score was 0, and the passing threshold is 10. Results from policy: Code-Review : found 3 unreviewed changesets out of 3 -- score normalized to 0

Results from policy: Dependency-Update-Tool : no update tool detected

Results from policy: Pinned-Dependencies : dependency not pinned by hash detected -- score normalized to 0

Results from policy: SAST : no SAST tool detected