Skip to content

Feature/verification backend: Added Verification Add-on + Modularized Backend to Core #1032

Feature/verification backend: Added Verification Add-on + Modularized Backend to Core

Feature/verification backend: Added Verification Add-on + Modularized Backend to Core #1032

Triggered via pull request July 3, 2024 14:27
Status Success
Total duration 59s
Artifacts 1

kics.yml

on: pull_request
Fit to window
Zoom out
Zoom in

Annotations

10 warnings
[MEDIUM] Container Running With Low UID: charts/digital-product-pass/templates/deployment-backend.yaml#L50
Check if containers are running with low UID, which might cause conflicts with the host's user table.
[MEDIUM] Container Running With Low UID: charts/digital-product-pass/templates/deployment-frontend.yaml#L120
Check if containers are running with low UID, which might cause conflicts with the host's user table.
[MEDIUM] Service Account Token Automount Not Disabled: charts/digital-product-pass/templates/deployment-backend.yaml#L43
Service Account Tokens are automatically mounted even if not necessary
[MEDIUM] Service Account Token Automount Not Disabled: charts/digital-product-pass/templates/deployment-frontend.yaml#L43
Service Account Tokens are automatically mounted even if not necessary
[MEDIUM] Unpinned Package Version in Apk Add: dpp-frontend/Dockerfile#L71
Package version pinning reduces the range of versions that can be installed, reducing the chances of failure due to unanticipated changes
[MEDIUM] Unpinned Package Version in Apk Add: dpp-verification/simple-wallet/Dockerfile#L36
Package version pinning reduces the range of versions that can be installed, reducing the chances of failure due to unanticipated changes
[MEDIUM] Using Unrecommended Namespace: charts/digital-product-pass/templates/secret-backend.yaml#L28
Namespaces like 'default', 'kube-system' or 'kube-public' should not be used
[MEDIUM] Using Unrecommended Namespace: charts/digital-product-pass/templates/secret-backend.yaml#L45
Namespaces like 'default', 'kube-system' or 'kube-public' should not be used

Artifacts

Produced during runtime
Name Size
kicsResults.json Expired
9.15 KB