Skip to content

Merge pull request #284 from smallstep/max/goreleaser-permissions #22

Merge pull request #284 from smallstep/max/goreleaser-permissions

Merge pull request #284 from smallstep/max/goreleaser-permissions #22

Triggered via push September 17, 2024 21:05
Status Failure
Total duration 12m 20s
Artifacts 4

release.yml

on: push
Matrix: ci / ci / codeql / CodeQL Analyze
ci  /  ...  /  set-go-matrix
0s
ci / ci / build / set-go-matrix
ci  /  ...  /  set-go-matrix
0s
ci / ci / test / set-go-matrix
ci  /  ...  /  actionlint
8s
ci / ci / actionlint
ci  /  ...  /  lint
1m 8s
ci / ci / lint / lint
ci  /  ...  /  govulncheck
20s
ci / ci / govulncheck / govulncheck
Matrix: ci / ci / build / build
Matrix: ci / ci / test / test
Create Release
3s
Create Release
goreleaser  /  Upload Assets To Github w/ goreleaser
1m 4s
goreleaser / Upload Assets To Github w/ goreleaser
Build & Upload Autocert Init Docker Images  /  Build & Upload Docker Images
47s
Build & Upload Autocert Init Docker Images / Build & Upload Docker Images
Build & Upload Autocert Renewer Images  /  Build & Upload Docker Images
41s
Build & Upload Autocert Renewer Images / Build & Upload Docker Images
Build & Upload Autocert Bootstrapper Images  /  Build & Upload Docker Images
42s
Build & Upload Autocert Bootstrapper Images / Build & Upload Docker Images
Build & Upload Autocert Bootstrapper Images  /  Build & Upload Docker Images
9m 27s
Build & Upload Autocert Bootstrapper Images / Build & Upload Docker Images
Fit to window
Zoom out
Zoom in

Annotations

1 error and 4 warnings
goreleaser / Upload Assets To Github w/ goreleaser
The process '/opt/hostedtoolcache/goreleaser-action/2.3.2-pro/x64/goreleaser' failed with exit code 1
Sensitive data should not be used in the ARG or ENV commands: renewer/Dockerfile#L5
SecretsUsedInArgOrEnv: Do not use ARG or ENV instructions for sensitive data (ENV "KEY") More info: https://docs.docker.com/go/dockerfile/rule/secrets-used-in-arg-or-env/
Sensitive data should not be used in the ARG or ENV commands: bootstrapper/Dockerfile#L5
SecretsUsedInArgOrEnv: Do not use ARG or ENV instructions for sensitive data (ENV "KEY") More info: https://docs.docker.com/go/dockerfile/rule/secrets-used-in-arg-or-env/
goreleaser / Upload Assets To Github w/ goreleaser
You are using 'latest' as default version. Will lock to '~> v2'.
JSON arguments recommended for ENTRYPOINT/CMD to prevent unintended behavior related to OS signals: controller/Dockerfile#L17
JSONArgsRecommended: JSON arguments recommended for ENTRYPOINT to prevent unintended behavior related to OS signals More info: https://docs.docker.com/go/dockerfile/rule/json-args-recommended/

Artifacts

Produced during runtime
Name Size
smallstep~autocert~2OBCYW.dockerbuild
53.6 KB
smallstep~autocert~3SOPGT.dockerbuild
79.4 KB
smallstep~autocert~JC6TLV.dockerbuild
37.1 KB
smallstep~autocert~OPX28J.dockerbuild
64.6 KB