Skip to content

πŸ›‘οΈ Sentinel: [security improvement] Prevent Base Tag Injection via CSP #168

πŸ›‘οΈ Sentinel: [security improvement] Prevent Base Tag Injection via CSP

πŸ›‘οΈ Sentinel: [security improvement] Prevent Base Tag Injection via CSP #168

Triggered via pull request August 1, 2026 13:59
Status Success
Total duration 33s
Artifacts 1

security-scan.yml Required

on: pull_request
cancel-closed-pr-runs
cancel-closed-pr-runs
osv-scan
23s
osv-scan
dependency-review
6s
dependency-review
trivy-fs
27s
trivy-fs
scorecard
19s
scorecard
Fit to window
Zoom out
Zoom in

Annotations

1 notice
osv-scan
OSV hard gate scans direct manifest and lockfile evidence with --no-resolve so external transitive registry resolver stalls cannot hold the required-check queue indefinitely. The job is capped at 25 minutes; if this budget is exceeded, rerun after the upstream registry/service recovers or inspect the uploaded debug artifacts.

Artifacts

Produced during runtime
Name Size Digest
osv-scan-debug
1023 Bytes
sha256:6db4cd88430172cd3f3c89bcd3ea95355f27531deb6812021e008e746155c5a8