Add DevSecOps demo feature page and setup #92
cicd.yml
on: push
Build and Publish Container Image
/
set-version
6s
Build and Deploy to Azure Web App
1m 2s
Build and Publish Container Image
/
...
/
scan-image
1m 19s
Build and Publish Container Image
/
...
/
publish-image
1m 0s
Annotations
3 errors, 6 warnings, and 3 notices
|
Build and Deploy to Azure Web App
Login failed with Error: The process '/usr/bin/az' failed with exit code 1. Double check if the 'auth-type' is correct. Refer to https://github.com/Azure/login#readme for more information.
|
|
Build and Deploy to Azure Web App
Run the command below to authenticate interactively; additional arguments may be added as needed:
az logout
az login
|
|
Build and Deploy to Azure Web App
AADSTS700213: No matching federated identity record found for presented assertion subject 'repo:githubabcs-devops/gh-advsec-devsecops:ref:refs/heads/main'. Check your federated identity credential Subject, Audience and Issuer against the presented assertion. https://learn.microsoft.com/entra/workload-id/workload-identity-federation Trace ID: c65691aa-8d5e-4c18-9a17-c1cc5c2e2100 Correlation ID: 43b34e36-c51e-4cf5-9e41-615b1fad410e Timestamp: 2026-01-29 21:34:18Z
|
|
Build and Deploy to Azure Web App:
src/webapp01/Pages/Index.cshtml.cs#L22
Converting null literal or possible null value to non-nullable type.
|
|
Build and Deploy to Azure Web App:
src/webapp01/Pages/Index.cshtml.cs#L22
Possible null reference assignment.
|
|
Build and Deploy to Azure Web App:
src/webapp01/Pages/Index.cshtml.cs#L22
Converting null literal or possible null value to non-nullable type.
|
|
Build and Deploy to Azure Web App:
src/webapp01/Pages/Index.cshtml.cs#L22
Possible null reference assignment.
|
|
Build and Publish Container Image / scan-image / scan-image
CodeQL Action v3 will be deprecated in December 2026. Please update all occurrences of the CodeQL Action in your workflow files to v4. For more information, see https://github.blog/changelog/2025-10-28-upcoming-deprecation-of-codeql-action-v3/
|
|
Build and Publish Container Image / scan-image / scan-image
Failed minimum severity level. Found vulnerabilities with level 'medium' or higher
|
|
Build and Publish Container Image / publish-image / publish-image
Snapshot successfully created at 2026-01-29T21:35:38.315Z
|
|
Build and Publish Container Image / publish-image / publish-image
{
"manifests": {},
"version": 0,
"job": {
"correlator": "publish-image",
"id": "21495489794"
},
"sha": "0490dd9fcab5be396783fa573d2b9b281d16e2f2",
"ref": "refs/heads/main",
"scanned": "2026-01-29T21:35:38.083Z",
"detector": {
"name": "spdx-to-dependency-graph-action",
"version": "0.1.1",
"url": "https://github.com/advanced-security/spdx-dependency-submission-action"
}
}
|
|
Build and Publish Container Image / publish-image / publish-image
Submitting snapshot...
|
Artifacts
Produced during runtime
| Name | Size | Digest | |
|---|---|---|---|
|
githubabcs-devops~gh-advsec-devsecops~4AQU4X.dockerbuild
|
78.5 KB |
sha256:509236c0879266505f112274de02175f498692e8887e1519c75e4b65e927f6a8
|
|
|
githubabcs-devops~gh-advsec-devsecops~BSLT4T.dockerbuild
|
37.9 KB |
sha256:7016fac55b1d68e2f7301ab4a419becbc68f0258705f6a369e92ee75b6f717b5
|
|
|
sarif
|
6.92 KB |
sha256:57c9d5d7d3b2f2ff8f0004085eebdef0ca9a4423bc722780b4bfbf471e2bd29e
|
|