Skip to content

Security Analysis & Linting #6

Security Analysis & Linting

Security Analysis & Linting #6

Triggered via schedule February 8, 2026 01:15
Status Failure
Total duration 3m 31s
Artifacts 24

security-analysis.yml

on: schedule
Lint & Format Check
9s
Lint & Format Check
Python SAST (Bandit)
18s
Python SAST (Bandit)
Semgrep SAST
30s
Semgrep SAST
SonarQube Local Analysis
2m 36s
SonarQube Local Analysis
Dependency Security Check
3m 15s
Dependency Security Check
Secret Detection
2m 40s
Secret Detection
Dockerfile Lint (Hadolint)
19s
Dockerfile Lint (Hadolint)
Docker Image Security (Trivy)
3m 27s
Docker Image Security (Trivy)
Docker Filesystem Scan (Trivy)
2m 47s
Docker Filesystem Scan (Trivy)
Fit to window
Zoom out
Zoom in

Annotations

3 errors
Lint & Format Check
Process completed with exit code 1.
Ruff (F401): src/growmcp/tools/feeds.py#L7
src/growmcp/tools/feeds.py:7:36: F401 `..auth.get_groww_client` imported but unused
Ruff (F401): src/growmcp/tools/feeds.py#L3
src/growmcp/tools/feeds.py:3:20: F401 `typing.Optional` imported but unused

Artifacts

Produced during runtime
Name Size Digest
bandit-sast-report
863 Bytes
sha256:5ede24a7479c70466cefa9b76a00bfc260ab3da46d14d4ede2924b07504d1b9b
dependency-audit-report
1.14 KB
sha256:e7cce304e9f52d8c55440eb248f898c9984699918c3b67548d6cad29ea596c1b
dependency-audit-report
1.14 KB
sha256:e7cce304e9f52d8c55440eb248f898c9984699918c3b67548d6cad29ea596c1b
dependency-audit-report
1.14 KB
sha256:e7cce304e9f52d8c55440eb248f898c9984699918c3b67548d6cad29ea596c1b
dependency-audit-report
1.14 KB
sha256:e7cce304e9f52d8c55440eb248f898c9984699918c3b67548d6cad29ea596c1b
dependency-audit-report
1.14 KB
sha256:e7cce304e9f52d8c55440eb248f898c9984699918c3b67548d6cad29ea596c1b
dependency-audit-report
1.14 KB
sha256:e7cce304e9f52d8c55440eb248f898c9984699918c3b67548d6cad29ea596c1b
dependency-audit-report
1.14 KB
sha256:e7cce304e9f52d8c55440eb248f898c9984699918c3b67548d6cad29ea596c1b
gitleaks-secrets-report
159 Bytes
sha256:97316b499f1ce872ec86e810602f1b9c87fe4ff932559e9809cfe1e2d8ac0022
gitleaks-secrets-report
159 Bytes
sha256:97316b499f1ce872ec86e810602f1b9c87fe4ff932559e9809cfe1e2d8ac0022
gitleaks-secrets-report
159 Bytes
sha256:97316b499f1ce872ec86e810602f1b9c87fe4ff932559e9809cfe1e2d8ac0022
gitleaks-secrets-report
159 Bytes
sha256:97316b499f1ce872ec86e810602f1b9c87fe4ff932559e9809cfe1e2d8ac0022
hadolint-report
409 Bytes
sha256:ae65cba58a162f5df5600a7ad6017310ab190d5d330d42d12ca5440b865f430f
semgrep-sast-report
731 Bytes
sha256:6c0d64d729d3a5c67e7c3df4b942f3f9a9d534c21abd7028696791734f1c8792
sonar-local-report
1.2 KB
sha256:a8722417adb73a4ba7ed5645d27f81d7f087a038860b202a7dcfb8d9fe38e9d6
sonar-local-report
1.2 KB
sha256:a8722417adb73a4ba7ed5645d27f81d7f087a038860b202a7dcfb8d9fe38e9d6
trivy-filesystem-report
534 Bytes
sha256:7f3773f5631629af8efc8c3ee063c5043c3300e2dcbbec3d2c0fb6b09ce0fb0c
trivy-filesystem-report
534 Bytes
sha256:7f3773f5631629af8efc8c3ee063c5043c3300e2dcbbec3d2c0fb6b09ce0fb0c
trivy-filesystem-report
534 Bytes
sha256:7f3773f5631629af8efc8c3ee063c5043c3300e2dcbbec3d2c0fb6b09ce0fb0c
trivy-image-report
20.9 KB
sha256:9fd0970f93031cffdbd585c8c7b12d8aba3a151b8601e274b36c05f8a5e54669
trivy-image-report
20.9 KB
sha256:9fd0970f93031cffdbd585c8c7b12d8aba3a151b8601e274b36c05f8a5e54669
trivy-image-report
20.9 KB
sha256:9fd0970f93031cffdbd585c8c7b12d8aba3a151b8601e274b36c05f8a5e54669
trivy-image-report
20.9 KB
sha256:9fd0970f93031cffdbd585c8c7b12d8aba3a151b8601e274b36c05f8a5e54669
trivy-image-report
20.9 KB
sha256:9fd0970f93031cffdbd585c8c7b12d8aba3a151b8601e274b36c05f8a5e54669