Skip to content

Bump alpine from 3.23 to 3.24 in /services/mcp-firewall #250

Bump alpine from 3.23 to 3.24 in /services/mcp-firewall

Bump alpine from 3.23 to 3.24 in /services/mcp-firewall #250

Triggered via pull request June 12, 2026 03:53
Status Failure
Total duration 14m 6s
Artifacts 1

ci.yml

on: pull_request
Matrix: Go Build & Test
Python Test & Lint
33s
Python Test & Lint
Hadolint & Semgrep
35s
Hadolint & Semgrep
Security Regression Tests
58s
Security Regression Tests
Test Count Drift Check
48s
Test Count Drift Check
Dependency Vulnerability Audit
53s
Dependency Vulnerability Audit
Documentation Validation
5s
Documentation Validation
Shell Script Lint
8s
Shell Script Lint
Release Helper Script Smoke
13s
Release Helper Script Smoke
Validate YAML configs
6s
Validate YAML configs
Image Reference Consistency
4s
Image Reference Consistency
Verify action, container, and EOL pins
10s
Verify action, container, and EOL pins
Supply Chain & SBOM Verification
19s
Supply Chain & SBOM Verification
Sandbox OpenVEX Smoke
7m 22s
Sandbox OpenVEX Smoke
Release Branch Hardened Gate
0s
Release Branch Hardened Gate
Fit to window
Zoom out
Zoom in

Annotations

10 errors and 4 warnings
Dependency Vulnerability Audit
registry: govulncheck found vulnerabilities
Dependency Vulnerability Audit
securectl.cmdStatus calls fmt.Fprintf, which eventually calls x509.HostnameError.Error
Dependency Vulnerability Audit
registry.main calls http.Server.ListenAndServe, which eventually calls x509.Certificate.VerifyHostname
Dependency Vulnerability Audit
registry.main calls http.Server.ListenAndServe, which eventually calls x509.Certificate.Verify
Dependency Vulnerability Audit
registry.main calls http.Server.ListenAndServe, which eventually calls textproto.Reader.ReadMIMEHeader
Dependency Vulnerability Audit
airlock: govulncheck found vulnerabilities
Dependency Vulnerability Audit
airlock.loadSources calls fmt.Errorf, which eventually calls x509.HostnameError.Error
Dependency Vulnerability Audit
airlock.main calls http.Server.ListenAndServe, which eventually calls x509.Certificate.VerifyHostname
Dependency Vulnerability Audit
airlock.main calls http.Server.ListenAndServe, which eventually calls x509.Certificate.Verify
Dependency Vulnerability Audit
airlock.main calls http.Server.ListenAndServe, which eventually calls textproto.Reader.ReadMIMEHeader
Supply Chain & SBOM Verification
Restore cache failed: Dependencies file is not found in /home/runner/work/SecAI_OS/SecAI_OS. Supported file pattern: go.mod
Test Count Drift Check
Restore cache failed: Dependencies file is not found in /home/runner/work/SecAI_OS/SecAI_OS. Supported file pattern: go.mod
Dependency Vulnerability Audit
Restore cache failed: Dependencies file is not found in /home/runner/work/SecAI_OS/SecAI_OS. Supported file pattern: go.mod
Security Regression Tests
Restore cache failed: Dependencies file is not found in /home/runner/work/SecAI_OS/SecAI_OS. Supported file pattern: go.mod

Artifacts

Produced during runtime
Name Size Digest
sandbox-vex-smoke
1.43 KB
sha256:d1544889a38d07c4229020e784299e5b2180eddc28ad5375ffe6f8a97ca32941