perf(detectors): quick-reject pre-screen on auth detectors (-31% detector CPU) #82
security.yml
on: pull_request
OSV-Scanner (SCA)
7s
Trivy (filesystem + container scan)
37s
Semgrep (SAST)
30s
Gitleaks (secret scan)
15s
jscpd (duplication < 3% on touched code)
21s
SBOM (SPDX + CycloneDX)
9s
Artifacts
Produced during runtime
| Name | Size | Digest | |
|---|---|---|---|
|
sbom
|
31.9 KB |
sha256:c03d0ef6f2ff1813c4d9b4d318def92d649ad23125370bca41814c1b1786c8d1
|
|