Skip to content

Bump the python-ci group with 3 updates #212

Bump the python-ci group with 3 updates

Bump the python-ci group with 3 updates #212

Triggered via pull request May 8, 2026 03:56
Status Failure
Total duration 11m 57s
Artifacts 1

ci.yml

on: pull_request
Matrix: Go Build & Test
Python Test & Lint
20s
Python Test & Lint
Hadolint & Semgrep
24s
Hadolint & Semgrep
Security Regression Tests
43s
Security Regression Tests
Test Count Drift Check
42s
Test Count Drift Check
Dependency Vulnerability Audit
47s
Dependency Vulnerability Audit
Documentation Validation
9s
Documentation Validation
Shell Script Lint
6s
Shell Script Lint
Release Helper Script Smoke
9s
Release Helper Script Smoke
Validate YAML configs
8s
Validate YAML configs
Image Reference Consistency
3s
Image Reference Consistency
Verify action, container, and EOL pins
7s
Verify action, container, and EOL pins
Supply Chain & SBOM Verification
22s
Supply Chain & SBOM Verification
Sandbox OpenVEX Smoke
7m 10s
Sandbox OpenVEX Smoke
Release Branch Hardened Gate
0s
Release Branch Hardened Gate
Fit to window
Zoom out
Zoom in

Annotations

11 errors and 12 warnings
Python Test & Lint
Process completed with exit code 1.
Dependency Vulnerability Audit
gpu.cmdDaemon calls http.Server.ListenAndServe, which calls net.Listen
Dependency Vulnerability Audit
gpu.cmdStatus calls http.Client.Get, which eventually calls net.Dialer.DialContext
Dependency Vulnerability Audit
tool-firewall: govulncheck found vulnerabilities
Dependency Vulnerability Audit
tool.main calls http.Server.ListenAndServe, which calls net.Listen
Dependency Vulnerability Audit
registry: govulncheck found vulnerabilities
Dependency Vulnerability Audit
securectl.apiRequest calls http.Client.Do
Dependency Vulnerability Audit
registry.main calls http.Server.ListenAndServe, which calls net.Listen
Dependency Vulnerability Audit
securectl.apiRequest calls http.Client.Do, which eventually calls net.Dialer.DialContext
Dependency Vulnerability Audit
airlock: govulncheck found vulnerabilities
Dependency Vulnerability Audit
airlock.main calls http.Server.ListenAndServe, which calls net.Listen
Supply Chain & SBOM Verification
Restore cache failed: Dependencies file is not found in /home/runner/work/SecAI_OS/SecAI_OS. Supported file pattern: go.mod
Security Regression Tests
Restore cache failed: Dependencies file is not found in /home/runner/work/SecAI_OS/SecAI_OS. Supported file pattern: go.mod
Python Test & Lint
services/search-mediator/entrypoint.py:25: [MEDIUM] Probable insecure usage of temp file/directory.
Python Test & Lint
services/diffusion-worker/entrypoint.py:54: [MEDIUM] Probable insecure usage of temp file/directory.
Python Test & Lint
services/diffusion-worker/entrypoint.py:43: [MEDIUM] Probable insecure usage of temp file/directory.
Python Test & Lint
services/diffusion-worker/entrypoint.py:42: [MEDIUM] Probable insecure usage of temp file/directory.
Python Test & Lint
services/diffusion-worker/entrypoint.py:41: [MEDIUM] Probable insecure usage of temp file/directory.
Python Test & Lint
services/diffusion-worker/entrypoint.py:39: [MEDIUM] Probable insecure usage of temp file/directory.
Python Test & Lint
services/agent/agent/sandbox.py:403: [MEDIUM] Probable insecure usage of temp file/directory.
Python Test & Lint
services/agent/agent/app.py:656: [MEDIUM] Chmod setting a permissive mask 0o660 on file (sock_file).
Test Count Drift Check
Restore cache failed: Dependencies file is not found in /home/runner/work/SecAI_OS/SecAI_OS. Supported file pattern: go.mod
Dependency Vulnerability Audit
Restore cache failed: Dependencies file is not found in /home/runner/work/SecAI_OS/SecAI_OS. Supported file pattern: go.mod

Artifacts

Produced during runtime
Name Size Digest
sandbox-vex-smoke
1.2 KB
sha256:4edfbd07c8e7eb2ba6f87ba2bc3ceaf5faf6cbe399b8c1b02d7320a1e171099d