fix(security): Trivy-Secrets + non-CVE-Vulns auswerten + Self-CI + Telegram/Matrix-Verbesserung
Some checks failed
security-hardened.yml / ci: YAML-Parse runner-robust (PyYAML optional; jq-Regression bleibt hartes Gate) (push) Failing after 0s
security.yml / ci: YAML-Parse runner-robust (PyYAML optional; jq-Regression bleibt hartes Gate) (push) Failing after 0s
security-hardened.yml / ci: YAML-Parse runner-robust (PyYAML optional; jq-Regression bleibt hartes Gate) (pull_request) Failing after 0s
security.yml / ci: YAML-Parse runner-robust (PyYAML optional; jq-Regression bleibt hartes Gate) (pull_request) Failing after 0s
CI (self-validation) / validate (pull_request) Successful in 4s
security-hardened.yml / fix(security): Trivy-Secrets + non-CVE-Vulns auswerten + Self-CI (PR #6) (pull_request) Failing after 0s
security.yml / fix(security): Trivy-Secrets + non-CVE-Vulns auswerten + Self-CI (PR #6) (pull_request) Failing after 0s
fix(security): clean scans no longer red the job (fp pipeline pipefail + -e abort)
Some checks failed
security-hardened.yml / fix(security): clean scans no longer red the job (fp pipeline pipefail+ -e abort) (push) Failing after 0s
security.yml / fix(security): clean scans no longer red the job (fp pipeline pipefail+ -e abort) (push) Failing after 0s
security-hardened.yml / fix(security): clean scans no longer red the job (fp pipeline pipefail+ -e abort) (pull_request) Failing after 0s
security.yml / fix(security): clean scans no longer red the job (fp pipeline pipefail+ -e abort) (pull_request) Failing after 0s
security-hardened.yml / fix(security): clean scans no longer red the job (fp pipeline pipefail + -e abort) (pull_request) Failing after 0s
security.yml / fix(security): clean scans no longer red the job (fp pipeline pipefail + -e abort) (pull_request) Failing after 0s
feat(security): self-report scan failures to an API-readable Forgejo issue
Some checks failed
security-hardened.yml / feat(security): self-report scan failures to an API-readable Forgejo issue (push) Failing after 0s
security.yml / feat(security): self-report scan failures to an API-readable Forgejo issue (push) Failing after 0s
security-hardened.yml / feat(security): self-report scan failures to an API-readable Forgejo issue (pull_request) Failing after 0s
security.yml / feat(security): self-report scan failures to an API-readable Forgejo issue (pull_request) Failing after 0s
fix(security): resilient Trivy bootstrap (apt-retry + checksum-verified binary fallback)
Some checks failed
security-hardened.yml / fix(security-hardened): preserve OSV/Hadolint/SAST installs in resilient bootstrap (push) Failing after 0s
security.yml / fix(security-hardened): preserve OSV/Hadolint/SAST installs in resilient bootstrap (push) Failing after 0s
security-hardened.yml / fix(security-hardened): preserve OSV/Hadolint/SAST installs in resilient bootstrap (pull_request) Failing after 0s
security.yml / fix(security-hardened): preserve OSV/Hadolint/SAST installs in resilient bootstrap (pull_request) Failing after 0s
security-hardened.yml / fix(security): resilient Trivy bootstrap (apt-retry + checksum-verified binary fallback) (pull_request) Failing after 0s
security.yml / fix(security): resilient Trivy bootstrap (apt-retry + checksum-verified binary fallback) (pull_request) Failing after 0s
fix(security): notify only on finding-state-change + PR runs report-only (stop Telegram/Matrix spam)
Some checks failed
security-hardened.yml / docs: document state-change-only notify + fp marker + PR report-only (push) Failing after 0s
security.yml / docs: document state-change-only notify + fp marker + PR report-only (push) Failing after 0s
security-hardened.yml / docs: document state-change-only notify + fp marker + PR report-only (pull_request) Failing after 0s
security.yml / docs: document state-change-only notify + fp marker + PR report-only (pull_request) Failing after 0s
security-hardened.yml / fix(security): notify only on finding-state-change + PR runs report-only (stop Telegram/Matrix spam) (pull_request) Failing after 0s
security.yml / fix(security): notify only on finding-state-change + PR runs report-only (stop Telegram/Matrix spam) (pull_request) Failing after 0s