sqlite-web 0.7.2
gitea.db
action_run_job
Create
Query
access
access_token
action
action_artifact
action_run
action_run_index
action_run_job
action_runner
action_runner_token
action_schedule
action_schedule_spec
action_task
action_task_output
action_task_step
action_tasks_version
action_variable
app_state
attachment
auth_token
badge
branch
collaboration
comment
commit_status
commit_status_index
commit_status_summary
commit_sync_log
commit_sync_status
dbfs_data
dbfs_meta
deploy_key
email_address
email_hash
external_login_user
follow
gpg_key
gpg_key_import
hook_task
issue
issue_assignees
issue_content_history
issue_dependency
issue_index
issue_label
issue_pin
issue_user
issue_watch
label
language_stat
lfs_lock
lfs_meta_object
login_source
milestone
mirror
notice
notification
oauth2_application
oauth2_authorization_code
oauth2_grant
org_user
package
package_blob
package_blob_upload
package_cleanup_rule
package_file
package_property
package_version
project
project_board
project_issue
protected_branch
protected_tag
public_key
pull_auto_merge
pull_request
push_mirror
reaction
release
renamed_branch
repo_archiver
repo_hidden_file
repo_indexer_status
repo_license
repo_redirect
repo_topic
repo_transfer
repo_unit
repository
review
review_state
secret
session
sqlite_sequence
star
stopwatch
system_setting
task
team
team_invite
team_repo
team_unit
team_user
topic
tracked_time
two_factor
upload
user
user_badge
user_blocking
user_open_id
user_redirect
user_setting
version
watch
webauthn_credential
webhook
Toggle helper tables
Structure
Content
Query
Insert
Drop
Import
Export
Delete row 31678 from action_run_job
id
31678
run_id
23635
repo_id
76
owner_id
5
commit_sha
9159f925070e50ba4126f448cb7755396e4a66ac
is_fork_pull_request
0
name
Application image scan (ops-pager)
attempt
0
workflow_payload
name: Governance "on": pull_request:
name: Governance "on": pull_request: push: branches: - main jobs: application-image-vulnerability-scan: name: Application image scan (ops-pager) runs-on: ubuntu-latest steps: - name: Checkout uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 with: fetch-depth: "0" - name: Build immutable application target run: docker build --target "${{ matrix.target }}" --tag "${{ matrix.image }}" --file deploy/production/Dockerfile . env: DOCKER_BUILDKIT: "1" - if: matrix.target == 'ops-postgres' name: Verify hardened PostgreSQL runtime run: node scripts/check-postgres-image.mjs "${{ matrix.image }}" - if: matrix.target == 'ops-alertmanager' name: Verify reduced Alertmanager runtime run: node scripts/check-alertmanager-image.mjs "${{ matrix.image }}" - if: matrix.target == 'ops-loki' name: Verify rebuilt Loki runtime run: node scripts/check-loki-image.mjs "${{ matrix.image }}" - if: matrix.target == 'ops-tempo' name: Verify rebuilt Tempo runtime run: node scripts/check-tempo-image.mjs "${{ matrix.image }}" - if: matrix.target == 'ops-otel-collector' name: Verify minimal OTel Collector runtime run: node scripts/check-otel-collector-image.mjs "${{ matrix.image }}" - name: Reject application HIGH or CRITICAL vulnerabilities uses: aquasecurity/trivy-action@ed142fd0673e97e23eac54620cfb913e5ce36c25 with: exit-code: "1" format: table ignore-unfixed: "false" image-ref: ${{ matrix.image }} scanners: vuln severity: CRITICAL,HIGH trivy-version: v0.74.0 vuln-type: os,library strategy: fail-fast: "false" matrix: image: - deos-scan-ops-pager:ci target: - ops-pager permissions: contents: read
...
job_id
application-image-vulnerability-scan
needs
["static-governance"]
runs_on
["ubuntu-latest"]
task_id
0
status
4
started
0
stopped
0
created
1788498900
updated
1788499171
raw_concurrency
is_concurrency_evaluated
1
concurrency_group
concurrency_cancel
0
Delete
Cancel