Skip to content

seclift: ephemeral injected Infisical OIDC validation

907b71a
Select commit
Loading
Failed to load commit list.
Closed

[seclift] ephemeral Infisical OIDC validation #1286

seclift: ephemeral injected Infisical OIDC validation
907b71a
Select commit
Loading
Failed to load commit list.
GitHub Advanced Security / CodeQL succeeded May 12, 2026 in 38m 21s

2 new alerts including 2 medium severity security vulnerabilities

New alerts in code changed by this pull request

Security Alerts:

  • 2 medium

See annotations below for details.

View all branch alerts.

Annotations

Check warning on line 24 in .github/workflows/ci-e2e.yml

See this annotation in the file changed.

Code scanning / CodeQL

Unpinned tag for a non-immutable Action in workflow Medium

Unpinned 3rd party Action 'ci-e2e' step
Uses Step: seclift_infisical_repo
uses 'Infisical/secrets-action' with ref 'v1.0.9', not a pinned commit hash

Check warning on line 38 in .github/workflows/ci-e2e.yml

See this annotation in the file changed.

Code scanning / CodeQL

Unpinned tag for a non-immutable Action in workflow Medium

Unpinned 3rd party Action 'ci-e2e' step
Uses Step: seclift_infisical_org
uses 'Infisical/secrets-action' with ref 'v1.0.9', not a pinned commit hash