The latest updates on your projects. Learn more about Vercel for Git ↗︎
1 Ignored Deployment
| Name |
Status |
Preview |
Comments |
Updated (UTC) |
| rooch |
⬜️ Ignored (Inspect) |
Visit Preview |
|
Jun 26, 2024 2:30pm |
Dependency Review
✅ No vulnerabilities or license issues or OpenSSF Scorecard issues found.
OpenSSF Scorecard
| Package | Version | Score | Details |
| actions/actions/checkout | 1.*.* |
:green_circle: 7.5 | Details| Check | Score | Reason |
|---|
| Code-Review | :green_circle: 10 | all changesets reviewed | | Maintained | :green_circle: 10 | 18 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10 | | CII-Best-Practices | :warning: 0 | no effort to earn an OpenSSF best practices badge detected | | License | :green_circle: 10 | license file detected | | Branch-Protection | :warning: -1 | internal error: error during branchesHandler.setup: internal error: githubv4.Query: Resource not accessible by integration | | Dangerous-Workflow | :green_circle: 10 | no dangerous workflow patterns detected | | Binary-Artifacts | :green_circle: 10 | no binaries found in the repo | | Token-Permissions | :warning: 0 | detected GitHub workflow tokens with excessive permissions | | Fuzzing | :warning: 0 | project is not fuzzed | | Pinned-Dependencies | :green_circle: 4 | dependency not pinned by hash detected -- score normalized to 4 | | Signed-Releases | :warning: -1 | no releases found | | Security-Policy | :green_circle: 9 | security policy file detected | | Packaging | :green_circle: 10 | packaging workflow detected | | SAST | :green_circle: 10 | SAST tool is run on all commits | | Vulnerabilities | :green_circle: 9 | 1 existing vulnerabilities detected |
|
| actions/boa-dev/criterion-compare-action | master |
:green_circle: 4.7 | Details| Check | Score | Reason |
|---|
| Code-Review | :green_circle: 8 | Found 8/9 approved changesets -- score normalized to 8 | | Maintained | :warning: 0 | 0 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 0 | | CII-Best-Practices | :warning: 0 | no effort to earn an OpenSSF best practices badge detected | | License | :green_circle: 10 | license file detected | | Signed-Releases | :warning: -1 | no releases found | | Branch-Protection | :warning: -1 | internal error: error during branchesHandler.setup: internal error: githubv4.Query: Resource not accessible by integration | | Binary-Artifacts | :green_circle: 10 | no binaries found in the repo | | Packaging | :warning: -1 | packaging workflow not detected | | Dangerous-Workflow | :green_circle: 10 | no dangerous workflow patterns detected | | Token-Permissions | :warning: 0 | detected GitHub workflow tokens with excessive permissions | | Fuzzing | :warning: 0 | project is not fuzzed | | Security-Policy | :warning: 0 | security policy file not detected | | Pinned-Dependencies | :warning: 1 | dependency not pinned by hash detected -- score normalized to 1 | | Vulnerabilities | :green_circle: 10 | 0 existing vulnerabilities detected | | SAST | :warning: 0 | SAST tool is not run on all commits -- score normalized to 0 |
|
Scanned Manifest Files
.github/workflows/benchmark_pr.yml
- actions/checkout@1.*.*
- boa-dev/criterion-compare-action@master
@yourmoonlight is there any problem with this PR? may I help u?