Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Security Policy violation Security Scorecards #8

Open
allstar-app bot opened this issue Jun 24, 2024 · 47 comments
Open

Security Policy violation Security Scorecards #8

allstar-app bot opened this issue Jun 24, 2024 · 47 comments
Labels

Comments

@allstar-app
Copy link

allstar-app bot commented Jun 24, 2024

This issue was automatically created by Allstar.

Security Policy Violation
Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 0, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection not enabled on development/release branches

  • [0]:branch protection not enabled for branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

⚠️ There is an updated version of this policy result! Click here to see the latest update


This issue will auto resolve when the policy is in compliance.

Issue created by Allstar. See https://github.com/ossf/allstar/ for more information. For questions specific to the repository, please contact the owner or maintainer.

@allstar-app allstar-app bot added the allstar label Jun 24, 2024
Copy link
Author

allstar-app bot commented Jul 1, 2024

Updating issue after ping interval. See its status below.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 0, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection not enabled on development/release branches

  • [0]:branch protection not enabled for branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

1 similar comment
Copy link
Author

allstar-app bot commented Jul 2, 2024

Updating issue after ping interval. See its status below.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 0, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection not enabled on development/release branches

  • [0]:branch protection not enabled for branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

Copy link
Author

allstar-app bot commented Jul 2, 2024

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 0, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection not enabled on development/release branches

  • [0]:branch protection not enabled for branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 2 without CI test at HEAD: 2464e9c
  • [0]:merged PR 4 without CI test at HEAD: 749a733

Copy link
Author

allstar-app bot commented Jul 3, 2024

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 0, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection not enabled on development/release branches

  • [0]:branch protection not enabled for branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

Copy link
Author

allstar-app bot commented Jul 4, 2024

Updating issue after ping interval. See its status below.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 0, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection not enabled on development/release branches

  • [0]:branch protection not enabled for branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

2 similar comments
Copy link
Author

allstar-app bot commented Jul 5, 2024

Updating issue after ping interval. See its status below.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 0, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection not enabled on development/release branches

  • [0]:branch protection not enabled for branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

Copy link
Author

allstar-app bot commented Jul 6, 2024

Updating issue after ping interval. See its status below.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 0, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection not enabled on development/release branches

  • [0]:branch protection not enabled for branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

Copy link
Author

allstar-app bot commented Jul 6, 2024

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 0, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection not enabled on development/release branches

  • [0]:branch protection not enabled for branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 2 without CI test at HEAD: 2464e9c
  • [0]:merged PR 4 without CI test at HEAD: 749a733

Copy link
Author

allstar-app bot commented Jul 6, 2024

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 0, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection not enabled on development/release branches

  • [0]:branch protection not enabled for branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

Copy link
Author

allstar-app bot commented Jul 7, 2024

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 0, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection not enabled on development/release branches

  • [0]:branch protection not enabled for branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 2 without CI test at HEAD: 2464e9c
  • [0]:merged PR 4 without CI test at HEAD: 749a733

Copy link
Author

allstar-app bot commented Jul 8, 2024

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 0, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection not enabled on development/release branches

  • [0]:branch protection not enabled for branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

Copy link
Author

allstar-app bot commented Jul 9, 2024

Updating issue after ping interval. See its status below.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 0, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection not enabled on development/release branches

  • [0]:branch protection not enabled for branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

3 similar comments
Copy link
Author

allstar-app bot commented Jul 10, 2024

Updating issue after ping interval. See its status below.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 0, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection not enabled on development/release branches

  • [0]:branch protection not enabled for branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

Copy link
Author

allstar-app bot commented Jul 11, 2024

Updating issue after ping interval. See its status below.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 0, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection not enabled on development/release branches

  • [0]:branch protection not enabled for branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

Copy link
Author

allstar-app bot commented Jul 13, 2024

Updating issue after ping interval. See its status below.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 0, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection not enabled on development/release branches

  • [0]:branch protection not enabled for branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

Copy link
Author

allstar-app bot commented Jul 14, 2024

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 0, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection not enabled on development/release branches

  • [0]:branch protection not enabled for branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 2 without CI test at HEAD: 2464e9c
  • [0]:merged PR 4 without CI test at HEAD: 749a733

Copy link
Author

allstar-app bot commented Jul 21, 2024

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 4, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection is not maximal on development and all release branches

  • [0]:'allow deletion' disabled on branch 'main'
  • [0]:'force pushes' disabled on branch 'main'
  • [0]:'branch protection settings apply to administrators' is required to merge on branch 'main'
  • [0]:'stale review dismissal' is required to merge on branch 'main'
  • [0]:required approving review count is 1 on branch 'main'
  • [0]:codeowners review is not required on branch 'main'
  • [0]:'last push approval' is disable on branch 'main'
  • [0]:'up-to-date branches' is disable on branch 'main'
  • [0]:no status checks found to merge onto branch 'main'
  • [0]:PRs are required in order to make changes on branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

Copy link
Author

allstar-app bot commented Jul 23, 2024

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 4, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection is not maximal on development and all release branches

  • [0]:'force pushes' disabled on branch 'main'
  • [0]:'allow deletion' disabled on branch 'main'
  • [0]:status checks do not require up-to-date branches for 'main'
  • [0]:'last push approval' disabled on branch 'main'
  • [0]:no status checks found to merge onto branch 'main'
  • [0]:number of required reviewers is only 1 on branch 'main'
  • [0]:stale review dismissal enabled on branch 'main'
  • [0]:settings apply to administrators on branch 'main'
  • [0]:codeowner review is not required on branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

Copy link
Author

allstar-app bot commented Jul 25, 2024

Updating issue after ping interval. See its status below.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 4, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection is not maximal on development and all release branches

  • [0]:'force pushes' disabled on branch 'main'
  • [0]:'allow deletion' disabled on branch 'main'
  • [0]:status checks do not require up-to-date branches for 'main'
  • [0]:'last push approval' disabled on branch 'main'
  • [0]:no status checks found to merge onto branch 'main'
  • [0]:number of required reviewers is only 1 on branch 'main'
  • [0]:stale review dismissal enabled on branch 'main'
  • [0]:settings apply to administrators on branch 'main'
  • [0]:codeowner review is not required on branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

2 similar comments
Copy link
Author

allstar-app bot commented Jul 26, 2024

Updating issue after ping interval. See its status below.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 4, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection is not maximal on development and all release branches

  • [0]:'force pushes' disabled on branch 'main'
  • [0]:'allow deletion' disabled on branch 'main'
  • [0]:status checks do not require up-to-date branches for 'main'
  • [0]:'last push approval' disabled on branch 'main'
  • [0]:no status checks found to merge onto branch 'main'
  • [0]:number of required reviewers is only 1 on branch 'main'
  • [0]:stale review dismissal enabled on branch 'main'
  • [0]:settings apply to administrators on branch 'main'
  • [0]:codeowner review is not required on branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

Copy link
Author

allstar-app bot commented Jul 27, 2024

Updating issue after ping interval. See its status below.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 4, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection is not maximal on development and all release branches

  • [0]:'force pushes' disabled on branch 'main'
  • [0]:'allow deletion' disabled on branch 'main'
  • [0]:status checks do not require up-to-date branches for 'main'
  • [0]:'last push approval' disabled on branch 'main'
  • [0]:no status checks found to merge onto branch 'main'
  • [0]:number of required reviewers is only 1 on branch 'main'
  • [0]:stale review dismissal enabled on branch 'main'
  • [0]:settings apply to administrators on branch 'main'
  • [0]:codeowner review is not required on branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

Copy link
Author

allstar-app bot commented Jul 27, 2024

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 4, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection is not maximal on development and all release branches

  • [0]:'force pushes' disabled on branch 'main'
  • [0]:'allow deletion' disabled on branch 'main'
  • [0]:status checks do not require up-to-date branches for 'main'
  • [0]:'last push approval' disabled on branch 'main'
  • [0]:no status checks found to merge onto branch 'main'
  • [0]:number of required reviewers is only 1 on branch 'main'
  • [0]:stale review dismissal enabled on branch 'main'
  • [0]:settings apply to administrators on branch 'main'
  • [0]:codeowner review is not required on branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 2 without CI test at HEAD: 2464e9c
  • [0]:merged PR 4 without CI test at HEAD: 749a733

Copy link
Author

allstar-app bot commented Jul 28, 2024

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 4, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection is not maximal on development and all release branches

  • [0]:'force pushes' disabled on branch 'main'
  • [0]:'allow deletion' disabled on branch 'main'
  • [0]:status checks do not require up-to-date branches for 'main'
  • [0]:'last push approval' disabled on branch 'main'
  • [0]:no status checks found to merge onto branch 'main'
  • [0]:number of required reviewers is only 1 on branch 'main'
  • [0]:stale review dismissal enabled on branch 'main'
  • [0]:settings apply to administrators on branch 'main'
  • [0]:codeowner review is not required on branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

Copy link
Author

allstar-app bot commented Jul 29, 2024

Updating issue after ping interval. See its status below.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 4, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection is not maximal on development and all release branches

  • [0]:'force pushes' disabled on branch 'main'
  • [0]:'allow deletion' disabled on branch 'main'
  • [0]:status checks do not require up-to-date branches for 'main'
  • [0]:'last push approval' disabled on branch 'main'
  • [0]:no status checks found to merge onto branch 'main'
  • [0]:number of required reviewers is only 1 on branch 'main'
  • [0]:stale review dismissal enabled on branch 'main'
  • [0]:settings apply to administrators on branch 'main'
  • [0]:codeowner review is not required on branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

Copy link
Author

allstar-app bot commented Jul 29, 2024

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 4, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection is not maximal on development and all release branches

  • [0]:'force pushes' disabled on branch 'main'
  • [0]:'allow deletion' disabled on branch 'main'
  • [0]:status checks do not require up-to-date branches for 'main'
  • [0]:'last push approval' disabled on branch 'main'
  • [0]:no status checks found to merge onto branch 'main'
  • [0]:number of required reviewers is only 1 on branch 'main'
  • [0]:stale review dismissal enabled on branch 'main'
  • [0]:settings apply to administrators on branch 'main'
  • [0]:codeowner review is not required on branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 2 without CI test at HEAD: 2464e9c
  • [0]:merged PR 4 without CI test at HEAD: 749a733

Copy link
Author

allstar-app bot commented Jul 30, 2024

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 4, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection is not maximal on development and all release branches

  • [0]:'force pushes' disabled on branch 'main'
  • [0]:'allow deletion' disabled on branch 'main'
  • [0]:status checks do not require up-to-date branches for 'main'
  • [0]:'last push approval' disabled on branch 'main'
  • [0]:no status checks found to merge onto branch 'main'
  • [0]:number of required reviewers is only 1 on branch 'main'
  • [0]:stale review dismissal enabled on branch 'main'
  • [0]:settings apply to administrators on branch 'main'
  • [0]:codeowner review is not required on branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

Copy link
Author

allstar-app bot commented Jul 31, 2024

Updating issue after ping interval. See its status below.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 4, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection is not maximal on development and all release branches

  • [0]:'force pushes' disabled on branch 'main'
  • [0]:'allow deletion' disabled on branch 'main'
  • [0]:status checks do not require up-to-date branches for 'main'
  • [0]:'last push approval' disabled on branch 'main'
  • [0]:no status checks found to merge onto branch 'main'
  • [0]:number of required reviewers is only 1 on branch 'main'
  • [0]:stale review dismissal enabled on branch 'main'
  • [0]:settings apply to administrators on branch 'main'
  • [0]:codeowner review is not required on branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

Copy link
Author

allstar-app bot commented Jul 31, 2024

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 4, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection is not maximal on development and all release branches

  • [0]:'force pushes' disabled on branch 'main'
  • [0]:'allow deletion' disabled on branch 'main'
  • [0]:status checks do not require up-to-date branches for 'main'
  • [0]:'last push approval' disabled on branch 'main'
  • [0]:no status checks found to merge onto branch 'main'
  • [0]:number of required reviewers is only 1 on branch 'main'
  • [0]:stale review dismissal enabled on branch 'main'
  • [0]:settings apply to administrators on branch 'main'
  • [0]:codeowner review is not required on branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 2 without CI test at HEAD: 2464e9c
  • [0]:merged PR 4 without CI test at HEAD: 749a733

Copy link
Author

allstar-app bot commented Aug 1, 2024

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 4, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection is not maximal on development and all release branches

  • [0]:'force pushes' disabled on branch 'main'
  • [0]:'allow deletion' disabled on branch 'main'
  • [0]:status checks do not require up-to-date branches for 'main'
  • [0]:'last push approval' disabled on branch 'main'
  • [0]:no status checks found to merge onto branch 'main'
  • [0]:number of required reviewers is only 1 on branch 'main'
  • [0]:stale review dismissal enabled on branch 'main'
  • [0]:settings apply to administrators on branch 'main'
  • [0]:codeowner review is not required on branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

Copy link
Author

allstar-app bot commented Aug 2, 2024

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 4, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection is not maximal on development and all release branches

  • [0]:'force pushes' disabled on branch 'main'
  • [0]:'allow deletion' disabled on branch 'main'
  • [0]:status checks do not require up-to-date branches for 'main'
  • [0]:'last push approval' disabled on branch 'main'
  • [0]:no status checks found to merge onto branch 'main'
  • [0]:number of required reviewers is only 1 on branch 'main'
  • [0]:stale review dismissal enabled on branch 'main'
  • [0]:settings apply to administrators on branch 'main'
  • [0]:codeowner review is not required on branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 2 without CI test at HEAD: 2464e9c
  • [0]:merged PR 4 without CI test at HEAD: 749a733

Copy link
Author

allstar-app bot commented Aug 2, 2024

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 4, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection is not maximal on development and all release branches

  • [0]:'force pushes' disabled on branch 'main'
  • [0]:'allow deletion' disabled on branch 'main'
  • [0]:status checks do not require up-to-date branches for 'main'
  • [0]:'last push approval' disabled on branch 'main'
  • [0]:no status checks found to merge onto branch 'main'
  • [0]:number of required reviewers is only 1 on branch 'main'
  • [0]:stale review dismissal enabled on branch 'main'
  • [0]:settings apply to administrators on branch 'main'
  • [0]:codeowner review is not required on branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

Copy link
Author

allstar-app bot commented Sep 1, 2024

Updating issue after ping interval. See its status below.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 4, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection is not maximal on development and all release branches

  • [0]:'force pushes' disabled on branch 'main'
  • [0]:'allow deletion' disabled on branch 'main'
  • [0]:status checks do not require up-to-date branches for 'main'
  • [0]:'last push approval' disabled on branch 'main'
  • [0]:no status checks found to merge onto branch 'main'
  • [0]:number of required reviewers is only 1 on branch 'main'
  • [0]:stale review dismissal enabled on branch 'main'
  • [0]:settings apply to administrators on branch 'main'
  • [0]:codeowner review is not required on branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

Copy link
Author

allstar-app bot commented Sep 8, 2024

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 4, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection is not maximal on development and all release branches

  • [0]:'force pushes' disabled on branch 'main'
  • [0]:'allow deletion' disabled on branch 'main'
  • [0]:status checks do not require up-to-date branches for 'main'
  • [0]:'last push approval' disabled on branch 'main'
  • [0]:no status checks found to merge onto branch 'main'
  • [0]:number of required reviewers is only 1 on branch 'main'
  • [0]:stale review dismissal enabled on branch 'main'
  • [0]:settings apply to administrators on branch 'main'
  • [0]:codeowner review is not required on branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 2 without CI test at HEAD: 2464e9c
  • [0]:merged PR 4 without CI test at HEAD: 749a733

Copy link
Author

allstar-app bot commented Sep 8, 2024

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 4, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection is not maximal on development and all release branches

  • [0]:'force pushes' disabled on branch 'main'
  • [0]:'allow deletion' disabled on branch 'main'
  • [0]:status checks do not require up-to-date branches for 'main'
  • [0]:'last push approval' disabled on branch 'main'
  • [0]:no status checks found to merge onto branch 'main'
  • [0]:number of required reviewers is only 1 on branch 'main'
  • [0]:stale review dismissal enabled on branch 'main'
  • [0]:settings apply to administrators on branch 'main'
  • [0]:codeowner review is not required on branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

Copy link
Author

allstar-app bot commented Sep 9, 2024

Updating issue after ping interval. See its status below.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 4, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection is not maximal on development and all release branches

  • [0]:'force pushes' disabled on branch 'main'
  • [0]:'allow deletion' disabled on branch 'main'
  • [0]:status checks do not require up-to-date branches for 'main'
  • [0]:'last push approval' disabled on branch 'main'
  • [0]:no status checks found to merge onto branch 'main'
  • [0]:number of required reviewers is only 1 on branch 'main'
  • [0]:stale review dismissal enabled on branch 'main'
  • [0]:settings apply to administrators on branch 'main'
  • [0]:codeowner review is not required on branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

Copy link
Author

allstar-app bot commented Sep 9, 2024

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 4, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection is not maximal on development and all release branches

  • [0]:'force pushes' disabled on branch 'main'
  • [0]:'allow deletion' disabled on branch 'main'
  • [0]:status checks do not require up-to-date branches for 'main'
  • [0]:'last push approval' disabled on branch 'main'
  • [0]:no status checks found to merge onto branch 'main'
  • [0]:number of required reviewers is only 1 on branch 'main'
  • [0]:stale review dismissal enabled on branch 'main'
  • [0]:settings apply to administrators on branch 'main'
  • [0]:codeowner review is not required on branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 2 without CI test at HEAD: 2464e9c
  • [0]:merged PR 4 without CI test at HEAD: 749a733

Copy link
Author

allstar-app bot commented Sep 10, 2024

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 4, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection is not maximal on development and all release branches

  • [0]:'force pushes' disabled on branch 'main'
  • [0]:'allow deletion' disabled on branch 'main'
  • [0]:status checks do not require up-to-date branches for 'main'
  • [0]:'last push approval' disabled on branch 'main'
  • [0]:no status checks found to merge onto branch 'main'
  • [0]:number of required reviewers is only 1 on branch 'main'
  • [0]:stale review dismissal enabled on branch 'main'
  • [0]:settings apply to administrators on branch 'main'
  • [0]:codeowner review is not required on branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

Copy link
Author

allstar-app bot commented Sep 11, 2024

Updating issue after ping interval. See its status below.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 4, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection is not maximal on development and all release branches

  • [0]:'force pushes' disabled on branch 'main'
  • [0]:'allow deletion' disabled on branch 'main'
  • [0]:status checks do not require up-to-date branches for 'main'
  • [0]:'last push approval' disabled on branch 'main'
  • [0]:no status checks found to merge onto branch 'main'
  • [0]:number of required reviewers is only 1 on branch 'main'
  • [0]:stale review dismissal enabled on branch 'main'
  • [0]:settings apply to administrators on branch 'main'
  • [0]:codeowner review is not required on branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

2 similar comments
Copy link
Author

allstar-app bot commented Sep 12, 2024

Updating issue after ping interval. See its status below.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 4, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection is not maximal on development and all release branches

  • [0]:'force pushes' disabled on branch 'main'
  • [0]:'allow deletion' disabled on branch 'main'
  • [0]:status checks do not require up-to-date branches for 'main'
  • [0]:'last push approval' disabled on branch 'main'
  • [0]:no status checks found to merge onto branch 'main'
  • [0]:number of required reviewers is only 1 on branch 'main'
  • [0]:stale review dismissal enabled on branch 'main'
  • [0]:settings apply to administrators on branch 'main'
  • [0]:codeowner review is not required on branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

Copy link
Author

allstar-app bot commented Sep 15, 2024

Updating issue after ping interval. See its status below.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 4, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection is not maximal on development and all release branches

  • [0]:'force pushes' disabled on branch 'main'
  • [0]:'allow deletion' disabled on branch 'main'
  • [0]:status checks do not require up-to-date branches for 'main'
  • [0]:'last push approval' disabled on branch 'main'
  • [0]:no status checks found to merge onto branch 'main'
  • [0]:number of required reviewers is only 1 on branch 'main'
  • [0]:stale review dismissal enabled on branch 'main'
  • [0]:settings apply to administrators on branch 'main'
  • [0]:codeowner review is not required on branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

Copy link
Author

allstar-app bot commented Sep 16, 2024

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 4, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection is not maximal on development and all release branches

  • [0]:'force pushes' disabled on branch 'main'
  • [0]:'allow deletion' disabled on branch 'main'
  • [0]:status checks do not require up-to-date branches for 'main'
  • [0]:'last push approval' disabled on branch 'main'
  • [0]:no status checks found to merge onto branch 'main'
  • [0]:number of required reviewers is only 1 on branch 'main'
  • [0]:stale review dismissal enabled on branch 'main'
  • [0]:settings apply to administrators on branch 'main'
  • [0]:codeowner review is not required on branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 2 without CI test at HEAD: 2464e9c
  • [0]:merged PR 4 without CI test at HEAD: 749a733

Copy link
Author

allstar-app bot commented Sep 16, 2024

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 4, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection is not maximal on development and all release branches

  • [0]:'force pushes' disabled on branch 'main'
  • [0]:'allow deletion' disabled on branch 'main'
  • [0]:status checks do not require up-to-date branches for 'main'
  • [0]:'last push approval' disabled on branch 'main'
  • [0]:no status checks found to merge onto branch 'main'
  • [0]:number of required reviewers is only 1 on branch 'main'
  • [0]:stale review dismissal enabled on branch 'main'
  • [0]:settings apply to administrators on branch 'main'
  • [0]:codeowner review is not required on branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

Copy link
Author

allstar-app bot commented Sep 17, 2024

Updating issue after ping interval. See its status below.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 4, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection is not maximal on development and all release branches

  • [0]:'force pushes' disabled on branch 'main'
  • [0]:'allow deletion' disabled on branch 'main'
  • [0]:status checks do not require up-to-date branches for 'main'
  • [0]:'last push approval' disabled on branch 'main'
  • [0]:no status checks found to merge onto branch 'main'
  • [0]:number of required reviewers is only 1 on branch 'main'
  • [0]:stale review dismissal enabled on branch 'main'
  • [0]:settings apply to administrators on branch 'main'
  • [0]:codeowner review is not required on branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

Copy link
Author

allstar-app bot commented Sep 18, 2024

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 4, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection is not maximal on development and all release branches

  • [0]:'force pushes' disabled on branch 'main'
  • [0]:'allow deletion' disabled on branch 'main'
  • [0]:status checks do not require up-to-date branches for 'main'
  • [0]:'last push approval' disabled on branch 'main'
  • [0]:no status checks found to merge onto branch 'main'
  • [0]:number of required reviewers is only 1 on branch 'main'
  • [0]:stale review dismissal enabled on branch 'main'
  • [0]:settings apply to administrators on branch 'main'
  • [0]:codeowner review is not required on branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 2 without CI test at HEAD: 2464e9c
  • [0]:merged PR 4 without CI test at HEAD: 749a733

Copy link
Author

allstar-app bot commented Sep 18, 2024

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 4, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection is not maximal on development and all release branches

  • [0]:'force pushes' disabled on branch 'main'
  • [0]:'allow deletion' disabled on branch 'main'
  • [0]:status checks do not require up-to-date branches for 'main'
  • [0]:'last push approval' disabled on branch 'main'
  • [0]:no status checks found to merge onto branch 'main'
  • [0]:number of required reviewers is only 1 on branch 'main'
  • [0]:stale review dismissal enabled on branch 'main'
  • [0]:settings apply to administrators on branch 'main'
  • [0]:codeowner review is not required on branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

Copy link
Author

allstar-app bot commented Sep 18, 2024

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 4, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection is not maximal on development and all release branches

  • [0]:'force pushes' disabled on branch 'main'
  • [0]:'allow deletion' disabled on branch 'main'
  • [0]:status checks do not require up-to-date branches for 'main'
  • [0]:'last push approval' disabled on branch 'main'
  • [0]:no status checks found to merge onto branch 'main'
  • [0]:number of required reviewers is only 1 on branch 'main'
  • [0]:stale review dismissal enabled on branch 'main'
  • [0]:settings apply to administrators on branch 'main'
  • [0]:codeowner review is not required on branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 2 without CI test at HEAD: 2464e9c
  • [0]:merged PR 4 without CI test at HEAD: 749a733

Copy link
Author

allstar-app bot commented Sep 19, 2024

The policy result has been updated.


Project is out of compliance with Security Scorecards policy

Rule Description
This is a generic passthrough policy that runs the configured checks from Security Scorecards. Please see the Security Scorecards Documentation for more information on each check.
The score was 4, and the passing threshold is 10.
Results from policy: Branch-Protection : branch protection is not maximal on development and all release branches

  • [0]:'force pushes' disabled on branch 'main'
  • [0]:'allow deletion' disabled on branch 'main'
  • [0]:status checks do not require up-to-date branches for 'main'
  • [0]:'last push approval' disabled on branch 'main'
  • [0]:no status checks found to merge onto branch 'main'
  • [0]:number of required reviewers is only 1 on branch 'main'
  • [0]:stale review dismissal enabled on branch 'main'
  • [0]:settings apply to administrators on branch 'main'
  • [0]:codeowner review is not required on branch 'main'

Results from policy: CI-Tests : 0 out of 2 merged PRs checked by a CI test -- score normalized to 0

  • [0]:merged PR 4 without CI test at HEAD: 749a733
  • [0]:merged PR 2 without CI test at HEAD: 2464e9c

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

No branches or pull requests

0 participants