feat(dev-lead): add reusable workflow (Phase 1.5) + shadow period (Phase 7) - #179
Quality Gate failed
Failed conditions
C Security Rating on New Code (required ≥ A)
See analysis details on SonarQube Cloud
Catch issues before they fail your Quality Gate with our IDE extension
SonarQube for IDE
Annotations
Check warning on line 123 in .github/workflows/dev-lead-reusable.yml
sonarqubecloud / SonarCloud Code Analysis
Using dependencies without locking resolved versions is security-sensitive.
See more on https://sonarcloud.io/project/issues?id=petry-projects_.github-private&issues=AZ4re5lKdsKbhSLG_qdJ&open=AZ4re5lKdsKbhSLG_qdJ&pullRequest=179
Check warning on line 123 in .github/workflows/dev-lead-reusable.yml
sonarqubecloud / SonarCloud Code Analysis
Omitting "--ignore-scripts" can lead to the execution of shell scripts. Make sure it is safe here.
See more on https://sonarcloud.io/project/issues?id=petry-projects_.github-private&issues=AZ4re5lKdsKbhSLG_qdI&open=AZ4re5lKdsKbhSLG_qdI&pullRequest=179
Check warning on line 128 in .github/workflows/dev-lead-reusable.yml
sonarqubecloud / SonarCloud Code Analysis
Using dependencies without locking resolved versions is security-sensitive.
See more on https://sonarcloud.io/project/issues?id=petry-projects_.github-private&issues=AZ4re5lKdsKbhSLG_qdL&open=AZ4re5lKdsKbhSLG_qdL&pullRequest=179
Check warning on line 128 in .github/workflows/dev-lead-reusable.yml
sonarqubecloud / SonarCloud Code Analysis
Omitting "--ignore-scripts" can lead to the execution of shell scripts. Make sure it is safe here.
See more on https://sonarcloud.io/project/issues?id=petry-projects_.github-private&issues=AZ4re5lKdsKbhSLG_qdK&open=AZ4re5lKdsKbhSLG_qdK&pullRequest=179