Skip to content

ci: add ThreatCrush security scan #1

ci: add ThreatCrush security scan

ci: add ThreatCrush security scan #1

Triggered via pull request August 3, 2026 10:31
Status Success
Total duration 30s
Artifacts –

threatcrush-scan.yml

on: pull_request
Scan for credentials and vulnerable patterns
27s
Scan for credentials and vulnerable patterns
Fit to window
Zoom out
Zoom in

Annotations

11 warnings and 1 notice
Scan for credentials and vulnerable patterns
Node.js 20 is deprecated. The following actions target Node.js 20 but are being forced to run on Node.js 24: actions/checkout@v4, actions/github-script@v7, actions/setup-node@v4, actions/upload-artifact@v4, github/codeql-action/upload-sarif@v3. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
Scan for credentials and vulnerable patterns
Calculated fingerprint of 76abda965b1e0e0f:1 for file examples/browser-integration/reset-password-page.js line 111, but found existing inconsistent fingerprint value threatcrush-generic-secret:examples/browser-integration/reset-password-page.js:111
Scan for credentials and vulnerable patterns
Calculated fingerprint of 6e7db8cd5e461ed0:1 for file examples/basic-usage.js line 170, but found existing inconsistent fingerprint value threatcrush-generic-secret:examples/basic-usage.js:170
Scan for credentials and vulnerable patterns
Calculated fingerprint of 849f0dfb844d0cdb:1 for file examples/basic-usage.js line 159, but found existing inconsistent fingerprint value threatcrush-generic-secret:examples/basic-usage.js:159
Scan for credentials and vulnerable patterns
Calculated fingerprint of 159586a14f4477e:1 for file examples/basic-usage.js line 116, but found existing inconsistent fingerprint value threatcrush-generic-secret:examples/basic-usage.js:116
Scan for credentials and vulnerable patterns
Calculated fingerprint of 23d214540d004fff:1 for file examples/basic-usage.js line 105, but found existing inconsistent fingerprint value threatcrush-generic-secret:examples/basic-usage.js:105
Scan for credentials and vulnerable patterns
Calculated fingerprint of 402f3e6f0bd15f6b:1 for file examples/basic-usage.js line 104, but found existing inconsistent fingerprint value threatcrush-generic-secret:examples/basic-usage.js:104
Scan for credentials and vulnerable patterns
Calculated fingerprint of bc6dd5f1ab4aad53:1 for file examples/basic-usage.js line 64, but found existing inconsistent fingerprint value threatcrush-generic-secret:examples/basic-usage.js:64
Scan for credentials and vulnerable patterns
Calculated fingerprint of ffadae2d48d732c1:1 for file examples/basic-usage.js line 45, but found existing inconsistent fingerprint value threatcrush-generic-secret:examples/basic-usage.js:45
Scan for credentials and vulnerable patterns
Calculated fingerprint of 15e9d114b4fe69d4:1 for file examples/basic-usage.js line 10, but found existing inconsistent fingerprint value threatcrush-generic-secret:examples/basic-usage.js:10
Scan for credentials and vulnerable patterns
CodeQL Action v3 will be deprecated in December 2026. Please update all occurrences of the CodeQL Action in your workflow files to v4. For more information, see https://github.blog/changelog/2025-10-28-upcoming-deprecation-of-codeql-action-v3/
Scan for credentials and vulnerable patterns
CLI 0.2.2 predates --format; converting terminal output instead.