snyk-test ○ success
⏱
Duration: 15s
⏳
Queued: 1s
📁
Stage: test
🖥
Runner: linux-aws-1
Average Duration
39s
This job: 15s
Failure Rate
0.0%
last 30 days
External Links
▶
Job Execution Phases
💡 Tip: Click on any phase bar to jump to that section in the log below
▶
Job Analysis
Job Status: Passed
Status: Job passed successfully
▶
Full Job Log
233 lines
Match - of 0
1
09:35:15
Running with gitlab-runner 18.9.0 (07e534ba)
2
09:35:15
on gitlab-runner-linux-1-5fd7c4d488-snzvl wRxjPbsJX, system ID: r_XCOVtJjO8DKR
3
09:35:15
feature flags: FF_USE_FASTZIP:true, FF_USE_NEW_BASH_EVAL_STRATEGY:true, FF_USE_DYNAMIC_TRACE_FORCE_SEND_INTERVAL:true, FF_SCRIPT_SECTIONS:true, FF_USE_ADVANCED_POD_SPEC_CONFIGURATION:true, FF_PRINT_POD_EVENTS:true, FF_USE_DUMB_INIT_WITH_KUBERNETES_EXECUTOR:true, FF_LOG_IMAGES_CONFIGURED_FOR_JOB:true, FF_CLEAN_UP_FAILED_CACHE_EXTRACT:true, FF_GIT_URLS_WITHOUT_TOKENS:true, FF_WAIT_FOR_POD_TO_BE_REACHABLE:true, FF_USE_FLEETING_ACQUIRE_HEARTBEATS:true, FF_USE_JOB_ROUTER:true
4
09:35:15
Resolving secrets
5
09:35:15
section_start:1777973715:prepare_executor
6
09:35:15
+Preparing the "kubernetes" executor
7
09:35:15
Using Kubernetes namespace: gitlab-runner
8
09:35:15
Using Kubernetes executor with image registry.scandit.com/dockerfiles/snyk:python-3.12@sha256:41b6de5ad9d99a10fc8502ac2f2f8629fc621fab19926700c2b14376ac7b2115 ...
9
09:35:15
Using attach strategy to execute scripts...
10
09:35:15
Using effective pull policy of [Always] for container helper
11
09:35:15
Using effective pull policy of [Always] for container init-permissions
12
09:35:15
Using effective pull policy of [Always] for container build
13
09:35:15
section_end:1777973715:prepare_executor
14
09:35:15
+section_start:1777973715:prepare_script
15
09:35:15
+Preparing environment
16
09:35:15
Using FF_USE_POD_ACTIVE_DEADLINE_SECONDS, the Pod activeDeadlineSeconds will be set to the job timeout: 1h0m0s...
17
09:35:15
WARNING: Advanced Pod Spec configuration enabled, merging the provided PodSpec to the generated one. This is a beta feature and is subject to change. Feedback is collected in this issue: https://gitlab.com/gitlab-org/gitlab-runner/-/issues/29659 ...
18
09:35:16
Subscribing to Kubernetes Pod events...
19
09:35:17
Type Reason Message
20
09:35:17
Normal Scheduled Successfully assigned gitlab-runner/runner-wrxjpbsjx-project-621-concurrent-1-l7dw1cnj to ip-10-0-19-92.eu-central-1.compute.internal
21
09:35:17
Normal Pulled Container image "gitlab/gitlab-runner-helper:x86_64-v18.8.0" already present on machine
22
09:35:17
Normal Created Created container: init-permissions
23
09:35:17
Normal Started Started container init-permissions
24
09:35:17
Normal Pulled Container image "498954711405.dkr.ecr.eu-central-1.amazonaws.com/dockerfiles/snyk@sha256:41b6de5ad9d99a10fc8502ac2f2f8629fc621fab19926700c2b14376ac7b2115" already present on machine
25
09:35:17
Normal Created Created container: build
26
09:35:17
Normal Started Started container build
27
09:35:17
Normal Pulled Container image "gitlab/gitlab-runner-helper:x86_64-v18.8.0" already present on machine
28
09:35:17
Normal Created Created container: helper
29
09:35:17
Normal Started Started container helper
30
09:35:20
Running on runner-wrxjpbsjx-project-621-concurrent-1-l7dw1cnj via gitlab-runner-linux-1-5fd7c4d488-snzvl...
31
09:35:20
32
09:35:20
section_end:1777973720:prepare_script
33
09:35:20
+section_start:1777973720:get_sources
34
09:35:20
+Getting source from Git repository
35
09:35:20
Gitaly correlation ID: 01KQVQVR0118TT1BSDMPDVZAEZ
36
09:35:20
Fetching changes with git depth set to 50...
37
09:35:20
Initialized empty Git repository in /build/internal/gitlab-templates/.git/
38
09:35:20
Created fresh repository.
39
09:35:21
Checking out eea928ac as detached HEAD (ref is refs/merge-requests/637/merge)...
40
09:35:21
41
09:35:21
Skipping Git submodules setup
42
09:35:21
43
09:35:21
section_end:1777973721:get_sources
44
09:35:21
+section_start:1777973721:step_script
45
09:35:21
+Executing "step_script" stage of the job script
46
09:35:22
section_start:1777973721:section_pre_build_script_0[hide_duration=true,collapsed=true]
$ function cleanup {
47
09:35:22
rv=$?
48
09:35:22
if [ $rv -ne 0 ]; then
49
09:35:22
echo ""
50
09:35:22
echo " Failure Cause Analysis might help, please open this link:"
51
09:35:22
echo " https://scout.scandit.io/analysis/projects/${CI_PROJECT_ID}/jobs/${CI_JOB_ID}"
52
09:35:22
echo ""
53
09:35:22
fi
54
09:35:22
echo ""
55
09:35:22
echo "Scout Analysis: https://scout.scandit.io/analysis/projects/${CI_PROJECT_ID}/jobs/${CI_JOB_ID}"
56
09:35:22
echo ""
57
09:35:22
echo ""
58
09:35:22
echo "Grafana Pod-View: https://grafana.scandit.com/d/k8s_views_pods/kubernetes-views-pods?orgId=1&refresh=1m&var-datasource=${GRAFANA_DATASOURCE}&var-host=${SC_K8S_NODE_NAME}&var-namespace=${SC_K8S_NAMESPACE}&var-pod=${HOSTNAME}&var-resolution=15&from=${__start_time}000&to=${EPOCHSECONDS}000"
59
09:35:22
echo "Grafana Node-View: https://grafana.scandit.com/d/k8s_views_nodes/kubernetes-views-nodes?orgId=1&refresh=1m&var-datasource=${GRAFANA_DATASOURCE}&var-node=${SC_K8S_NODE_NAME}&var-resolution=15s&from=${__start_time}000&to=${EPOCHSECONDS}000"
60
09:35:22
echo "Loki Logs: https://grafana.scandit.com/a/grafana-lokiexplore-app/explore/log_group/gitlab-runner/logs?var-ds=${LOKI_DATASOURCE}&var-filters=log_group|=|gitlab-runner&var-filters=source|=|${LOKI_LOGSOURCE}&var-filters=namespace|=|${SC_K8S_NAMESPACE}&var-filters=CI_PROJECT_ID|=|${CI_PROJECT_ID}&var-filters=CI_PIPELINE_ID|=|${CI_PIPELINE_ID}&var-filters=CI_JOB_ID|=|${CI_JOB_ID}&sortOrder=Ascending&from=${__start_time}000&to=${EPOCHSECONDS}000"
61
09:35:22
echo "Lilibet Statistics: https://lilibet.scandit.io/dashboard/204-job-drill-down?date_range=$(date -d '-7 days' +%Y-%m-%d)~$(date -d '+7 days' +%Y-%m-%d)&job_name=${CI_JOB_NAME}&project=${CI_PROJECT_PATH}"
62
09:35:22
echo ""
63
09:35:22
exit $rv
64
09:35:22
}
65
09:35:22
trap cleanup EXIT
66
09:35:22
echo "INFO: This is the CI job pre_build_script"
67
09:35:22
echo "INFO: It's defined in the backend/infra/aws repo."
68
09:35:22
echo "INFO: These additional Scandit variables are available to you:"
69
09:35:22
echo " SC_K8S_NODE_NAME: $SC_K8S_NODE_NAME"
70
09:35:22
echo " SC_K8S_IMAGE_ID: $SC_K8S_IMAGE_ID"
71
09:35:22
echo " SC_K8S_KYVERNO_PATCHES: |"
72
09:35:22
echo "$SC_K8S_KYVERNO_PATCHES" | sed 's/^/ /'
73
09:35:22
echo "cpu (r/l): ${SC_K8S_REQUESTS_CPU}/${SC_K8S_LIMITS_CPU}"
74
09:35:22
if command -v numfmt >/dev/null 2>&1; then
75
09:35:22
echo "memory (r/l): $(numfmt --to=iec --suffix=B $SC_K8S_REQUESTS_MEMORY)/$(numfmt --to=iec --suffix=B $SC_K8S_LIMITS_MEMORY)"
76
09:35:22
else
77
09:35:22
echo "memory (r/l): ${SC_K8S_REQUESTS_MEMORY}/${SC_K8S_LIMITS_MEMORY}"
78
09:35:22
fi
79
09:35:22
__start_time=${EPOCHSECONDS}
80
09:35:22
echo ""
81
09:35:22
echo "Grafana Pod-View: https://grafana.scandit.com/d/k8s_views_pods/kubernetes-views-pods?orgId=1&refresh=1m&var-datasource=${GRAFANA_DATASOURCE}&var-host=${SC_K8S_NODE_NAME}&var-namespace=${SC_K8S_NAMESPACE}&var-pod=${HOSTNAME}&var-resolution=15&from=${__start_time}000&to=now"
82
09:35:22
echo "Grafana Node-View: https://grafana.scandit.com/d/k8s_views_nodes/kubernetes-views-nodes?orgId=1&refresh=1m&var-datasource=${GRAFANA_DATASOURCE}&var-node=${SC_K8S_NODE_NAME}&var-resolution=15s&from=${__start_time}000&to=now"
83
09:35:22
echo "Loki Logs: https://grafana.scandit.com/a/grafana-lokiexplore-app/explore/log_group/gitlab-runner/logs?var-ds=${LOKI_DATASOURCE}&var-filters=log_group|=|gitlab-runner&var-filters=source|=|${LOKI_LOGSOURCE}&var-filters=namespace|=|${SC_K8S_NAMESPACE}&var-filters=CI_PROJECT_ID|=|${CI_PROJECT_ID}&var-filters=CI_PIPELINE_ID|=|${CI_PIPELINE_ID}&var-filters=CI_JOB_ID|=|${CI_JOB_ID}&sortOrder=Ascending&from=${__start_time}000&to=now"
84
09:35:22
echo "Lilibet Statistics: https://lilibet.scandit.io/dashboard/204-job-drill-down?date_range=$(date -d '-7 days' +%Y-%m-%d)~$(date -d '+7 days' +%Y-%m-%d)&job_name=${CI_JOB_NAME}&project=${CI_PROJECT_PATH}"
85
09:35:22
echo ""
86
09:35:22
echo "Setting up credentials for Gitlab Python registries"
87
09:35:22
mkdir -p ~
88
09:35:22
echo "machine gitlab.scandit.com" > ~/.netrc
89
09:35:22
echo "login gitlab-ci-token" >> ~/.netrc
90
09:35:22
echo "password ${CI_JOB_TOKEN}" >> ~/.netrc
91
09:35:22
chmod 600 ~/.netrc
92
09:35:22
if command -v git &> /dev/null && [ "$(id -u)" -ne 0 ]; then
93
09:35:22
git config --global --add safe.directory $CI_PROJECT_DIR
94
09:35:22
fi
95
09:35:22
# Sonarqube server is running on the same cluster. Use internal address
96
09:35:22
export SONAR_HOST_URL="http://sonarqube.sonarqube.svc.cluster.local:9000"
97
09:35:22
section_end:1777973721:section_pre_build_script_0
98
09:35:22
INFO: This is the CI job pre_build_script
99
09:35:22
INFO: It's defined in the backend/infra/aws repo.
100
09:35:22
INFO: These additional Scandit variables are available to you:
101
09:35:22
SC_K8S_NODE_NAME: ip-10-0-19-92.eu-central-1.compute.internal
102
09:35:22
SC_K8S_IMAGE_ID:
103
09:35:22
SC_K8S_KYVERNO_PATCHES: |
104
09:35:22
105
09:35:22
cpu (r/l): 1/4
106
09:35:22
memory (r/l): 1.0GB/16GB
107
09:35:22
108
09:35:22
Grafana Pod-View: https://grafana.scandit.com/d/k8s_views_pods/kubernetes-views-pods?orgId=1&refresh=1m&var-datasource=lu1rmx27z&var-host=ip-10-0-19-92.eu-central-1.compute.internal&var-namespace=gitlab-runner&var-pod=runner-wrxjpbsjx-project-621-concurrent-1-l7dw1cnj&var-resolution=15&from=1777973721000&to=now
109
09:35:22
Grafana Node-View: https://grafana.scandit.com/d/k8s_views_nodes/kubernetes-views-nodes?orgId=1&refresh=1m&var-datasource=lu1rmx27z&var-node=ip-10-0-19-92.eu-central-1.compute.internal&var-resolution=15s&from=1777973721000&to=now
110
09:35:22
Loki Logs: https://grafana.scandit.com/a/grafana-lokiexplore-app/explore/log_group/gitlab-runner/logs?var-ds=nVsAo7UVk&var-filters=log_group|=|gitlab-runner&var-filters=source|=|k8s-ci.aws.scandit.io&var-filters=namespace|=|gitlab-runner&var-filters=CI_PROJECT_ID|=|621&var-filters=CI_PIPELINE_ID|=|1578751&var-filters=CI_JOB_ID|=|54380623&sortOrder=Ascending&from=1777973721000&to=now
111
09:35:22
Lilibet Statistics: https://lilibet.scandit.io/dashboard/204-job-drill-down?date_range=2026-04-28~2026-05-12&job_name=snyk-test&project=internal/gitlab-templates
112
09:35:22
113
09:35:22
Setting up credentials for Gitlab Python registries
114
09:35:22
$ uv pip install --system -r requirements.txt
115
09:35:22
Using Python 3.12.13 environment at: /usr/local
116
09:35:22
Resolved 7 packages in 356ms
117
09:35:22
Downloading pygments (1.2MiB)
118
09:35:22
Downloaded pygments
119
09:35:22
Prepared 7 packages in 34ms
120
09:35:23
Installed 7 packages in 428ms
121
09:35:23
+ coverage==7.13.5
122
09:35:23
+ iniconfig==2.3.0
123
09:35:23
+ packaging==26.2
124
09:35:23
+ pluggy==1.6.0
125
09:35:23
+ pygments==2.20.0
126
09:35:23
+ pytest==9.0.3
127
09:35:23
+ pytest-cov==7.1.0
128
09:35:23
section_start:1777973722:section_script_step_1[hide_duration=true,collapsed=true]
$ set -e
129
09:35:23
130
09:35:23
function log_info() {
131
09:35:23
echo -e "[\e[1;94mINFO\e[0m] $*"
132
09:35:23
}
133
09:35:23
134
09:35:23
function log_warn() {
135
09:35:23
echo -e "[\e[1;93mWARN\e[0m] $*"
136
09:35:23
}
137
09:35:23
138
09:35:23
function log_error() {
139
09:35:23
echo -e "[\e[1;91mERROR\e[0m] $*"
140
09:35:23
}
141
09:35:23
142
09:35:23
function fail() {
143
09:35:23
log_error "$*"
144
09:35:23
exit 1
145
09:35:23
}
146
09:35:23
147
09:35:23
function assert_defined() {
148
09:35:23
if [[ -z "$1" ]]
149
09:35:23
then
150
09:35:23
log_error "$2"
151
09:35:23
exit 1
152
09:35:23
fi
153
09:35:23
}
154
09:35:23
155
09:35:23
function snyk_setup() {
156
09:35:23
# If SNYK_FILE is set, use it as a target, otherwise use --all-projects
157
09:35:23
if [[ -n "${SNYK_FILE}" ]]; then
158
09:35:23
SNYK_TARGET="--file=${SNYK_FILE}"
159
09:35:23
else
160
09:35:23
SNYK_TARGET="--all-projects"
161
09:35:23
fi
162
09:35:23
163
09:35:23
log_info "Targeting $SNYK_TARGET"
164
09:35:23
165
09:35:23
# Set log level based on SNYK_LOG_LEVEL
166
09:35:23
if [[ "$SNYK_LOG_LEVEL" == "info" ]]; then
167
09:35:23
SNYK_LOG_LEVEL=""
168
09:35:23
elif [[ "$SNYK_LOG_LEVEL" == "debug" ]]; then
169
09:35:23
SNYK_LOG_LEVEL="--debug"
170
09:35:23
elif [[ "$SNYK_LOG_LEVEL" == "trace" ]]; then
171
09:35:23
SNYK_LOG_LEVEL="--debug --log-level=trace"
172
09:35:23
fi
173
09:35:23
}
174
09:35:23
section_end:1777973722:section_script_step_1
175
09:35:23
$ assert_defined "$SNYK_TOKEN" "No SNYK_TOKEN defined. You have to provide a valid token for accessing Snyk."
176
09:35:23
$ snyk_setup
177
09:35:23
[INFO] Targeting --file=requirements.txt
178
09:35:23
$ set -x
179
09:35:23
++ echo '$ snyk $SNYK_COMMAND $SNYK_TARGET --org=$SNYK_ORG --remote-repo-url=$SNYK_REMOTE_REPO_URL --policy-path=$SNYK_POLICY_PATH ${SNYK_EXCLUDE:+--exclude=$SNYK_EXCLUDE} ${SNYK_TARGET_REFERENCE:+--target-reference=$SNYK_TARGET_REFERENCE} ${SNYK_PROJECT_ENVIRONMENT:+--project-environment=$SNYK_PROJECT_ENVIRONMENT} ${SNYK_PROJECT_LIFECYCLE:+--project-lifecycle=$SNYK_PROJECT_LIFECYCLE} ${SNYK_PROJECT_TAGS:+--project-tags=$SNYK_PROJECT_TAGS} $SNYK_LOG_LEVEL $SNYK_EXTRA_PARAMETERS'
180
09:35:23
$ snyk $SNYK_COMMAND $SNYK_TARGET --org=$SNYK_ORG --remote-repo-url=$SNYK_REMOTE_REPO_URL --policy-path=$SNYK_POLICY_PATH ${SNYK_EXCLUDE:+--exclude=$SNYK_EXCLUDE} ${SNYK_TARGET_REFERENCE:+--target-reference=$SNYK_TARGET_REFERENCE} ${SNYK_PROJECT_ENVIRONMENT:+--project-environment=$SNYK_PROJECT_ENVIRONMENT} ${SNYK_PROJECT_LIFECYCLE:+--project-lifecycle=$SNYK_PROJECT_LIFECYCLE} ${SNYK_PROJECT_TAGS:+--project-tags=$SNYK_PROJECT_TAGS} $SNYK_LOG_LEVEL $SNYK_EXTRA_PARAMETERS
181
09:35:23
++ snyk test --file=requirements.txt --org=d688d452-cf04-4620-84f0-3431ce4d741a --remote-repo-url=internal/gitlab-templates --policy-path=/build/internal/gitlab-templates/.snyk
182
09:35:29
183
09:35:29
Testing /build/internal/gitlab-templates...
184
09:35:29
185
09:35:29
Organization: scandit-internal
186
09:35:29
Package manager: pip
187
09:35:29
Target file: requirements.txt
188
09:35:29
Project name: gitlab-templates
189
09:35:29
Open source: no
190
09:35:29
Project path: /build/internal/gitlab-templates
191
09:35:29
Local Snyk policy: found
192
09:35:29
Licenses: enabled
193
09:35:29
194
09:35:29
✔ Tested 7 dependencies for known issues, no vulnerable paths found.
195
09:35:29
196
09:35:29
Tip: Detected multiple supported manifests (2), use --all-projects to scan all of them at once.
197
09:35:29
198
09:35:29
199
09:35:29
++ echo '$ set +x'
200
09:35:29
$ set +x
201
09:35:29
++ set +x
202
09:35:29
203
09:35:29
Scout Analysis: https://scout.scandit.io/analysis/projects/621/jobs/54380623
204
09:35:29
205
09:35:29
206
09:35:29
Grafana Pod-View: https://grafana.scandit.com/d/k8s_views_pods/kubernetes-views-pods?orgId=1&refresh=1m&var-datasource=lu1rmx27z&var-host=ip-10-0-19-92.eu-central-1.compute.internal&var-namespace=gitlab-runner&var-pod=runner-wrxjpbsjx-project-621-concurrent-1-l7dw1cnj&var-resolution=15&from=1777973721000&to=1777973729000
207
09:35:29
Grafana Node-View: https://grafana.scandit.com/d/k8s_views_nodes/kubernetes-views-nodes?orgId=1&refresh=1m&var-datasource=lu1rmx27z&var-node=ip-10-0-19-92.eu-central-1.compute.internal&var-resolution=15s&from=1777973721000&to=1777973729000
208
09:35:29
Loki Logs: https://grafana.scandit.com/a/grafana-lokiexplore-app/explore/log_group/gitlab-runner/logs?var-ds=nVsAo7UVk&var-filters=log_group|=|gitlab-runner&var-filters=source|=|k8s-ci.aws.scandit.io&var-filters=namespace|=|gitlab-runner&var-filters=CI_PROJECT_ID|=|621&var-filters=CI_PIPELINE_ID|=|1578751&var-filters=CI_JOB_ID|=|54380623&sortOrder=Ascending&from=1777973721000&to=1777973729000
209
09:35:29
Lilibet Statistics: https://lilibet.scandit.io/dashboard/204-job-drill-down?date_range=2026-04-28~2026-05-12&job_name=snyk-test&project=internal/gitlab-templates
210
09:35:29
211
09:35:29
212
09:35:29
section_end:1777973729:step_script
213
09:35:29
+section_start:1777973729:after_script
214
09:35:29
+Running after_script
215
09:35:30
Running after script...
216
09:35:30
section_start:1777973729:section_after_script_step_0[hide_duration=true,collapsed=true]
$ cat <<-EOD
217
09:35:30
----------------------------------------------------------
218
09:35:30
Need help? Documentation on the Snyk jobs can be found at:
219
09:35:30
https://gitlab.scandit.com/internal/gitlab-templates/-/blob/master/.gitlab/snyk.md
220
09:35:30
EOD
221
09:35:30
section_end:1777973729:section_after_script_step_0
222
09:35:30
----------------------------------------------------------
223
09:35:30
Need help? Documentation on the Snyk jobs can be found at:
224
09:35:30
https://gitlab.scandit.com/internal/gitlab-templates/-/blob/master/.gitlab/snyk.md
225
09:35:30
226
09:35:30
section_end:1777973730:after_script
227
09:35:30
+section_start:1777973730:cleanup_file_variables
228
09:35:30
+Cleaning up project directory and file based variables
229
09:35:30
230
09:35:30
section_end:1777973730:cleanup_file_variables
231
09:35:30
+
232
09:35:30
Job succeeded
233