snyk-test ○ success

Duration: 43s
Queued: 4s
📁 Stage: test
🖥 Runner: linux-aws-1
Average Duration
39s
This job: 43s
Failure Rate
0.0%
last 30 days

Job Execution Phases

💡 Tip: Click on any phase bar to jump to that section in the log below

Job Analysis

Job Status: Passed

Status: Job passed successfully

Full Job Log

234 lines
Match - of 0
1 22:37:32 Running with gitlab-runner 18.9.0 (07e534ba)
2 22:37:32 on gitlab-runner-linux-1-746bdd58fd-qdj4w wRxjPbsJX, system ID: r_BzoYrcI9lIJE
3 22:37:32 feature flags: FF_USE_FASTZIP:true, FF_USE_NEW_BASH_EVAL_STRATEGY:true, FF_USE_DYNAMIC_TRACE_FORCE_SEND_INTERVAL:true, FF_SCRIPT_SECTIONS:true, FF_USE_ADVANCED_POD_SPEC_CONFIGURATION:true, FF_PRINT_POD_EVENTS:true, FF_USE_DUMB_INIT_WITH_KUBERNETES_EXECUTOR:true, FF_LOG_IMAGES_CONFIGURED_FOR_JOB:true, FF_CLEAN_UP_FAILED_CACHE_EXTRACT:true, FF_GIT_URLS_WITHOUT_TOKENS:true, FF_WAIT_FOR_POD_TO_BE_REACHABLE:true, FF_USE_FLEETING_ACQUIRE_HEARTBEATS:true, FF_USE_JOB_ROUTER:true
4 22:37:32 Resolving secrets
5 22:37:32 section_start:1778020652:prepare_executor
6 22:37:32 +Preparing the "kubernetes" executor
7 22:37:32 Using Kubernetes namespace: gitlab-runner
8 22:37:32 Using Kubernetes executor with image registry.scandit.com/dockerfiles/snyk:python-3.12@sha256:41b6de5ad9d99a10fc8502ac2f2f8629fc621fab19926700c2b14376ac7b2115 ...
9 22:37:32 Using attach strategy to execute scripts...
10 22:37:32 Using effective pull policy of [Always] for container build
11 22:37:32 Using effective pull policy of [Always] for container helper
12 22:37:32 Using effective pull policy of [Always] for container init-permissions
13 22:37:32 section_end:1778020652:prepare_executor
14 22:37:32 +section_start:1778020652:prepare_script
15 22:37:32 +Preparing environment
16 22:37:32 Using FF_USE_POD_ACTIVE_DEADLINE_SECONDS, the Pod activeDeadlineSeconds will be set to the job timeout: 1h0m0s...
17 22:37:32 WARNING: Advanced Pod Spec configuration enabled, merging the provided PodSpec to the generated one. This is a beta feature and is subject to change. Feedback is collected in this issue: https://gitlab.com/gitlab-org/gitlab-runner/-/issues/29659 ...
18 22:37:33 Subscribing to Kubernetes Pod events...
19 22:37:33 Type Reason Message
20 22:37:33 Normal Scheduled Successfully assigned gitlab-runner/runner-wrxjpbsjx-project-621-concurrent-2-w4pf5bin to ip-10-0-23-40.eu-central-1.compute.internal
21 22:37:34 Normal Pulled Container image "gitlab/gitlab-runner-helper:x86_64-v18.8.0" already present on machine
22 22:37:34 Normal Created Created container: init-permissions
23 22:37:34 Normal Started Started container init-permissions
24 22:37:35 Normal Pulling Pulling image "498954711405.dkr.ecr.eu-central-1.amazonaws.com/dockerfiles/snyk@sha256:41b6de5ad9d99a10fc8502ac2f2f8629fc621fab19926700c2b14376ac7b2115"
25 22:38:02 Normal Pulled Successfully pulled image "498954711405.dkr.ecr.eu-central-1.amazonaws.com/dockerfiles/snyk@sha256:41b6de5ad9d99a10fc8502ac2f2f8629fc621fab19926700c2b14376ac7b2115" in 26.855s (26.855s including waiting). Image size: 499829825 bytes.
26 22:38:02 Normal Created Created container: build
27 22:38:02 Normal Started Started container build
28 22:38:02 Normal Pulled Container image "gitlab/gitlab-runner-helper:x86_64-v18.8.0" already present on machine
29 22:38:02 Normal Created Created container: helper
30 22:38:02 Normal Started Started container helper
31 22:38:07 Running on runner-wrxjpbsjx-project-621-concurrent-2-w4pf5bin via gitlab-runner-linux-1-746bdd58fd-qdj4w...
32 22:38:07
33 22:38:07 section_end:1778020687:prepare_script
34 22:38:07 +section_start:1778020687:get_sources
35 22:38:07 +Getting source from Git repository
36 22:38:07 Gitaly correlation ID: 01KQX4M4PSKKAHSWHQB5C22X12
37 22:38:07 Fetching changes with git depth set to 50...
38 22:38:07 Initialized empty Git repository in /build/internal/gitlab-templates/.git/
39 22:38:07 Created fresh repository.
40 22:38:08 Checking out 13881c4b as detached HEAD (ref is refs/merge-requests/638/merge)...
41 22:38:08
42 22:38:08 Skipping Git submodules setup
43 22:38:08
44 22:38:08 section_end:1778020688:get_sources
45 22:38:08 +section_start:1778020688:step_script
46 22:38:08 +Executing "step_script" stage of the job script
47 22:38:09 section_start:1778020688:section_pre_build_script_0[hide_duration=true,collapsed=true] $ function cleanup {
48 22:38:09 rv=$?
49 22:38:09 if [ $rv -ne 0 ]; then
50 22:38:09 echo ""
51 22:38:09 echo " Failure Cause Analysis might help, please open this link:"
52 22:38:09 echo " https://scout.scandit.io/analysis/projects/${CI_PROJECT_ID}/jobs/${CI_JOB_ID}"
53 22:38:09 echo ""
54 22:38:09 fi
55 22:38:09 echo ""
56 22:38:09 echo "Scout Analysis: https://scout.scandit.io/analysis/projects/${CI_PROJECT_ID}/jobs/${CI_JOB_ID}"
57 22:38:09 echo ""
58 22:38:09 echo ""
59 22:38:09 echo "Grafana Pod-View: https://grafana.scandit.com/d/k8s_views_pods/kubernetes-views-pods?orgId=1&refresh=1m&var-datasource=${GRAFANA_DATASOURCE}&var-host=${SC_K8S_NODE_NAME}&var-namespace=${SC_K8S_NAMESPACE}&var-pod=${HOSTNAME}&var-resolution=15&from=${__start_time}000&to=${EPOCHSECONDS}000"
60 22:38:09 echo "Grafana Node-View: https://grafana.scandit.com/d/k8s_views_nodes/kubernetes-views-nodes?orgId=1&refresh=1m&var-datasource=${GRAFANA_DATASOURCE}&var-node=${SC_K8S_NODE_NAME}&var-resolution=15s&from=${__start_time}000&to=${EPOCHSECONDS}000"
61 22:38:09 echo "Loki Logs: https://grafana.scandit.com/a/grafana-lokiexplore-app/explore/log_group/gitlab-runner/logs?var-ds=${LOKI_DATASOURCE}&var-filters=log_group|=|gitlab-runner&var-filters=source|=|${LOKI_LOGSOURCE}&var-filters=namespace|=|${SC_K8S_NAMESPACE}&var-filters=CI_PROJECT_ID|=|${CI_PROJECT_ID}&var-filters=CI_PIPELINE_ID|=|${CI_PIPELINE_ID}&var-filters=CI_JOB_ID|=|${CI_JOB_ID}&sortOrder=Ascending&from=${__start_time}000&to=${EPOCHSECONDS}000"
62 22:38:09 echo "Lilibet Statistics: https://lilibet.scandit.io/dashboard/204-job-drill-down?date_range=$(date -d '-7 days' +%Y-%m-%d)~$(date -d '+7 days' +%Y-%m-%d)&job_name=${CI_JOB_NAME}&project=${CI_PROJECT_PATH}"
63 22:38:09 echo ""
64 22:38:09 exit $rv
65 22:38:09 }
66 22:38:09 trap cleanup EXIT
67 22:38:09 echo "INFO: This is the CI job pre_build_script"
68 22:38:09 echo "INFO: It's defined in the backend/infra/aws repo."
69 22:38:09 echo "INFO: These additional Scandit variables are available to you:"
70 22:38:09 echo " SC_K8S_NODE_NAME: $SC_K8S_NODE_NAME"
71 22:38:09 echo " SC_K8S_IMAGE_ID: $SC_K8S_IMAGE_ID"
72 22:38:09 echo " SC_K8S_KYVERNO_PATCHES: |"
73 22:38:09 echo "$SC_K8S_KYVERNO_PATCHES" | sed 's/^/ /'
74 22:38:09 echo "cpu (r/l): ${SC_K8S_REQUESTS_CPU}/${SC_K8S_LIMITS_CPU}"
75 22:38:09 if command -v numfmt >/dev/null 2>&1; then
76 22:38:09 echo "memory (r/l): $(numfmt --to=iec --suffix=B $SC_K8S_REQUESTS_MEMORY)/$(numfmt --to=iec --suffix=B $SC_K8S_LIMITS_MEMORY)"
77 22:38:09 else
78 22:38:09 echo "memory (r/l): ${SC_K8S_REQUESTS_MEMORY}/${SC_K8S_LIMITS_MEMORY}"
79 22:38:09 fi
80 22:38:09 __start_time=${EPOCHSECONDS}
81 22:38:09 echo ""
82 22:38:09 echo "Grafana Pod-View: https://grafana.scandit.com/d/k8s_views_pods/kubernetes-views-pods?orgId=1&refresh=1m&var-datasource=${GRAFANA_DATASOURCE}&var-host=${SC_K8S_NODE_NAME}&var-namespace=${SC_K8S_NAMESPACE}&var-pod=${HOSTNAME}&var-resolution=15&from=${__start_time}000&to=now"
83 22:38:09 echo "Grafana Node-View: https://grafana.scandit.com/d/k8s_views_nodes/kubernetes-views-nodes?orgId=1&refresh=1m&var-datasource=${GRAFANA_DATASOURCE}&var-node=${SC_K8S_NODE_NAME}&var-resolution=15s&from=${__start_time}000&to=now"
84 22:38:09 echo "Loki Logs: https://grafana.scandit.com/a/grafana-lokiexplore-app/explore/log_group/gitlab-runner/logs?var-ds=${LOKI_DATASOURCE}&var-filters=log_group|=|gitlab-runner&var-filters=source|=|${LOKI_LOGSOURCE}&var-filters=namespace|=|${SC_K8S_NAMESPACE}&var-filters=CI_PROJECT_ID|=|${CI_PROJECT_ID}&var-filters=CI_PIPELINE_ID|=|${CI_PIPELINE_ID}&var-filters=CI_JOB_ID|=|${CI_JOB_ID}&sortOrder=Ascending&from=${__start_time}000&to=now"
85 22:38:09 echo "Lilibet Statistics: https://lilibet.scandit.io/dashboard/204-job-drill-down?date_range=$(date -d '-7 days' +%Y-%m-%d)~$(date -d '+7 days' +%Y-%m-%d)&job_name=${CI_JOB_NAME}&project=${CI_PROJECT_PATH}"
86 22:38:09 echo ""
87 22:38:09 echo "Setting up credentials for Gitlab Python registries"
88 22:38:09 mkdir -p ~
89 22:38:09 echo "machine gitlab.scandit.com" > ~/.netrc
90 22:38:09 echo "login gitlab-ci-token" >> ~/.netrc
91 22:38:09 echo "password ${CI_JOB_TOKEN}" >> ~/.netrc
92 22:38:09 chmod 600 ~/.netrc
93 22:38:09 if command -v git &> /dev/null && [ "$(id -u)" -ne 0 ]; then
94 22:38:09 git config --global --add safe.directory $CI_PROJECT_DIR
95 22:38:09 fi
96 22:38:09 # Sonarqube server is running on the same cluster. Use internal address
97 22:38:09 export SONAR_HOST_URL="http://sonarqube.sonarqube.svc.cluster.local:9000"
98 22:38:09 section_end:1778020688:section_pre_build_script_0
99 22:38:09 INFO: This is the CI job pre_build_script
100 22:38:09 INFO: It's defined in the backend/infra/aws repo.
101 22:38:09 INFO: These additional Scandit variables are available to you:
102 22:38:09 SC_K8S_NODE_NAME: ip-10-0-23-40.eu-central-1.compute.internal
103 22:38:09 SC_K8S_IMAGE_ID:
104 22:38:09 SC_K8S_KYVERNO_PATCHES: |
105 22:38:09
106 22:38:09 cpu (r/l): 1/4
107 22:38:09 memory (r/l): 1.0GB/16GB
108 22:38:09
109 22:38:09 Grafana Pod-View: https://grafana.scandit.com/d/k8s_views_pods/kubernetes-views-pods?orgId=1&refresh=1m&var-datasource=lu1rmx27z&var-host=ip-10-0-23-40.eu-central-1.compute.internal&var-namespace=gitlab-runner&var-pod=runner-wrxjpbsjx-project-621-concurrent-2-w4pf5bin&var-resolution=15&from=1778020688000&to=now
110 22:38:09 Grafana Node-View: https://grafana.scandit.com/d/k8s_views_nodes/kubernetes-views-nodes?orgId=1&refresh=1m&var-datasource=lu1rmx27z&var-node=ip-10-0-23-40.eu-central-1.compute.internal&var-resolution=15s&from=1778020688000&to=now
111 22:38:09 Loki Logs: https://grafana.scandit.com/a/grafana-lokiexplore-app/explore/log_group/gitlab-runner/logs?var-ds=nVsAo7UVk&var-filters=log_group|=|gitlab-runner&var-filters=source|=|k8s-ci.aws.scandit.io&var-filters=namespace|=|gitlab-runner&var-filters=CI_PROJECT_ID|=|621&var-filters=CI_PIPELINE_ID|=|1580353&var-filters=CI_JOB_ID|=|54442848&sortOrder=Ascending&from=1778020688000&to=now
112 22:38:09 Lilibet Statistics: https://lilibet.scandit.io/dashboard/204-job-drill-down?date_range=2026-04-28~2026-05-12&job_name=snyk-test&project=internal/gitlab-templates
113 22:38:09
114 22:38:09 Setting up credentials for Gitlab Python registries
115 22:38:09 $ uv pip install --system -r requirements.txt
116 22:38:09 Using Python 3.12.13 environment at: /usr/local
117 22:38:09 Resolved 7 packages in 375ms
118 22:38:09 Downloading pygments (1.2MiB)
119 22:38:09 Downloaded pygments
120 22:38:09 Prepared 7 packages in 30ms
121 22:38:10 Installed 7 packages in 317ms
122 22:38:10 + coverage==7.13.5
123 22:38:10 + iniconfig==2.3.0
124 22:38:10 + packaging==26.2
125 22:38:10 + pluggy==1.6.0
126 22:38:10 + pygments==2.20.0
127 22:38:10 + pytest==9.0.3
128 22:38:10 + pytest-cov==7.1.0
129 22:38:10 section_start:1778020689:section_script_step_1[hide_duration=true,collapsed=true] $ set -e
130 22:38:10
131 22:38:10 function log_info() {
132 22:38:10 echo -e "[\e[1;94mINFO\e[0m] $*"
133 22:38:10 }
134 22:38:10
135 22:38:10 function log_warn() {
136 22:38:10 echo -e "[\e[1;93mWARN\e[0m] $*"
137 22:38:10 }
138 22:38:10
139 22:38:10 function log_error() {
140 22:38:10 echo -e "[\e[1;91mERROR\e[0m] $*"
141 22:38:10 }
142 22:38:10
143 22:38:10 function fail() {
144 22:38:10 log_error "$*"
145 22:38:10 exit 1
146 22:38:10 }
147 22:38:10
148 22:38:10 function assert_defined() {
149 22:38:10 if [[ -z "$1" ]]
150 22:38:10 then
151 22:38:10 log_error "$2"
152 22:38:10 exit 1
153 22:38:10 fi
154 22:38:10 }
155 22:38:10
156 22:38:10 function snyk_setup() {
157 22:38:10 # If SNYK_FILE is set, use it as a target, otherwise use --all-projects
158 22:38:10 if [[ -n "${SNYK_FILE}" ]]; then
159 22:38:10 SNYK_TARGET="--file=${SNYK_FILE}"
160 22:38:10 else
161 22:38:10 SNYK_TARGET="--all-projects"
162 22:38:10 fi
163 22:38:10
164 22:38:10 log_info "Targeting $SNYK_TARGET"
165 22:38:10
166 22:38:10 # Set log level based on SNYK_LOG_LEVEL
167 22:38:10 if [[ "$SNYK_LOG_LEVEL" == "info" ]]; then
168 22:38:10 SNYK_LOG_LEVEL=""
169 22:38:10 elif [[ "$SNYK_LOG_LEVEL" == "debug" ]]; then
170 22:38:10 SNYK_LOG_LEVEL="--debug"
171 22:38:10 elif [[ "$SNYK_LOG_LEVEL" == "trace" ]]; then
172 22:38:10 SNYK_LOG_LEVEL="--debug --log-level=trace"
173 22:38:10 fi
174 22:38:10 }
175 22:38:10 section_end:1778020689:section_script_step_1
176 22:38:10 $ assert_defined "$SNYK_TOKEN" "No SNYK_TOKEN defined. You have to provide a valid token for accessing Snyk."
177 22:38:10 $ snyk_setup
178 22:38:10 [INFO] Targeting --file=requirements.txt
179 22:38:10 $ set -x
180 22:38:10 ++ echo '$ snyk $SNYK_COMMAND $SNYK_TARGET --org=$SNYK_ORG --remote-repo-url=$SNYK_REMOTE_REPO_URL --policy-path=$SNYK_POLICY_PATH ${SNYK_EXCLUDE:+--exclude=$SNYK_EXCLUDE} ${SNYK_TARGET_REFERENCE:+--target-reference=$SNYK_TARGET_REFERENCE} ${SNYK_PROJECT_ENVIRONMENT:+--project-environment=$SNYK_PROJECT_ENVIRONMENT} ${SNYK_PROJECT_LIFECYCLE:+--project-lifecycle=$SNYK_PROJECT_LIFECYCLE} ${SNYK_PROJECT_TAGS:+--project-tags=$SNYK_PROJECT_TAGS} $SNYK_LOG_LEVEL $SNYK_EXTRA_PARAMETERS'
181 22:38:10 $ snyk $SNYK_COMMAND $SNYK_TARGET --org=$SNYK_ORG --remote-repo-url=$SNYK_REMOTE_REPO_URL --policy-path=$SNYK_POLICY_PATH ${SNYK_EXCLUDE:+--exclude=$SNYK_EXCLUDE} ${SNYK_TARGET_REFERENCE:+--target-reference=$SNYK_TARGET_REFERENCE} ${SNYK_PROJECT_ENVIRONMENT:+--project-environment=$SNYK_PROJECT_ENVIRONMENT} ${SNYK_PROJECT_LIFECYCLE:+--project-lifecycle=$SNYK_PROJECT_LIFECYCLE} ${SNYK_PROJECT_TAGS:+--project-tags=$SNYK_PROJECT_TAGS} $SNYK_LOG_LEVEL $SNYK_EXTRA_PARAMETERS
182 22:38:10 ++ snyk test --file=requirements.txt --org=d688d452-cf04-4620-84f0-3431ce4d741a --remote-repo-url=internal/gitlab-templates --policy-path=/build/internal/gitlab-templates/.snyk
183 22:38:14
184 22:38:14 Testing /build/internal/gitlab-templates...
185 22:38:14
186 22:38:14 Organization: scandit-internal
187 22:38:14 Package manager: pip
188 22:38:14 Target file: requirements.txt
189 22:38:14 Project name: gitlab-templates
190 22:38:14 Open source: no
191 22:38:14 Project path: /build/internal/gitlab-templates
192 22:38:14 Local Snyk policy: found
193 22:38:14 Licenses: enabled
194 22:38:14
195 22:38:14 ✔ Tested 7 dependencies for known issues, no vulnerable paths found.
196 22:38:14
197 22:38:14 Tip: Detected multiple supported manifests (2), use --all-projects to scan all of them at once.
198 22:38:14
199 22:38:14
200 22:38:14 ++ echo '$ set +x'
201 22:38:14 $ set +x
202 22:38:14 ++ set +x
203 22:38:14
204 22:38:14 Scout Analysis: https://scout.scandit.io/analysis/projects/621/jobs/54442848
205 22:38:14
206 22:38:14
207 22:38:14 Grafana Pod-View: https://grafana.scandit.com/d/k8s_views_pods/kubernetes-views-pods?orgId=1&refresh=1m&var-datasource=lu1rmx27z&var-host=ip-10-0-23-40.eu-central-1.compute.internal&var-namespace=gitlab-runner&var-pod=runner-wrxjpbsjx-project-621-concurrent-2-w4pf5bin&var-resolution=15&from=1778020688000&to=1778020694000
208 22:38:14 Grafana Node-View: https://grafana.scandit.com/d/k8s_views_nodes/kubernetes-views-nodes?orgId=1&refresh=1m&var-datasource=lu1rmx27z&var-node=ip-10-0-23-40.eu-central-1.compute.internal&var-resolution=15s&from=1778020688000&to=1778020694000
209 22:38:14 Loki Logs: https://grafana.scandit.com/a/grafana-lokiexplore-app/explore/log_group/gitlab-runner/logs?var-ds=nVsAo7UVk&var-filters=log_group|=|gitlab-runner&var-filters=source|=|k8s-ci.aws.scandit.io&var-filters=namespace|=|gitlab-runner&var-filters=CI_PROJECT_ID|=|621&var-filters=CI_PIPELINE_ID|=|1580353&var-filters=CI_JOB_ID|=|54442848&sortOrder=Ascending&from=1778020688000&to=1778020694000
210 22:38:14 Lilibet Statistics: https://lilibet.scandit.io/dashboard/204-job-drill-down?date_range=2026-04-28~2026-05-12&job_name=snyk-test&project=internal/gitlab-templates
211 22:38:14
212 22:38:14
213 22:38:14 section_end:1778020694:step_script
214 22:38:14 +section_start:1778020694:after_script
215 22:38:14 +Running after_script
216 22:38:15 Running after script...
217 22:38:15 section_start:1778020694:section_after_script_step_0[hide_duration=true,collapsed=true] $ cat <<-EOD
218 22:38:15 ----------------------------------------------------------
219 22:38:15 Need help? Documentation on the Snyk jobs can be found at:
220 22:38:15 https://gitlab.scandit.com/internal/gitlab-templates/-/blob/master/.gitlab/snyk.md
221 22:38:15 EOD
222 22:38:15 section_end:1778020694:section_after_script_step_0
223 22:38:15 ----------------------------------------------------------
224 22:38:15 Need help? Documentation on the Snyk jobs can be found at:
225 22:38:15 https://gitlab.scandit.com/internal/gitlab-templates/-/blob/master/.gitlab/snyk.md
226 22:38:15
227 22:38:15 section_end:1778020695:after_script
228 22:38:15 +section_start:1778020695:cleanup_file_variables
229 22:38:15 +Cleaning up project directory and file based variables
230 22:38:15
231 22:38:15 section_end:1778020695:cleanup_file_variables
232 22:38:15 +
233 22:38:15 Job succeeded
234