snyk-test ○ success

Duration: 23s
Queued: 0s
📁 Stage: test
🖥 Runner: linux-aws-1
Average Duration
39s
This job: 23s
Failure Rate
0.0%
last 30 days

Job Execution Phases

💡 Tip: Click on any phase bar to jump to that section in the log below

Job Analysis

Job Status: Passed

Status: Job passed successfully

Full Job Log

233 lines
Match - of 0
1 10:48:00 Running with gitlab-runner 18.9.0 (07e534ba)
2 10:48:00 on gitlab-runner-linux-1-746bdd58fd-4l9r4 wRxjPbsJX, system ID: r_P1G4aDFo0Uwl
3 10:48:00 feature flags: FF_USE_FASTZIP:true, FF_USE_NEW_BASH_EVAL_STRATEGY:true, FF_USE_DYNAMIC_TRACE_FORCE_SEND_INTERVAL:true, FF_SCRIPT_SECTIONS:true, FF_USE_ADVANCED_POD_SPEC_CONFIGURATION:true, FF_PRINT_POD_EVENTS:true, FF_USE_DUMB_INIT_WITH_KUBERNETES_EXECUTOR:true, FF_LOG_IMAGES_CONFIGURED_FOR_JOB:true, FF_CLEAN_UP_FAILED_CACHE_EXTRACT:true, FF_GIT_URLS_WITHOUT_TOKENS:true, FF_WAIT_FOR_POD_TO_BE_REACHABLE:true, FF_USE_FLEETING_ACQUIRE_HEARTBEATS:true, FF_USE_JOB_ROUTER:true
4 10:48:00 Resolving secrets
5 10:48:00 section_start:1778237280:prepare_executor
6 10:48:00 +Preparing the "kubernetes" executor
7 10:48:00 Using Kubernetes namespace: gitlab-runner
8 10:48:00 Using Kubernetes executor with image registry.scandit.com/dockerfiles/snyk:python-3.12@sha256:eee36c77812addee2f89331034691d9d1bcc8e76d01382e22b0d114c8950a3ff ...
9 10:48:00 Using attach strategy to execute scripts...
10 10:48:00 Using effective pull policy of [Always] for container helper
11 10:48:00 Using effective pull policy of [Always] for container init-permissions
12 10:48:00 Using effective pull policy of [Always] for container build
13 10:48:00 section_end:1778237280:prepare_executor
14 10:48:00 +section_start:1778237280:prepare_script
15 10:48:00 +Preparing environment
16 10:48:00 Using FF_USE_POD_ACTIVE_DEADLINE_SECONDS, the Pod activeDeadlineSeconds will be set to the job timeout: 1h0m0s...
17 10:48:00 WARNING: Advanced Pod Spec configuration enabled, merging the provided PodSpec to the generated one. This is a beta feature and is subject to change. Feedback is collected in this issue: https://gitlab.com/gitlab-org/gitlab-runner/-/issues/29659 ...
18 10:48:01 Subscribing to Kubernetes Pod events...
19 10:48:02 Type Reason Message
20 10:48:02 Normal Scheduled Successfully assigned gitlab-runner/runner-wrxjpbsjx-project-621-concurrent-0-ylca23k1 to ip-10-0-17-81.eu-central-1.compute.internal
21 10:48:03 Normal Pulled Container image "gitlab/gitlab-runner-helper:x86_64-v18.8.0" already present on machine
22 10:48:03 Normal Created Created container: init-permissions
23 10:48:03 Normal Started Started container init-permissions
24 10:48:06 Normal Pulled Container image "498954711405.dkr.ecr.eu-central-1.amazonaws.com/dockerfiles/snyk@sha256:eee36c77812addee2f89331034691d9d1bcc8e76d01382e22b0d114c8950a3ff" already present on machine
25 10:48:06 Normal Created Created container: build
26 10:48:06 Normal Started Started container build
27 10:48:06 Normal Pulled Container image "gitlab/gitlab-runner-helper:x86_64-v18.8.0" already present on machine
28 10:48:06 Normal Created Created container: helper
29 10:48:06 Normal Started Started container helper
30 10:48:09 Running on runner-wrxjpbsjx-project-621-concurrent-0-ylca23k1 via gitlab-runner-linux-1-746bdd58fd-4l9r4...
31 10:48:09
32 10:48:09 section_end:1778237289:prepare_script
33 10:48:09 +section_start:1778237289:get_sources
34 10:48:09 +Getting source from Git repository
35 10:48:09 Gitaly correlation ID: 01KR3K73C3N31J9BM4EXFG5Q0B
36 10:48:09 Fetching changes with git depth set to 50...
37 10:48:09 Initialized empty Git repository in /build/internal/gitlab-templates/.git/
38 10:48:09 Created fresh repository.
39 10:48:12 Checking out 6e76a6a0 as detached HEAD (ref is refs/merge-requests/641/merge)...
40 10:48:12
41 10:48:12 Skipping Git submodules setup
42 10:48:12
43 10:48:12 section_end:1778237292:get_sources
44 10:48:12 +section_start:1778237292:step_script
45 10:48:12 +Executing "step_script" stage of the job script
46 10:48:12 section_start:1778237292:section_pre_build_script_0[hide_duration=true,collapsed=true] $ function cleanup {
47 10:48:12 rv=$?
48 10:48:12 if [ $rv -ne 0 ]; then
49 10:48:12 echo ""
50 10:48:12 echo " Failure Cause Analysis might help, please open this link:"
51 10:48:12 echo " https://scout.scandit.io/analysis/projects/${CI_PROJECT_ID}/jobs/${CI_JOB_ID}"
52 10:48:12 echo ""
53 10:48:12 fi
54 10:48:12 echo ""
55 10:48:12 echo "Scout Analysis: https://scout.scandit.io/analysis/projects/${CI_PROJECT_ID}/jobs/${CI_JOB_ID}"
56 10:48:12 echo ""
57 10:48:12 echo ""
58 10:48:12 echo "Grafana Pod-View: https://grafana.scandit.com/d/k8s_views_pods/kubernetes-views-pods?orgId=1&refresh=1m&var-datasource=${GRAFANA_DATASOURCE}&var-host=${SC_K8S_NODE_NAME}&var-namespace=${SC_K8S_NAMESPACE}&var-pod=${HOSTNAME}&var-resolution=15&from=${__start_time}000&to=${EPOCHSECONDS}000"
59 10:48:12 echo "Grafana Node-View: https://grafana.scandit.com/d/k8s_views_nodes/kubernetes-views-nodes?orgId=1&refresh=1m&var-datasource=${GRAFANA_DATASOURCE}&var-node=${SC_K8S_NODE_NAME}&var-resolution=15s&from=${__start_time}000&to=${EPOCHSECONDS}000"
60 10:48:12 echo "Loki Logs: https://grafana.scandit.com/a/grafana-lokiexplore-app/explore/log_group/gitlab-runner/logs?var-ds=${LOKI_DATASOURCE}&var-filters=log_group|=|gitlab-runner&var-filters=source|=|${LOKI_LOGSOURCE}&var-filters=namespace|=|${SC_K8S_NAMESPACE}&var-filters=CI_PROJECT_ID|=|${CI_PROJECT_ID}&var-filters=CI_PIPELINE_ID|=|${CI_PIPELINE_ID}&var-filters=CI_JOB_ID|=|${CI_JOB_ID}&sortOrder=Ascending&from=${__start_time}000&to=${EPOCHSECONDS}000"
61 10:48:12 echo "Lilibet Statistics: https://lilibet.scandit.io/dashboard/204-job-drill-down?date_range=$(date -d '-7 days' +%Y-%m-%d)~$(date -d '+7 days' +%Y-%m-%d)&job_name=${CI_JOB_NAME}&project=${CI_PROJECT_PATH}"
62 10:48:12 echo ""
63 10:48:12 exit $rv
64 10:48:12 }
65 10:48:12 trap cleanup EXIT
66 10:48:12 echo "INFO: This is the CI job pre_build_script"
67 10:48:12 echo "INFO: It's defined in the backend/infra/aws repo."
68 10:48:12 echo "INFO: These additional Scandit variables are available to you:"
69 10:48:12 echo " SC_K8S_NODE_NAME: $SC_K8S_NODE_NAME"
70 10:48:12 echo " SC_K8S_IMAGE_ID: $SC_K8S_IMAGE_ID"
71 10:48:12 echo " SC_K8S_KYVERNO_PATCHES: |"
72 10:48:12 echo "$SC_K8S_KYVERNO_PATCHES" | sed 's/^/ /'
73 10:48:12 echo "cpu (r/l): ${SC_K8S_REQUESTS_CPU}/${SC_K8S_LIMITS_CPU}"
74 10:48:12 if command -v numfmt >/dev/null 2>&1; then
75 10:48:12 echo "memory (r/l): $(numfmt --to=iec --suffix=B $SC_K8S_REQUESTS_MEMORY)/$(numfmt --to=iec --suffix=B $SC_K8S_LIMITS_MEMORY)"
76 10:48:12 else
77 10:48:12 echo "memory (r/l): ${SC_K8S_REQUESTS_MEMORY}/${SC_K8S_LIMITS_MEMORY}"
78 10:48:12 fi
79 10:48:12 __start_time=${EPOCHSECONDS}
80 10:48:12 echo ""
81 10:48:12 echo "Grafana Pod-View: https://grafana.scandit.com/d/k8s_views_pods/kubernetes-views-pods?orgId=1&refresh=1m&var-datasource=${GRAFANA_DATASOURCE}&var-host=${SC_K8S_NODE_NAME}&var-namespace=${SC_K8S_NAMESPACE}&var-pod=${HOSTNAME}&var-resolution=15&from=${__start_time}000&to=now"
82 10:48:12 echo "Grafana Node-View: https://grafana.scandit.com/d/k8s_views_nodes/kubernetes-views-nodes?orgId=1&refresh=1m&var-datasource=${GRAFANA_DATASOURCE}&var-node=${SC_K8S_NODE_NAME}&var-resolution=15s&from=${__start_time}000&to=now"
83 10:48:12 echo "Loki Logs: https://grafana.scandit.com/a/grafana-lokiexplore-app/explore/log_group/gitlab-runner/logs?var-ds=${LOKI_DATASOURCE}&var-filters=log_group|=|gitlab-runner&var-filters=source|=|${LOKI_LOGSOURCE}&var-filters=namespace|=|${SC_K8S_NAMESPACE}&var-filters=CI_PROJECT_ID|=|${CI_PROJECT_ID}&var-filters=CI_PIPELINE_ID|=|${CI_PIPELINE_ID}&var-filters=CI_JOB_ID|=|${CI_JOB_ID}&sortOrder=Ascending&from=${__start_time}000&to=now"
84 10:48:12 echo "Lilibet Statistics: https://lilibet.scandit.io/dashboard/204-job-drill-down?date_range=$(date -d '-7 days' +%Y-%m-%d)~$(date -d '+7 days' +%Y-%m-%d)&job_name=${CI_JOB_NAME}&project=${CI_PROJECT_PATH}"
85 10:48:12 echo ""
86 10:48:12 echo "Setting up credentials for Gitlab Python registries"
87 10:48:12 mkdir -p ~
88 10:48:12 echo "machine gitlab.scandit.com" > ~/.netrc
89 10:48:12 echo "login gitlab-ci-token" >> ~/.netrc
90 10:48:12 echo "password ${CI_JOB_TOKEN}" >> ~/.netrc
91 10:48:12 chmod 600 ~/.netrc
92 10:48:12 if command -v git &> /dev/null && [ "$(id -u)" -ne 0 ]; then
93 10:48:12 git config --global --add safe.directory $CI_PROJECT_DIR
94 10:48:12 fi
95 10:48:12 # Sonarqube server is running on the same cluster. Use internal address
96 10:48:12 export SONAR_HOST_URL="http://sonarqube.sonarqube.svc.cluster.local:9000"
97 10:48:12 section_end:1778237292:section_pre_build_script_0
98 10:48:12 INFO: This is the CI job pre_build_script
99 10:48:12 INFO: It's defined in the backend/infra/aws repo.
100 10:48:12 INFO: These additional Scandit variables are available to you:
101 10:48:12 SC_K8S_NODE_NAME: ip-10-0-17-81.eu-central-1.compute.internal
102 10:48:12 SC_K8S_IMAGE_ID:
103 10:48:12 SC_K8S_KYVERNO_PATCHES: |
104 10:48:12
105 10:48:12 cpu (r/l): 1/4
106 10:48:12 memory (r/l): 1.0GB/16GB
107 10:48:12
108 10:48:12 Grafana Pod-View: https://grafana.scandit.com/d/k8s_views_pods/kubernetes-views-pods?orgId=1&refresh=1m&var-datasource=lu1rmx27z&var-host=ip-10-0-17-81.eu-central-1.compute.internal&var-namespace=gitlab-runner&var-pod=runner-wrxjpbsjx-project-621-concurrent-0-ylca23k1&var-resolution=15&from=1778237292000&to=now
109 10:48:12 Grafana Node-View: https://grafana.scandit.com/d/k8s_views_nodes/kubernetes-views-nodes?orgId=1&refresh=1m&var-datasource=lu1rmx27z&var-node=ip-10-0-17-81.eu-central-1.compute.internal&var-resolution=15s&from=1778237292000&to=now
110 10:48:12 Loki Logs: https://grafana.scandit.com/a/grafana-lokiexplore-app/explore/log_group/gitlab-runner/logs?var-ds=nVsAo7UVk&var-filters=log_group|=|gitlab-runner&var-filters=source|=|k8s-ci.aws.scandit.io&var-filters=namespace|=|gitlab-runner&var-filters=CI_PROJECT_ID|=|621&var-filters=CI_PIPELINE_ID|=|1585539&var-filters=CI_JOB_ID|=|54677914&sortOrder=Ascending&from=1778237292000&to=now
111 10:48:12 Lilibet Statistics: https://lilibet.scandit.io/dashboard/204-job-drill-down?date_range=2026-05-01~2026-05-15&job_name=snyk-test&project=internal/gitlab-templates
112 10:48:12
113 10:48:12 Setting up credentials for Gitlab Python registries
114 10:48:12 $ uv pip install --system -r requirements.txt
115 10:48:12 Using Python 3.12.13 environment at: /usr/local
116 10:48:13 Resolved 7 packages in 863ms
117 10:48:13 Downloading pygments (1.2MiB)
118 10:48:13 Downloaded pygments
119 10:48:13 Prepared 7 packages in 70ms
120 10:48:15 Installed 7 packages in 1.56s
121 10:48:15 + coverage==7.13.5
122 10:48:15 + iniconfig==2.3.0
123 10:48:15 + packaging==26.2
124 10:48:15 + pluggy==1.6.0
125 10:48:15 + pygments==2.20.0
126 10:48:15 + pytest==9.0.3
127 10:48:15 + pytest-cov==7.1.0
128 10:48:15 section_start:1778237295:section_script_step_1[hide_duration=true,collapsed=true] $ set -e
129 10:48:15
130 10:48:15 function log_info() {
131 10:48:15 echo -e "[\e[1;94mINFO\e[0m] $*"
132 10:48:15 }
133 10:48:15
134 10:48:15 function log_warn() {
135 10:48:15 echo -e "[\e[1;93mWARN\e[0m] $*"
136 10:48:15 }
137 10:48:15
138 10:48:15 function log_error() {
139 10:48:15 echo -e "[\e[1;91mERROR\e[0m] $*"
140 10:48:15 }
141 10:48:15
142 10:48:15 function fail() {
143 10:48:15 log_error "$*"
144 10:48:15 exit 1
145 10:48:15 }
146 10:48:15
147 10:48:15 function assert_defined() {
148 10:48:15 if [[ -z "$1" ]]
149 10:48:15 then
150 10:48:15 log_error "$2"
151 10:48:15 exit 1
152 10:48:15 fi
153 10:48:15 }
154 10:48:15
155 10:48:15 function snyk_setup() {
156 10:48:15 # If SNYK_FILE is set, use it as a target, otherwise use --all-projects
157 10:48:15 if [[ -n "${SNYK_FILE}" ]]; then
158 10:48:15 SNYK_TARGET="--file=${SNYK_FILE}"
159 10:48:15 else
160 10:48:15 SNYK_TARGET="--all-projects"
161 10:48:15 fi
162 10:48:15
163 10:48:15 log_info "Targeting $SNYK_TARGET"
164 10:48:15
165 10:48:15 # Set log level based on SNYK_LOG_LEVEL
166 10:48:15 if [[ "$SNYK_LOG_LEVEL" == "info" ]]; then
167 10:48:15 SNYK_LOG_LEVEL=""
168 10:48:15 elif [[ "$SNYK_LOG_LEVEL" == "debug" ]]; then
169 10:48:15 SNYK_LOG_LEVEL="--debug"
170 10:48:15 elif [[ "$SNYK_LOG_LEVEL" == "trace" ]]; then
171 10:48:15 SNYK_LOG_LEVEL="--debug --log-level=trace"
172 10:48:15 fi
173 10:48:15 }
174 10:48:15 section_end:1778237295:section_script_step_1
175 10:48:15 $ assert_defined "$SNYK_TOKEN" "No SNYK_TOKEN defined. You have to provide a valid token for accessing Snyk."
176 10:48:15 $ snyk_setup
177 10:48:15 [INFO] Targeting --file=requirements.txt
178 10:48:15 $ set -x
179 10:48:15 ++ echo '$ snyk $SNYK_COMMAND $SNYK_TARGET --org=$SNYK_ORG --remote-repo-url=$SNYK_REMOTE_REPO_URL --policy-path=$SNYK_POLICY_PATH ${SNYK_EXCLUDE:+--exclude=$SNYK_EXCLUDE} ${SNYK_TARGET_REFERENCE:+--target-reference=$SNYK_TARGET_REFERENCE} ${SNYK_PROJECT_ENVIRONMENT:+--project-environment=$SNYK_PROJECT_ENVIRONMENT} ${SNYK_PROJECT_LIFECYCLE:+--project-lifecycle=$SNYK_PROJECT_LIFECYCLE} ${SNYK_PROJECT_TAGS:+--project-tags=$SNYK_PROJECT_TAGS} $SNYK_LOG_LEVEL $SNYK_EXTRA_PARAMETERS'
180 10:48:15 $ snyk $SNYK_COMMAND $SNYK_TARGET --org=$SNYK_ORG --remote-repo-url=$SNYK_REMOTE_REPO_URL --policy-path=$SNYK_POLICY_PATH ${SNYK_EXCLUDE:+--exclude=$SNYK_EXCLUDE} ${SNYK_TARGET_REFERENCE:+--target-reference=$SNYK_TARGET_REFERENCE} ${SNYK_PROJECT_ENVIRONMENT:+--project-environment=$SNYK_PROJECT_ENVIRONMENT} ${SNYK_PROJECT_LIFECYCLE:+--project-lifecycle=$SNYK_PROJECT_LIFECYCLE} ${SNYK_PROJECT_TAGS:+--project-tags=$SNYK_PROJECT_TAGS} $SNYK_LOG_LEVEL $SNYK_EXTRA_PARAMETERS
181 10:48:15 ++ snyk test --file=requirements.txt --org=d688d452-cf04-4620-84f0-3431ce4d741a --remote-repo-url=internal/gitlab-templates --policy-path=/build/internal/gitlab-templates/.snyk
182 10:48:21
183 10:48:21 Testing /build/internal/gitlab-templates...
184 10:48:21
185 10:48:21 Organization: scandit-internal
186 10:48:21 Package manager: pip
187 10:48:21 Target file: requirements.txt
188 10:48:21 Project name: gitlab-templates
189 10:48:21 Open source: no
190 10:48:21 Project path: /build/internal/gitlab-templates
191 10:48:21 Local Snyk policy: found
192 10:48:21 Licenses: enabled
193 10:48:21
194 10:48:21 ✔ Tested 7 dependencies for known issues, no vulnerable paths found.
195 10:48:21
196 10:48:21 Tip: Detected multiple supported manifests (2), use --all-projects to scan all of them at once.
197 10:48:21
198 10:48:21
199 10:48:22 ++ echo '$ set +x'
200 10:48:22 $ set +x
201 10:48:22 ++ set +x
202 10:48:22
203 10:48:22 Scout Analysis: https://scout.scandit.io/analysis/projects/621/jobs/54677914
204 10:48:22
205 10:48:22
206 10:48:22 Grafana Pod-View: https://grafana.scandit.com/d/k8s_views_pods/kubernetes-views-pods?orgId=1&refresh=1m&var-datasource=lu1rmx27z&var-host=ip-10-0-17-81.eu-central-1.compute.internal&var-namespace=gitlab-runner&var-pod=runner-wrxjpbsjx-project-621-concurrent-0-ylca23k1&var-resolution=15&from=1778237292000&to=1778237302000
207 10:48:22 Grafana Node-View: https://grafana.scandit.com/d/k8s_views_nodes/kubernetes-views-nodes?orgId=1&refresh=1m&var-datasource=lu1rmx27z&var-node=ip-10-0-17-81.eu-central-1.compute.internal&var-resolution=15s&from=1778237292000&to=1778237302000
208 10:48:22 Loki Logs: https://grafana.scandit.com/a/grafana-lokiexplore-app/explore/log_group/gitlab-runner/logs?var-ds=nVsAo7UVk&var-filters=log_group|=|gitlab-runner&var-filters=source|=|k8s-ci.aws.scandit.io&var-filters=namespace|=|gitlab-runner&var-filters=CI_PROJECT_ID|=|621&var-filters=CI_PIPELINE_ID|=|1585539&var-filters=CI_JOB_ID|=|54677914&sortOrder=Ascending&from=1778237292000&to=1778237302000
209 10:48:22 Lilibet Statistics: https://lilibet.scandit.io/dashboard/204-job-drill-down?date_range=2026-05-01~2026-05-15&job_name=snyk-test&project=internal/gitlab-templates
210 10:48:22
211 10:48:22
212 10:48:22 section_end:1778237302:step_script
213 10:48:22 +section_start:1778237302:after_script
214 10:48:22 +Running after_script
215 10:48:22 Running after script...
216 10:48:22 section_start:1778237302:section_after_script_step_0[hide_duration=true,collapsed=true] $ cat <<-EOD
217 10:48:22 ----------------------------------------------------------
218 10:48:22 Need help? Documentation on the Snyk jobs can be found at:
219 10:48:22 https://gitlab.scandit.com/internal/gitlab-templates/-/blob/master/.gitlab/snyk.md
220 10:48:22 EOD
221 10:48:22 section_end:1778237302:section_after_script_step_0
222 10:48:22 ----------------------------------------------------------
223 10:48:22 Need help? Documentation on the Snyk jobs can be found at:
224 10:48:22 https://gitlab.scandit.com/internal/gitlab-templates/-/blob/master/.gitlab/snyk.md
225 10:48:22
226 10:48:22 section_end:1778237302:after_script
227 10:48:22 +section_start:1778237302:cleanup_file_variables
228 10:48:22 +Cleaning up project directory and file based variables
229 10:48:23
230 10:48:23 section_end:1778237303:cleanup_file_variables
231 10:48:23 +
232 10:48:23 Job succeeded
233