Skip to content

Conversation

@ivanmds
Copy link
Contributor

@ivanmds ivanmds commented Jan 7, 2026

No description provided.

@ivanmds ivanmds closed this Jan 7, 2026
@sonarqubecloud
Copy link

sonarqubecloud bot commented Jan 7, 2026

Quality Gate Failed Quality Gate failed

Failed conditions
C Security Rating on New Code (required ≥ A)

See analysis details on SonarQube Cloud

Catch issues before they fail your Quality Gate with our IDE extension SonarQube for IDE

// This is used for signatures only (not encryption), and is required
// for compatibility with jwt.io and other RS256 consumers.
// NOSONAR: S5542
sig, err := rsa.SignPKCS1v15(rand.Reader, priv, crypto.SHA256, hash[:])

Check failure

Code scanning / SonarCloud

Encryption algorithms should be used with secure mode and padding scheme

<!--SONAR_ISSUE_KEY:AZuaXo1c4txCbXtCwdJw-->Use a secure mode and padding scheme for this encryption algorithm. <p>See more on <a href="https://sonarcloud.io/project/issues?id=WrenchApps_GoWrench&issues=AZuaXo1c4txCbXtCwdJw&open=AZuaXo1c4txCbXtCwdJw&pullRequest=70">SonarQube Cloud</a></p>
labels:
app: myapp
spec:
containers:

Check warning

Code scanning / SonarCloud

Service account permissions should be restricted

<!--SONAR_ISSUE_KEY:AZuaXo8U4txCbXtCwdKQ-->Bind this resource's automounted service account to RBAC or disable automounting. <p>See more on <a href="https://sonarcloud.io/project/issues?id=WrenchApps_GoWrench&issues=AZuaXo8U4txCbXtCwdKQ&open=AZuaXo8U4txCbXtCwdKQ&pullRequest=70">SonarQube Cloud</a></p>
app: myapp
spec:
containers:
- name: myapp-container

Check warning

Code scanning / SonarCloud

Memory limits should be enforced

<!--SONAR_ISSUE_KEY:AZuaXo8U4txCbXtCwdKO-->Specify a memory limit for this container. <p>See more on <a href="https://sonarcloud.io/project/issues?id=WrenchApps_GoWrench&issues=AZuaXo8U4txCbXtCwdKO&open=AZuaXo8U4txCbXtCwdKO&pullRequest=70">SonarQube Cloud</a></p>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants