Skip to content

Guava + JPMS

Guava + JPMS #16

Triggered via pull request March 11, 2024 23:09
Status Failure
Total duration 14m 35s
Artifacts 1

on.pr.yml

on: pull_request
Matrix: Build / build
Checks  /  Gradle Wrapper Validate
11s
Checks / Gradle Wrapper Validate
Checks  /  Dependency Graph
27s
Checks / Dependency Graph
Matrix: Checks / CodeQL Analysis
Matrix: Tests / test
Build  /  ...  /  detect-env
2s
Build / SLSA Provenance / detect-env
Build  /  Generate Docs
0s
Build / Generate Docs
Build  /  ...  /  generator
15s
Build / SLSA Provenance / generator
Build  /  ...  /  upload-assets
0s
Build / SLSA Provenance / upload-assets
Build  /  ...  /  final
0s
Build / SLSA Provenance / final
Build  /  Publish Snapshot
0s
Build / Publish Snapshot
Fit to window
Zoom out
Zoom in

Annotations

11 errors, 4 warnings, and 2 notices
Checks / Dependency Graph
Dependency review detected vulnerable packages.
Checks / Dependency Graph
HTTP Status 403 for request POST https://api.github.com/repos/google/guava/dependency-graph/snapshots
Checks / Dependency Graph
Response body: { "message": "Resource not accessible by integration", "documentation_url": "https://docs.github.com/rest/dependency-graph/dependency-submission#create-a-snapshot-of-dependencies-for-a-repository" }
Checks / Dependency Graph
Resource not accessible by integration
Checks / Dependency Graph
HttpError: Resource not accessible by integration at /home/runner/work/_actions/advanced-security/maven-dependency-submission-action/bfd2106013da0957cdede0b6c39fb5ca25ae375e/node_modules/@octokit/request/dist-node/index.js:124:1 at processTicksAndRejections (node:internal/process/task_queues:95:5) at L (/home/runner/work/_actions/advanced-security/maven-dependency-submission-action/bfd2106013da0957cdede0b6c39fb5ca25ae375e/node_modules/@github/dependency-submission-toolkit/dist/index.js:6:1)
Build / SLSA Provenance / generator
Process completed with exit code 1.
Build / SLSA Provenance / generator
Input required and not supplied: path
Build / SLSA Provenance / final
Process completed with exit code 27.
Checks / CodeQL Analysis (java)
Code Scanning could not process the submitted SARIF file: CodeQL analyses from advanced configurations cannot be processed when the default setup is enabled
Tests / JDK 11 JRE (ubuntu-latest)
Process completed with exit code 1.
Tests / JDK 11 Android (ubuntu-latest)
Process completed with exit code 1.
Checks / Dependency Graph
Submitting snapshot...
Checks / Dependency Graph
{ "manifests": { "guava-parent": { "resolved": { "pkg:maven/com.google.guava/guava@1.0-HEAD-jre-SNAPSHOT?type=jar": { "package_url": "pkg:maven/com.google.guava/guava@1.0-HEAD-jre-SNAPSHOT?type=jar", "relationship": "direct", "scope": "development", "dependencies": [ "pkg:maven/com.google.guava/failureaccess@1.0.2?type=jar", "pkg:maven/com.google.guava/listenablefuture@9999.0-empty-to-avoid-conflict-with-guava?type=jar", "pkg:maven/com.google.code.findbugs/jsr305@3.0.2?type=jar", "pkg:maven/org.checkerframework/checker-qual@3.42.0?type=jar", "pkg:maven/com.google.errorprone/error_prone_annotations@2.26.0?type=jar", "pkg:maven/com.google.j2objc/j2objc-annotations@3.0.0?type=jar", "pkg:maven/com.google.guava/failureaccess@1.0.2?type=jar", "pkg:maven/com.google.guava/listenablefuture@9999.0-empty-to-avoid-conflict-with-guava?type=jar" ] }, "pkg:maven/com.google.guava/failureaccess@1.0.2?type=jar": { "package_url": "pkg:maven/com.google.guava/failureaccess@1.0.2?type=jar", "relationship": "indirect", "scope": "development", "dependencies": [] }, "pkg:maven/com.google.guava/listenablefuture@9999.0-empty-to-avoid-conflict-with-guava?type=jar": { "package_url": "pkg:maven/com.google.guava/listenablefuture@9999.0-empty-to-avoid-conflict-with-guava?type=jar", "relationship": "indirect", "scope": "development", "dependencies": [] }, "pkg:maven/com.google.code.findbugs/jsr305@3.0.2?type=jar": { "package_url": "pkg:maven/com.google.code.findbugs/jsr305@3.0.2?type=jar", "relationship": "direct", "scope": "development", "dependencies": [] }, "pkg:maven/org.checkerframework/checker-qual@3.42.0?type=jar": { "package_url": "pkg:maven/org.checkerframework/checker-qual@3.42.0?type=jar", "relationship": "direct", "scope": "development", "dependencies": [] }, "pkg:maven/com.google.errorprone/error_prone_annotations@2.26.0?type=jar": { "package_url": "pkg:maven/com.google.errorprone/error_prone_annotations@2.26.0?type=jar", "relationship": "direct", "scope": "development", "dependencies": [] }, "pkg:maven/com.google.j2objc/j2objc-annotations@3.0.0?type=jar": { "package_url": "pkg:maven/com.google.j2objc/j2objc-annotations@3.0.0?type=jar", "relationship": "indirect", "scope": "development", "dependencies": [] }, "pkg:maven/junit/junit@4.13.2?type=jar": { "package_url": "pkg:maven/junit/junit@4.13.2?type=jar", "relationship": "direct", "scope": "development", "dependencies": [ "pkg:maven/org.hamcrest/hamcrest-core@1.3?type=jar", "pkg:maven/org.hamcrest/hamcrest-core@1.3?type=jar" ] }, "pkg:maven/org.hamcrest/hamcrest-core@1.3?type=jar": { "package_url": "pkg:maven/org.hamcrest/hamcrest-core@1.3?type=jar", "relationship": "indirect", "scope": "development", "dependencies": [] }, "pkg:maven/com.google.truth/truth@1.4.2?type=jar": {
Build / SLSA Provenance / detect-env
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: slsa-framework/slsa-github-generator/.github/actions/detect-workflow-js@v1.9.0. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
Build / SLSA Provenance / generator
Restore cache failed: Dependencies file is not found in /home/runner/work/guava/guava. Supported file pattern: go.sum
Build / SLSA Provenance / generator
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: actions/checkout@c85c95e3d7251135ab7dc9ce3241c5835cc595a9, ./__BUILDER_CHECKOUT_DIR__/.github/actions/privacy-check, actions/setup-go@fac708d6674e30b6ba41289acaab6d4b75aa0753, ./__BUILDER_CHECKOUT_DIR__/.github/actions/compute-sha256, actions/upload-artifact@0b7f8abb1508181956e8e162db84b466c27e18ce. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
Checks / CodeQL Analysis (java)
1 issue was detected with this workflow: Please specify an on.push hook to analyze and see code scanning alerts from the default branch on the Security tab.

Artifacts

Produced during runtime
Name Size
guava-artifacts-jre-bdc0c74a7eb8bb014e281cb7cc74c487c2787035 Expired
18.4 MB