registry  /  @abgov/nx-oc  /  12.15.1

@abgov/nx-oc@12.15.1

Government of Alberta - Nx plugin for OpenShift.

Static Scan Results

scanned 22h ago · by rust-scanner

Static analysis flagged 6 finding(s) at 72.0% confidence. This version is warn-only unless an AI or security-team review confirms malicious behavior.

Static reason
One or more suspicious static signals were detected.

Decision evidence

public snapshot
Behavioral surface
Source
ChildProcessEnvironmentVarsFilesystemNetworkShell
Supply chain
HighEntropyStringsUrlStrings
ManifestNo manifest risk signals triggered.
scanned 30 file(s), 105 KB of source, external domains: access-uat.alberta.ca, access.adsp-dev.gov.ab.ca, access.alberta.ca, access.example.com, api.example.com, api.example.openshift.com, directory-service.adsp-dev.gov.ab.ca, directory-service.adsp-uat.alberta.ca, directory-service.adsp.alberta.ca, github.com, gitlab.com, mirror.openshift.com, test-test-sandbox.apps.test.example.com

Source & flagged code

1 flagged · loading source
src/generators/sandbox/sandbox.jsView file
152patternName = generic_password severity = medium line = 152 matchedText = `--docke... ` +
Medium
Secret Pattern

Package contains a possible secret pattern.

src/generators/sandbox/sandbox.jsView on unpkg · L152

Findings

3 Medium3 Low
MediumSecret Patternsrc/generators/sandbox/sandbox.js
MediumNetwork
MediumEnvironment Vars
LowFilesystem
LowHigh Entropy Strings
LowUrl Strings