-
Notifications
You must be signed in to change notification settings - Fork 1
[oblt-aw][security] SEC-022 — findings (2026-05-09) #829
Copy link
Copy link
Open
Labels
oblt-aw/ai/fix-readyIssue has been triaged and is ready for automated fixingIssue has been triaged and is ready for automated fixingoblt-aw/detector/securitySecurity-related signal detected by automated workflowSecurity-related signal detected by automated workflowoblt-aw/triage/security-secretsIssue triaged as security-related (secrets)Issue triaged as security-related (secrets)
Metadata
Metadata
Assignees
Labels
oblt-aw/ai/fix-readyIssue has been triaged and is ready for automated fixingIssue has been triaged and is ready for automated fixingoblt-aw/detector/securitySecurity-related signal detected by automated workflowSecurity-related signal detected by automated workflowoblt-aw/triage/security-secretsIssue triaged as security-related (secrets)Issue triaged as security-related (secrets)
Type
Fields
Give feedbackNo fields configured for issues without a type.
Security findings (SEC-022)
Analysis date: 2026-05-09
Occurrences: 4
Details
.github/workflows/oblt-aw-ingress.yml— line 42 — medium — zizmor [secrets-inherit]: secrets unconditionally inherited by called workflow (https://docs.zizmor.sh/audits/#secrets-inherit).github/workflows/oblt-aw-ingress.yml— line 105 — medium — zizmor [secrets-inherit]: secrets unconditionally inherited by called workflow (https://docs.zizmor.sh/audits/#secrets-inherit).github/workflows/oblt-aw-ingress.yml— line 139 — medium — zizmor [secrets-inherit]: secrets unconditionally inherited by called workflow (https://docs.zizmor.sh/audits/#secrets-inherit).github/workflows/oblt-aw-ingress.yml— line 176 — medium — zizmor [secrets-inherit]: secrets unconditionally inherited by called workflow (https://docs.zizmor.sh/audits/#secrets-inherit)Generated by oblt-aw security detector. Rules: security-scanning-ruleset (SEC-001–SEC-044, aligned with observability-robots#3758).