Skip to content

fix(security): bind the remaining IDOR-able RPCs to auth.uid() #14

fix(security): bind the remaining IDOR-able RPCs to auth.uid()

fix(security): bind the remaining IDOR-able RPCs to auth.uid() #14

Triggered via pull request August 14, 2026 03:31
Status Success
Total duration 36s
Artifacts 1

threatcrush-scan.yml

on: pull_request
Scan for credentials and vulnerable patterns
32s
Scan for credentials and vulnerable patterns
Fit to window
Zoom out
Zoom in

Annotations

2 warnings
Scan for credentials and vulnerable patterns
Node.js 20 is deprecated. The following actions target Node.js 20 but are being forced to run on Node.js 24: actions/checkout@v4, actions/github-script@v7, actions/setup-node@v4, actions/upload-artifact@v4, github/codeql-action/upload-sarif@v3. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
Scan for credentials and vulnerable patterns
CodeQL Action v3 will be deprecated in December 2026. Please update all occurrences of the CodeQL Action in your workflow files to v4. For more information, see https://github.blog/changelog/2025-10-28-upcoming-deprecation-of-codeql-action-v3/

Artifacts

Produced during runtime
Name Size Digest
threatcrush-sarif
5.76 KB
sha256:6952e1738fb9e0e2fbbfe87afb167322785f50d78dd9b72b986c7f31f9136d45