• Home
  • Features
  • Pricing
  • Docs
  • Announcements
  • Sign In

optimizely / php-sdk / 22968801156
97%

Build:
DEFAULT BRANCH: master
Ran 11 Mar 2026 06:43PM UTC
Jobs 2
Files 79
Run time 1min
Badge
Embed ▾
README BADGES
x

If you need to use a raster PNG badge, change the '.svg' to '.png' in the link

Markdown

Textile

RDoc

HTML

Rst

11 Mar 2026 06:42PM UTC coverage: 97.336%. Remained the same
22968801156

push

github

web-flow
[FSSDK-12316] [Security] Fix curl|bash vulnerability in SourceClear scan (#294)

* [Security] Fix curl|bash vulnerability in SourceClear scan

- Replace dangerous curl|bash pattern with official Veracode SCA action
- Use veracode/veracode-sca@v2 for secure, maintained scanning
- Addresses script injection vulnerability in CI/CD pipeline
- Related to commit 363cb85 (previous GitHub Actions security fix)

Security improvements:
- Official action from Veracode organization (signed and verified)
- No untrusted remote code execution
- Protected against MITM attacks
- Same SRCCLR_API_TOKEN authentication preserved
- Action is actively maintained and receives security updates

Co-Authored-By: Claude Sonnet 4.5 <noreply@anthropic.com>

* chore: Remove SourceClear scan workflow

Following Python SDK's approach (commit d651911), removing the
SourceClear GitHub Actions workflow to address security risks.

The curl|bash pattern in this workflow presented a security
vulnerability. Rather than replace with official action, we're
removing it entirely to align with the Python SDK security
remediation strategy.

Co-Authored-By: Claude Sonnet 4.5 <noreply@anthropic.com>

---------

Co-authored-by: Claude Sonnet 4.5 <noreply@anthropic.com>

2704 of 2778 relevant lines covered (97.34%)

109.34 hits per line

Jobs
ID Job ID Ran Files Coverage
1 22968801156.1 11 Mar 2026 06:43PM UTC 79
97.34
GitHub Action Run
2 22968801156.2 11 Mar 2026 06:44PM UTC 79
97.34
GitHub Action Run
Source Files on build 22968801156
  • Tree
  • List 79
  • Changed 0
  • Source Changed 0
  • Coverage Changed 0
Coverage ∆ File Lines Relevant Covered Missed Hits/Line
  • Back to Repo
  • 85393813 on github
  • Prev Build on master (#13883417585)
STATUS · Troubleshooting · Open an Issue · Sales · Support · CAREERS · ENTERPRISE · START FREE · SCHEDULE DEMO
ANNOUNCEMENTS · TWITTER · TOS & SLA · Supported CI Services · What's a CI service? · Automated Testing

© 2026 Coveralls, Inc