• Home
  • Features
  • Pricing
  • Docs
  • Announcements
  • Sign In

NVIDIA / holodeck / 22713299226 / 1
49%
main: 48%

Build:
Build:
LAST BUILD BRANCH: dependabot/go_modules/main/github.com/aws/aws-sdk-go-v2/service/ec2-1.300.0
DEFAULT BRANCH: main
Ran 05 Mar 2026 10:22AM UTC
Files 36
Run time 1s
Badge
Embed ▾
README BADGES
x

If you need to use a raster PNG badge, change the '.svg' to '.png' in the link

Markdown

Textile

RDoc

HTML

Rst

05 Mar 2026 10:19AM UTC coverage: 48.918% (+0.1%) from 48.816%
22713299226.1

push

github

ArangoGutierrez
fix(templates): address security review findings in custom template executor (#565)

- B1: Use single-quote shell quoting (shellQuote) for env var values to
  prevent command substitution injection via $(...)
- B2: Validate env var keys match ^[a-zA-Z_][a-zA-Z0-9_]*$ to prevent
  key injection
- R1: Move || true outside holodeck_log string so it acts as a shell
  operator, not part of the log message
- R2: Sanitize template name/phase before shell interpolation using
  sanitizeName() which strips non-alphanumeric characters
- N1: Detect 10MB URL response truncation instead of silently truncating
- N2: Update ContinueOnError test assertion to match corrected output

Signed-off-by: Carlos Eduardo Arango Gutierrez <eduardoa@nvidia.com>

2735 of 5591 relevant lines covered (48.92%)

0.55 hits per line

Source Files on job 22713299226.1
  • Tree
  • List 36
  • Changed 1
  • Source Changed 1
  • Coverage Changed 1
Coverage ∆ File Lines Relevant Covered Missed Hits/Line
  • Back to Build 22713299226
  • bbd5d9b4 on github
  • Prev Job for on pull-request/702 (#22684699483.1)
  • Next Job for on pull-request/702 (#22713698597.1)
  • Delete
STATUS · Troubleshooting · Open an Issue · Sales · Support · CAREERS · ENTERPRISE · START FREE · SCHEDULE DEMO
ANNOUNCEMENTS · TWITTER · TOS & SLA · Supported CI Services · What's a CI service? · Automated Testing

© 2026 Coveralls, Inc