Running with gitlab-runner 15.5.0 (0d4137b8)  on osm3 6MUAF4hG section_start:1700512665:resolve_secrets Resolving secrets section_end:1700512665:resolve_secrets section_start:1700512665:prepare_executor Preparing the "docker" executor Using Docker executor with image registry.gitlab.com/gitlab-org/security-products/analyzers/bandit:2 ... Pulling docker image registry.gitlab.com/gitlab-org/security-products/analyzers/bandit:2 ... Using docker image sha256:e6c6b290a8d8b0e2d37dc2e79a861f06dc820e4a8d2f37068636241c2e980d3c for registry.gitlab.com/gitlab-org/security-products/analyzers/bandit:2 with digest registry.gitlab.com/gitlab-org/security-products/analyzers/bandit@sha256:e197083f829519f6ef68369d98eb839933ab2c8d9419a56f6b4e301e368f4b86 ... section_end:1700512669:prepare_executor section_start:1700512669:prepare_script Preparing environment Running on runner-6muaf4hg-project-75-concurrent-2 via osm3... section_end:1700512671:prepare_script section_start:1700512671:get_sources Getting source from Git repository Fetching changes with git depth set to 50... Initialized empty Git repository in /builds/gitlab/osm/tests/.git/ Created fresh repository. Checking out 3643d407 as feature11003... Skipping Git submodules setup section_end:1700512674:get_sources section_start:1700512674:step_script Executing "step_script" stage of the job script Using docker image sha256:e6c6b290a8d8b0e2d37dc2e79a861f06dc820e4a8d2f37068636241c2e980d3c for registry.gitlab.com/gitlab-org/security-products/analyzers/bandit:2 with digest registry.gitlab.com/gitlab-org/security-products/analyzers/bandit@sha256:e197083f829519f6ef68369d98eb839933ab2c8d9419a56f6b4e301e368f4b86 ... $ /analyzer run [INFO] [Bandit] [2023-11-20T20:37:54Z] ▶ GitLab Bandit analyzer v2.12.6 [INFO] [Bandit] [2023-11-20T20:37:54Z] ▶ Detecting project [INFO] [Bandit] [2023-11-20T20:37:54Z] ▶ Found relevant files in project, analyzing entire repository [INFO] [Bandit] [2023-11-20T20:37:54Z] ▶ Running analyzer [DEBU] [Bandit] [2023-11-20T20:37:55Z] ▶ /usr/local/bin/bandit -a vuln -f json --exclude -o /tmp/bandit.json -r . [main] INFO profile include tests: None [main] INFO profile exclude tests: None [main] INFO cli include tests: None [main] INFO cli exclude tests: None [json] INFO JSON output written to file: /tmp/bandit.json [INFO] [Bandit] [2023-11-20T20:37:55Z] ▶ Creating report [DEBU] [Bandit] [2023-11-20T20:37:55Z] ▶ /builds/gitlab/osm/tests/.gitlab/sast-ruleset.toml not found, ruleset support will be disabled. [DEBU] [Bandit] [2023-11-20T20:37:55Z] ▶ Applying report overrides [DEBU] [Bandit] [2023-11-20T20:37:55Z] ▶ /builds/gitlab/osm/tests/.gitlab/sast-ruleset.toml not found, ruleset support will be disabled. [DEBU] [Bandit] [2023-11-20T20:37:55Z] ▶ Optimizing JSON Output section_end:1700512675:step_script section_start:1700512675:upload_artifacts_on_success Uploading artifacts for successful job Uploading artifacts... gl-sast-report.json: found 1 matching files and directories Uploading artifacts as "sast" to coordinator... 201 Created id=78958 responseStatus=201 Created token=W7hn3smQ section_end:1700512677:upload_artifacts_on_success section_start:1700512677:cleanup_file_variables Cleaning up project directory and file based variables section_end:1700512679:cleanup_file_variables Job succeeded