Skip to content

Feat/component sync merge - #742

Draft
wdower wants to merge 599 commits into
masterfrom
feat/component-sync-merge
Draft

Feat/component sync merge#742
wdower wants to merge 599 commits into
masterfrom
feat/component-sync-merge

docs: Reframe SRG ADR as generalized XCCDF authoring + add user workflow

761cfa5
Select commit
Loading
Failed to load commit list.
GitHub Advanced Security / SonarCloud succeeded Jul 12, 2026 in 3s

No new alerts in code changed by this pull request

Annotations

Check failure on line 42 in docker-compose.schemathesis.yml

See this annotation in the file changed.

Code scanning / SonarCloud

PostgreSQL database passwords should not be disclosed

<!--SONAR_ISSUE_KEY:AZ9IihrMVWwQadk59sxI-->Make sure this PostgreSQL password gets changed and removed from the code. <p>See more on <a href="https://sonarcloud.io/project/issues?id=mitre_vulcan&issues=AZ9IihrMVWwQadk59sxI&open=AZ9IihrMVWwQadk59sxI&pullRequest=731">SonarQube Cloud</a></p>

Check warning on line 44 in app/javascript/components/shared/FilterGroup.vue

See this annotation in the file changed.

Code scanning / SonarCloud

Pseudorandom number generators (PRNGs) should not be used in security contexts

<!--SONAR_ISSUE_KEY:AZ9Iigx1VWwQadk59snr-->Make sure that using this pseudorandom number generator is safe here. <p>See more on <a href="https://sonarcloud.io/project/issues?id=mitre_vulcan&issues=AZ9Iigx1VWwQadk59snr&open=AZ9Iigx1VWwQadk59snr&pullRequest=731">SonarQube Cloud</a></p>

Check warning on line 36 in app/javascript/components/shared/UserBadge.vue

See this annotation in the file changed.

Code scanning / SonarCloud

Pseudorandom number generators (PRNGs) should not be used in security contexts

<!--SONAR_ISSUE_KEY:AZ9Iig08VWwQadk59soI-->Make sure that using this pseudorandom number generator is safe here. <p>See more on <a href="https://sonarcloud.io/project/issues?id=mitre_vulcan&issues=AZ9Iig08VWwQadk59soI&open=AZ9Iig08VWwQadk59soI&pullRequest=731">SonarQube Cloud</a></p>

Check warning on line 5368 in doc/openapi.yaml

See this annotation in the file changed.

Code scanning / SonarCloud

Credentials should not be hard-coded

<!--SONAR_ISSUE_KEY:AZ9IihpHVWwQadk59sww-->"password" detected here, make sure this is not a hard-coded credential. <p>See more on <a href="https://sonarcloud.io/project/issues?id=mitre_vulcan&issues=AZ9IihpHVWwQadk59sww&open=AZ9IihpHVWwQadk59sww&pullRequest=731">SonarQube Cloud</a></p>

Check warning on line 5533 in doc/openapi.yaml

See this annotation in the file changed.

Code scanning / SonarCloud

Credentials should not be hard-coded

<!--SONAR_ISSUE_KEY:AZ9IihpHVWwQadk59swx-->"password" detected here, make sure this is not a hard-coded credential. <p>See more on <a href="https://sonarcloud.io/project/issues?id=mitre_vulcan&issues=AZ9IihpHVWwQadk59swx&open=AZ9IihpHVWwQadk59swx&pullRequest=731">SonarQube Cloud</a></p>

Check warning on line 49 in doc/openapi/paths/users_admin_create.yaml

See this annotation in the file changed.

Code scanning / SonarCloud

Credentials should not be hard-coded

<!--SONAR_ISSUE_KEY:AZ9IihnaVWwQadk59swu-->"password" detected here, make sure this is not a hard-coded credential. <p>See more on <a href="https://sonarcloud.io/project/issues?id=mitre_vulcan&issues=AZ9IihnaVWwQadk59swu&open=AZ9IihnaVWwQadk59swu&pullRequest=731">SonarQube Cloud</a></p>

Check warning on line 34 in doc/openapi/paths/users_{userId}_set_password.yaml

See this annotation in the file changed.

Code scanning / SonarCloud

Credentials should not be hard-coded

<!--SONAR_ISSUE_KEY:AZ9IihnrVWwQadk59swv-->"password" detected here, make sure this is not a hard-coded credential. <p>See more on <a href="https://sonarcloud.io/project/issues?id=mitre_vulcan&issues=AZ9IihnrVWwQadk59swv&open=AZ9IihnrVWwQadk59swv&pullRequest=731">SonarQube Cloud</a></p>

Check warning on line 24 in docker-compose.schemathesis.yml

See this annotation in the file changed.

Code scanning / SonarCloud

Credentials should not be hard-coded

<!--SONAR_ISSUE_KEY:AZ9IihrMVWwQadk59sxF-->"PASSWORD" detected here, make sure this is not a hard-coded credential. <p>See more on <a href="https://sonarcloud.io/project/issues?id=mitre_vulcan&issues=AZ9IihrMVWwQadk59sxF&open=AZ9IihrMVWwQadk59sxF&pullRequest=731">SonarQube Cloud</a></p>

Check warning on line 42 in docker-compose.schemathesis.yml

See this annotation in the file changed.

Code scanning / SonarCloud

Credentials should not be hard-coded

<!--SONAR_ISSUE_KEY:AZ9IihrMVWwQadk59sxG-->Review this hard-coded URL, which may contain a credential. <p>See more on <a href="https://sonarcloud.io/project/issues?id=mitre_vulcan&issues=AZ9IihrMVWwQadk59sxG&open=AZ9IihrMVWwQadk59sxG&pullRequest=731">SonarQube Cloud</a></p>

Check warning on line 44 in docker-compose.schemathesis.yml

See this annotation in the file changed.

Code scanning / SonarCloud

Credentials should not be hard-coded

<!--SONAR_ISSUE_KEY:AZ9IihrMVWwQadk59sxH-->"PASSWORD" detected here, make sure this is not a hard-coded credential. <p>See more on <a href="https://sonarcloud.io/project/issues?id=mitre_vulcan&issues=AZ9IihrMVWwQadk59sxH&open=AZ9IihrMVWwQadk59sxH&pullRequest=731">SonarQube Cloud</a></p>

Check notice on line 97 in spec/requests/personal_access_tokens_spec.rb

See this annotation in the file changed.

Code scanning / SonarCloud

IP addresses should not be hardcoded

<!--SONAR_ISSUE_KEY:AZ9IihhqVWwQadk59swE-->Make sure using this hardcoded IP address is safe here. <p>See more on <a href="https://sonarcloud.io/project/issues?id=mitre_vulcan&issues=AZ9IihhqVWwQadk59swE&open=AZ9IihhqVWwQadk59swE&pullRequest=731">SonarQube Cloud</a></p>

Check notice on line 89 in spec/requests/personal_access_tokens_spec.rb

See this annotation in the file changed.

Code scanning / SonarCloud

IP addresses should not be hardcoded

<!--SONAR_ISSUE_KEY:AZ9IihhqVWwQadk59swD-->Make sure using this hardcoded IP address is safe here. <p>See more on <a href="https://sonarcloud.io/project/issues?id=mitre_vulcan&issues=AZ9IihhqVWwQadk59swD&open=AZ9IihhqVWwQadk59swD&pullRequest=731">SonarQube Cloud</a></p>

Check notice on line 102 in spec/requests/api_token_auth_spec.rb

See this annotation in the file changed.

Code scanning / SonarCloud

IP addresses should not be hardcoded

<!--SONAR_ISSUE_KEY:AZ9IihhzVWwQadk59swG-->Make sure using this hardcoded IP address is safe here. <p>See more on <a href="https://sonarcloud.io/project/issues?id=mitre_vulcan&issues=AZ9IihhzVWwQadk59swG&open=AZ9IihhzVWwQadk59swG&pullRequest=731">SonarQube Cloud</a></p>

Check notice on line 183 in spec/models/personal_access_token_spec.rb

See this annotation in the file changed.

Code scanning / SonarCloud

IP addresses should not be hardcoded

<!--SONAR_ISSUE_KEY:AZ9IihKNVWwQadk59srl-->Make sure using this hardcoded IP address is safe here. <p>See more on <a href="https://sonarcloud.io/project/issues?id=mitre_vulcan&issues=AZ9IihKNVWwQadk59srl&open=AZ9IihKNVWwQadk59srl&pullRequest=731">SonarQube Cloud</a></p>

Check notice on line 182 in spec/models/personal_access_token_spec.rb

See this annotation in the file changed.

Code scanning / SonarCloud

IP addresses should not be hardcoded

<!--SONAR_ISSUE_KEY:AZ9IihKNVWwQadk59srk-->Make sure using this hardcoded IP address is safe here. <p>See more on <a href="https://sonarcloud.io/project/issues?id=mitre_vulcan&issues=AZ9IihKNVWwQadk59srk&open=AZ9IihKNVWwQadk59srk&pullRequest=731">SonarQube Cloud</a></p>

Check notice on line 177 in spec/models/personal_access_token_spec.rb

See this annotation in the file changed.

Code scanning / SonarCloud

IP addresses should not be hardcoded

<!--SONAR_ISSUE_KEY:AZ9IihKNVWwQadk59srj-->Make sure using this hardcoded IP address is safe here. <p>See more on <a href="https://sonarcloud.io/project/issues?id=mitre_vulcan&issues=AZ9IihKNVWwQadk59srj&open=AZ9IihKNVWwQadk59srj&pullRequest=731">SonarQube Cloud</a></p>

Check notice on line 176 in spec/models/personal_access_token_spec.rb

See this annotation in the file changed.

Code scanning / SonarCloud

IP addresses should not be hardcoded

<!--SONAR_ISSUE_KEY:AZ9IihKNVWwQadk59sri-->Make sure using this hardcoded IP address is safe here. <p>See more on <a href="https://sonarcloud.io/project/issues?id=mitre_vulcan&issues=AZ9IihKNVWwQadk59sri&open=AZ9IihKNVWwQadk59sri&pullRequest=731">SonarQube Cloud</a></p>

Check notice on line 171 in spec/models/personal_access_token_spec.rb

See this annotation in the file changed.

Code scanning / SonarCloud

IP addresses should not be hardcoded

<!--SONAR_ISSUE_KEY:AZ9IihKNVWwQadk59srh-->Make sure using this hardcoded IP address is safe here. <p>See more on <a href="https://sonarcloud.io/project/issues?id=mitre_vulcan&issues=AZ9IihKNVWwQadk59srh&open=AZ9IihKNVWwQadk59srh&pullRequest=731">SonarQube Cloud</a></p>

Check notice on line 166 in spec/models/personal_access_token_spec.rb

See this annotation in the file changed.

Code scanning / SonarCloud

IP addresses should not be hardcoded

<!--SONAR_ISSUE_KEY:AZ9IihKNVWwQadk59srg-->Make sure using this hardcoded IP address is safe here. <p>See more on <a href="https://sonarcloud.io/project/issues?id=mitre_vulcan&issues=AZ9IihKNVWwQadk59srg&open=AZ9IihKNVWwQadk59srg&pullRequest=731">SonarQube Cloud</a></p>

Check notice on line 112 in spec/models/personal_access_token_spec.rb

See this annotation in the file changed.

Code scanning / SonarCloud

IP addresses should not be hardcoded

<!--SONAR_ISSUE_KEY:AZ9IihKNVWwQadk59srf-->Make sure using this hardcoded IP address is safe here. <p>See more on <a href="https://sonarcloud.io/project/issues?id=mitre_vulcan&issues=AZ9IihKNVWwQadk59srf&open=AZ9IihKNVWwQadk59srf&pullRequest=731">SonarQube Cloud</a></p>

Check notice on line 112 in spec/models/personal_access_token_spec.rb

See this annotation in the file changed.

Code scanning / SonarCloud

IP addresses should not be hardcoded

<!--SONAR_ISSUE_KEY:AZ9IihKNVWwQadk59sre-->Make sure using this hardcoded IP address is safe here. <p>See more on <a href="https://sonarcloud.io/project/issues?id=mitre_vulcan&issues=AZ9IihKNVWwQadk59sre&open=AZ9IihKNVWwQadk59sre&pullRequest=731">SonarQube Cloud</a></p>