GoogleCloudPlatform / GoogleCloudPlatform/training-data-analyst
Security Policy violation Binary Artifacts
- Dominant language
- Jupyter Notebook
- Stars
- 8.6k
- Forks
- 6.1k
- Avg merge
- 4h 44m
- Merged PRs (30d)
- 2
Description
_This issue was automatically created by [Allstar](https://github.com/ossf/allstar/)._
**Security Policy Violation**
Project is out of compliance with Binary Artifacts policy: binaries present in source code
**Rule Description**
Binary Artifacts are an increased security risk in your repository. Binary artifacts cannot be reviewed, allowing the introduction of possibly obsolete or maliciously subverted executables. For more information see the [Security Scorecards Documentation](https://github.com/ossf/scorecard/blob/main/docs/checks.md#binary-artifacts) for Binary Artifacts.
**Remediation Steps**
To remediate, remove the generated executable artifacts from the repository.
**First 10 Artifacts Found**
- courses/java-microservices/spring-cloud-gcp-guestbook/1-bootstrap/guestbook-frontend/.mvn/wrapper/maven-wrapper.jar
- courses/java-microservices/spring-cloud-gcp-guestbook/1-bootstrap/guestbook-service/.mvn/wrapper/maven-wrapper.jar
- courses/java-microservices/spring-cloud-gcp-guestbook/12-kubernetes-monitoring/guestbook-frontend/.mvn/wrapper/maven-wrapper.jar
- courses/java-microservices/spring-cloud-gcp-guestbook/2a-cloud-sql/guestbook-frontend/.mvn/wrapper/maven-wrapper.jar
- courses/java-microservices/spring-cloud-gcp-guestbook/2a-cloud-sql/guestbook-service/.mvn/wrapper/maven-wrapper.jar
- courses/java-microservices/spring-cloud-gcp-guestbook/2b-spanner/guestbook-service/.mvn/wrapper/maven-wrapper.jar
- courses/java-microservices/spring-cloud-gcp-guestbook/3-trace/guestbook-frontend/.mvn/wrapper/maven-wrapper.jar
- courses/java-microservices/spring-cloud-gcp-guestbook/3-trace/guestbook-service/.mvn/wrapper/maven-wrapper.jar
- courses/java-microservices/spring-cloud-gcp-guestbook/4-logging/guestbook-frontend/.mvn/wrapper/maven-wrapper.jar
- courses/java-microservices/spring-cloud-gcp-guestbook/4-logging/guestbook-service/.mvn/wrapper/maven-wrapper.jar
- Run a Scorecards scan to see full list.
**Additional Information**
This policy is drawn from [Security Scorecards](https://github.com/ossf/scorecard/), which is a tool that scores a project's adherence to security best practices. You may wish to run a Scorecards scan directly on this repository for more details.
---
Allstar has been installed on all Google managed GitHub orgs. Policies are gradually being rolled out and enforced by the GOSST and OSPO teams. Learn more at http://go/allstar
This issue will auto resolve when the policy is in compliance.
Issue created by Allstar. See https://github.com/ossf/allstar/ for more information. For questions specific to the repository, please contact the owner or maintainer.
Contributor guide
Assessment
This issue has not been assessed yet.