/usr/bin/docker run --name c4b06ebc516ad4480bede4135b0213602_3876a6 --label 49859c --workdir /github/workspace --rm -e "GITHUB_TOKEN" -e "SONAR_TOKEN" -e "INPUT_ARGS" -e "INPUT_PROJECTBASEDIR" -e "HOME" -e "GITHUB_JOB" -e "GITHUB_REF" -e "GITHUB_SHA" -e "GITHUB_REPOSITORY" -e "GITHUB_REPOSITORY_OWNER" -e "GITHUB_REPOSITORY_OWNER_ID" -e "GITHUB_RUN_ID" -e "GITHUB_RUN_NUMBER" -e "GITHUB_RETENTION_DAYS" -e "GITHUB_RUN_ATTEMPT" -e "GITHUB_REPOSITORY_ID" -e "GITHUB_ACTOR_ID" -e "GITHUB_ACTOR" -e "GITHUB_TRIGGERING_ACTOR" -e "GITHUB_WORKFLOW" -e "GITHUB_HEAD_REF" -e "GITHUB_BASE_REF" -e "GITHUB_EVENT_NAME" -e "GITHUB_SERVER_URL" -e "GITHUB_API_URL" -e "GITHUB_GRAPHQL_URL" -e "GITHUB_REF_NAME" -e "GITHUB_REF_PROTECTED" -e "GITHUB_REF_TYPE" -e "GITHUB_WORKFLOW_REF" -e "GITHUB_WORKFLOW_SHA" -e "GITHUB_WORKSPACE" -e "GITHUB_ACTION" -e "GITHUB_EVENT_PATH" -e "GITHUB_ACTION_REPOSITORY" -e "GITHUB_ACTION_REF" -e "GITHUB_PATH" -e "GITHUB_ENV" -e "GITHUB_STEP_SUMMARY" -e "GITHUB_STATE" -e "GITHUB_OUTPUT" -e "RUNNER_OS" -e "RUNNER_ARCH" -e "RUNNER_NAME" -e "RUNNER_TOOL_CACHE" -e "RUNNER_TEMP" -e "RUNNER_WORKSPACE" -e "ACTIONS_RUNTIME_URL" -e "ACTIONS_RUNTIME_TOKEN" -e "ACTIONS_CACHE_URL" -e GITHUB_ACTIONS=true -e CI=true -v "/var/run/docker.sock":"/var/run/docker.sock" -v "/home/runner/work/_temp/_github_home":"/github/home" -v "/home/runner/work/_temp/_github_workflow":"/github/workflow" -v "/home/runner/work/_temp/_runner_file_commands":"/github/file_commands" -v "/home/runner/work/trip_ninja_api/trip_ninja_api":"/github/workspace" 49859c:4b06ebc516ad4480bede4135b0213602 -Dsonar.pullrequest.key=1668 -Dsonar.pullrequest.branch=ENG-1002-Implement_automated_backend_testing_in_SonarQube -Dsonar.pullrequest.base=develop -Dsonar.pullrequest.provider=GitHub INFO: Scanner configuration file: /opt/sonar-scanner/conf/sonar-scanner.properties INFO: Project root configuration file: /github/workspace/sonar-project.properties INFO: SonarScanner 4.7.0.2747 INFO: Java 11.0.17 Alpine (64-bit) INFO: Linux 5.15.0-1031-azure amd64 INFO: User cache: /opt/sonar-scanner/.sonar/cache INFO: Scanner configuration file: /opt/sonar-scanner/conf/sonar-scanner.properties INFO: Project root configuration file: /github/workspace/sonar-project.properties INFO: Analyzing on SonarCloud INFO: Default locale: "en_US", source code encoding: "UTF-8" (analysis is platform dependent) INFO: Load global settings INFO: Load global settings (done) | time=915ms INFO: Server id: 1BD809FA-AWHW8ct9-T_TB3XqouNu INFO: User cache: /opt/sonar-scanner/.sonar/cache INFO: Load/download plugins INFO: Load plugins index INFO: Load plugins index (done) | time=908ms INFO: Load/download plugins (done) | time=4151ms INFO: Loaded core extensions: developer-scanner INFO: Found an active CI vendor: 'Github Actions' INFO: Load project settings for component key: 'trip_ninja_api' INFO: Load project settings for component key: 'trip_ninja_api' (done) | time=871ms INFO: Process project properties INFO: Execute project builders INFO: Execute project builders (done) | time=1ms INFO: Project key: trip_ninja_api INFO: Base dir: /github/workspace INFO: Working dir: /github/workspace/.scannerwork INFO: Load project branches INFO: Load project branches (done) | time=887ms INFO: Check ALM binding of project 'trip_ninja_api' INFO: Detected project binding: NOT_BOUND INFO: Check ALM binding of project 'trip_ninja_api' (done) | time=869ms INFO: Load project pull requests INFO: Load project pull requests (done) | time=907ms INFO: Load branch configuration INFO: Load branch configuration (done) | time=3ms INFO: Load quality profiles INFO: Load quality profiles (done) | time=941ms INFO: Load active rules INFO: Load active rules (done) | time=8778ms INFO: Organization key: trip-ninja-inc-1 INFO: Pull request 1668 for merge into develop from ENG-1002-Implement_automated_backend_testing_in_SonarQube INFO: Load project repositories INFO: Load project repositories (done) | time=1208ms INFO: Indexing files... INFO: Project configuration: INFO: Excluded sources: **/build-wrapper-dump.json, external_services/book/tests/files/**, **/xsd_model/**, **/*airsub.py, **/pnr_retrieve_api.py, **/pnr_retrieve_sub.py, **/*airsup.py, static/**, staticfiles/**, yaml/**, ref_scripts/search_response_structure_v0.4_mini.json, **/*hotelsup.py, **/*hotelsub.py, **/*universalsub.py, **/*universalsup.py INFO: Excluded tests: external_services/book/tests/files/**, **/xsd_model/**, **/*airsub.py, **/pnr_retrieve_api.py, **/pnr_retrieve_sub.py, **/*airsup.py, static/**, staticfiles/**, yaml/**, ref_scripts/search_response_structure_v0.4_mini.json, **/*hotelsup.py, **/*hotelsub.py, **/*universalsub.py, **/*universalsup.py INFO: Excluded sources for coverage: external_services/book/tests/files/**, **/xsd_model/**, **/*airsub.py, **/pnr_retrieve_api.py, **/pnr_retrieve_sub.py, **/*airsup.py, static/**, staticfiles/**, yaml/**, ref_scripts/search_response_structure_v0.4_mini.json, **/*hotelsup.py, **/*hotelsub.py, **/*universalsub.py, **/*universalsup.py INFO: Excluded sources for duplication: external_services/book/tests/files/**, external_services/price/response_adapter/amadeus/xsd_model/**, external_services/queue/xml_adapter/amadeus/xsd_model/**, external_services/book/endpoint_strategy/response_adapter/amadeus/xsd_model/**, external_services/cancel/response_adapter/amadeus/xsd_model/**, algorithm/airsub.py, algorithm/airsup.py, algorithm/am_airsub.py, algorithm/am_airsup.py, static/**, staticfiles/**, yaml/**, ref_scripts/search_response_structure_v0.4_mini.json WARN: File '/github/workspace/api/bin/activate' is ignored. It is a symbolic link targeting a file that does not exist. WARN: File '/github/workspace/api/bin/conda' is ignored. It is a symbolic link targeting a file that does not exist. WARN: File '/github/workspace/api/bin/deactivate' is ignored. It is a symbolic link targeting a file that does not exist. INFO: 849 files indexed INFO: 250 files ignored because of inclusion/exclusion patterns INFO: Quality profile for json: Sonar way INFO: Quality profile for plsql: Sonar way INFO: Quality profile for py: Trip Ninja INFO: Quality profile for web: Sonar way INFO: Quality profile for yaml: Sonar way INFO: ------------- Run sensors on module trip_ninja_api INFO: Load metrics repository INFO: Load metrics repository (done) | time=872ms INFO: Sensor cache enabled INFO: Load sensor cache INFO: Load sensor cache (4 MB) | time=2857ms INFO: Sensor IaC CloudFormation Sensor [iac] INFO: 0 source files to be analyzed INFO: 0/0 source files have been analyzed INFO: Sensor IaC CloudFormation Sensor [iac] (done) | time=4430ms INFO: Sensor IaC Kubernetes Sensor [iac] INFO: 0 source files to be analyzed INFO: 0/0 source files have been analyzed INFO: Sensor IaC Kubernetes Sensor [iac] (done) | time=3731ms INFO: Sensor PL/SQL Sensor [plsql] INFO: Sensor PL/SQL Sensor is restricted to changed files only WARN: The Data Dictionary is not configured for the PLSQL analyzer, which prevents rule(s) S3641, S3921, S3618, S3651 from raising issues. See https://docs.sonarcloud.io/advanced-setup/languages/pl-sql/ INFO: 0 source files to be analyzed INFO: 0/0 source files have been analyzed INFO: Sensor PL/SQL Sensor [plsql] (done) | time=81ms INFO: Sensor C# Project Type Information [csharp] INFO: Sensor C# Project Type Information [csharp] (done) | time=5ms INFO: Sensor C# Analysis Log [csharp] INFO: Sensor C# Analysis Log [csharp] (done) | time=16ms INFO: Sensor C# Properties [csharp] INFO: Sensor C# Properties [csharp] (done) | time=1ms INFO: Sensor HTML [web] INFO: Sensor HTML is restricted to changed files only INFO: Sensor HTML [web] (done) | time=11ms INFO: Sensor TextAndSecretsSensor [text] INFO: Sensor TextAndSecretsSensor is restricted to changed files only INFO: 78 source files to be analyzed INFO: 78/78 source files have been analyzed INFO: Sensor TextAndSecretsSensor [text] (done) | time=6140ms INFO: Sensor VB.NET Project Type Information [vbnet] INFO: Sensor VB.NET Project Type Information [vbnet] (done) | time=1ms INFO: Sensor VB.NET Analysis Log [vbnet] INFO: Sensor VB.NET Analysis Log [vbnet] (done) | time=15ms INFO: Sensor VB.NET Properties [vbnet] INFO: Sensor VB.NET Properties [vbnet] (done) | time=0ms INFO: Sensor Python Sensor [python] INFO: The cache version has changed since the previous analysis, cached data will not be used during this analysis. Retrieved: "3.23.0.10732;3.8". Current version: "3.24.0.10784;3.8". INFO: Starting global symbols computation INFO: 795 source files to be analyzed INFO: 795/795 source files have been analyzed INFO: Starting rules execution INFO: 795 source files to be analyzed INFO: 290/795 files analyzed, current file: external_services/flight_gds/gds_service_facade.py INFO: 689/795 files analyzed, current file: api/data_manager/trip_profile_manager_adapter.py INFO: 795/795 source files have been analyzed INFO: The Python analyzer was able to leverage cached data from previous analyses for 0 out of 795 files. These files were not parsed. INFO: Sensor Python Sensor [python] (done) | time=28037ms INFO: Sensor Cobertura Sensor for Python coverage [python] INFO: Sensor Cobertura Sensor for Python coverage [python] (done) | time=104ms INFO: Sensor PythonXUnitSensor [python] INFO: Sensor PythonXUnitSensor [python] (done) | time=101ms INFO: Sensor JaCoCo XML Report Importer [jacoco] INFO: 'sonar.coverage.jacoco.xmlReportPaths' is not defined. Using default locations: target/site/jacoco/jacoco.xml,target/site/jacoco-it/jacoco.xml,build/reports/jacoco/test/jacocoTestReport.xml INFO: No report imported, no coverage information will be imported by JaCoCo XML Report Importer INFO: Sensor JaCoCo XML Report Importer [jacoco] (done) | time=4ms INFO: Sensor JavaScript inside YAML analysis [javascript] INFO: No input files found for analysis INFO: Hit the cache for 0 out of 0 INFO: Miss the cache for 0 out of 0 INFO: Sensor JavaScript inside YAML analysis [javascript] (done) | time=5ms INFO: Sensor CSS Rules [javascript] INFO: Sensor CSS Rules is restricted to changed files only INFO: No CSS, PHP, HTML or VueJS files are found in the project. CSS analysis is skipped. INFO: Sensor CSS Rules [javascript] (done) | time=3ms INFO: Sensor ThymeLeaf template sensor [securityjavafrontend] INFO: Sensor ThymeLeaf template sensor [securityjavafrontend] (done) | time=2ms INFO: Sensor Python HTML templates processing [securitypythonfrontend] INFO: Sensor Python HTML templates processing [securitypythonfrontend] (done) | time=27ms INFO: Sensor IaC Docker Sensor [iac] INFO: Sensor IaC Docker Sensor is restricted to changed files only INFO: 0 source files to be analyzed INFO: 0/0 source files have been analyzed INFO: Sensor IaC Docker Sensor [iac] (done) | time=66ms INFO: Sensor Serverless configuration file sensor [security] INFO: 0 Serverless function entries were found in the project INFO: 0 Serverless function handlers were kept as entrypoints INFO: Sensor Serverless configuration file sensor [security] (done) | time=5ms INFO: Sensor AWS SAM template file sensor [security] INFO: Sensor AWS SAM template file sensor [security] (done) | time=2ms INFO: Sensor AWS SAM Inline template file sensor [security] INFO: Sensor AWS SAM Inline template file sensor [security] (done) | time=2ms INFO: Sensor javabugs [dbd] INFO: Reading IR files from: /github/workspace/.scannerwork/ir/java INFO: No IR files have been included for analysis. INFO: Sensor javabugs [dbd] (done) | time=3ms INFO: Sensor pythonbugs [dbd] INFO: Reading IR files from: /github/workspace/.scannerwork/ir/python INFO: Analyzing 1369 functions to detect bugs. INFO: Sensor pythonbugs [dbd] (done) | time=2035ms INFO: Sensor JavaSecuritySensor [security] INFO: Reading type hierarchy from: /github/workspace/.scannerwork/ucfg2/java INFO: Read 0 type definitions INFO: No UCFGs have been included for analysis. INFO: Sensor JavaSecuritySensor [security] (done) | time=5ms INFO: Sensor CSharpSecuritySensor [security] INFO: Reading type hierarchy from: /github/workspace/ucfg_cs2 INFO: Read 0 type definitions INFO: No UCFGs have been included for analysis. INFO: Sensor CSharpSecuritySensor [security] (done) | time=2ms INFO: Sensor PhpSecuritySensor [security] INFO: Reading type hierarchy from: /github/workspace/.scannerwork/ucfg2/php INFO: Read 0 type definitions INFO: No UCFGs have been included for analysis. INFO: Sensor PhpSecuritySensor [security] (done) | time=1ms INFO: Sensor PythonSecuritySensor [security] INFO: Reading type hierarchy from: /github/workspace/.scannerwork/ucfg2/python INFO: Read 1463 type definitions INFO: Reading UCFGs from: /github/workspace/.scannerwork/ucfg2/python INFO: 15:59:14.564147 Building Runtime Type propagation graph INFO: 15:59:14.748636 Running Tarjan on 36497 nodes INFO: 15:59:14.813055 Tarjan found 36334 components INFO: 15:59:15.007288 Variable type analysis: done INFO: 15:59:15.010988 Building Runtime Type propagation graph INFO: 15:59:15.229186 Running Tarjan on 35914 nodes INFO: 15:59:15.262152 Tarjan found 35794 components INFO: 15:59:15.336596 Variable type analysis: done INFO: Analyzing 6534 ucfgs to detect vulnerabilities. INFO: All rules entrypoints : 2 INFO: Retained UCFGs : 599 INFO: Taint analysis starting. Entrypoints: 2 INFO: Running symbolic analysis for 'PYTHON' INFO: Taint analysis: done. INFO: Sensor PythonSecuritySensor [security] (done) | time=3827ms INFO: Sensor JsSecuritySensor [security] INFO: Reading type hierarchy from: /github/workspace/.scannerwork/ucfg2/js INFO: Read 0 type definitions INFO: No UCFGs have been included for analysis. INFO: Sensor JsSecuritySensor [security] (done) | time=3ms INFO: ------------- Run sensors on project INFO: Sensor Analysis Warnings import [csharp] INFO: Sensor Analysis Warnings import [csharp] (done) | time=2ms INFO: Sensor Zero Coverage Sensor INFO: Sensor Zero Coverage Sensor (done) | time=68ms INFO: SCM Publisher is disabled INFO: CPD Executor 208 files had no CPD blocks INFO: CPD Executor Calculating CPD for 587 files INFO: CPD Executor CPD calculation finished (done) | time=108ms INFO: Analysis report generated in 203ms, dir size=1 MB INFO: Analysis report compressed in 846ms, zip size=909 KB INFO: Analysis report uploaded in 1915ms INFO: ------------- Check Quality Gate status INFO: Waiting for the analysis report to be processed (max 300s) INFO: QUALITY GATE STATUS: PASSED - View details on https://sonarcloud.io/dashboard?id=trip_ninja_api&pullRequest=1668 INFO: Analysis total time: 1:26.928 s INFO: ------------------------------------------------------------------------ INFO: EXECUTION SUCCESS INFO: ------------------------------------------------------------------------ INFO: Total time: 1:40.449s INFO: Final Memory: 94M/320M INFO: ------------------------------------------------------------------------