🛡️ Security Scan Report

Trivy Vulnerability & Secret Scanner
Service: eizen-face-auth
Branch: features/vulnerabilities_fixes
Build: #79
Date: 2026-02-13 13:14:25

0

Critical

2

High

0

Medium

0

Low

13

Secrets

2

Misconfig

🔴 Vulnerabilities (0)
SeverityCVE IDPackageInstalledFixed InDescription
✅ No vulnerabilities found
🔑 Secrets (13)
TypeFileLineMatch
AWS security-reports/gitleaks-report.json 72 "Match": "********************",...
AWS security-reports/gitleaks-report.json 73 "Secret": "********************",...
AWS security-reports/gitleaks-report.json 114 "Match": "********************",...
AWS security-reports/gitleaks-report.json 115 "Secret": "********************",...
AWS security-reports/gitleaks-report.json 156 "Match": "********************",...
AWS security-reports/gitleaks-report.json 157 "Secret": "********************",...
AWS security-reports/gitleaks-report.json 177 "Match": "********************",...
AWS security-reports/gitleaks-report.json 178 "Secret": "********************",...
AWS security-reports/gitleaks-report.json 240 "Match": "********************",...
AWS security-reports/gitleaks-report.json 241 "Secret": "********************",...
AWS security-reports/gitleaks-report.json 261 "Match": "********************",...
AWS security-reports/gitleaks-report.json 262 "Secret": "********************",...
AWS security-reports/gitleaks-report.json 198 "Match": "AWS_SECRET_ACCESS_KEY=****************...
⚙️ Misconfigurations (2)
SeverityIDCheckFileMessage
HIGH DS-0002 Image user should not be 'root' Dockerfile Specify at least 1 USER command in Dockerfile with non-root user as argument
HIGH DS-0029 'apt-get' missing '--no-install-recommends' Dockerfile '--no-install-recommends' flag is missed: 'apt-get update && apt-get install -y curl libcudn
📄 Raw JSON Report (click to expand)