Info: Possibly incomplete results: error parsing shell code: "[x]" must be followed by =: valgrind_existing.sh:0
Info: Possibly incomplete results: error parsing shell code: invalid parameter name: .github/workflows/ci.yml:187
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/ci.yml:143: update your workflow using https://app.stepsecurity.io/secureworkflow/imazen/imageflow/ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:149: update your workflow using https://app.stepsecurity.io/secureworkflow/imazen/imageflow/ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:165: update your workflow using https://app.stepsecurity.io/secureworkflow/imazen/imageflow/ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:170: update your workflow using https://app.stepsecurity.io/secureworkflow/imazen/imageflow/ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:179: update your workflow using https://app.stepsecurity.io/secureworkflow/imazen/imageflow/ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:247: update your workflow using https://app.stepsecurity.io/secureworkflow/imazen/imageflow/ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:262: update your workflow using https://app.stepsecurity.io/secureworkflow/imazen/imageflow/ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/ci.yml:396: update your workflow using https://app.stepsecurity.io/secureworkflow/imazen/imageflow/ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:431: update your workflow using https://app.stepsecurity.io/secureworkflow/imazen/imageflow/ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:442: update your workflow using https://app.stepsecurity.io/secureworkflow/imazen/imageflow/ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:485: update your workflow using https://app.stepsecurity.io/secureworkflow/imazen/imageflow/ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:497: update your workflow using https://app.stepsecurity.io/secureworkflow/imazen/imageflow/ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:501: update your workflow using https://app.stepsecurity.io/secureworkflow/imazen/imageflow/ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:514: update your workflow using https://app.stepsecurity.io/secureworkflow/imazen/imageflow/ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/ci.yml:541: update your workflow using https://app.stepsecurity.io/secureworkflow/imazen/imageflow/ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/ci.yml:549: update your workflow using https://app.stepsecurity.io/secureworkflow/imazen/imageflow/ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/ci.yml:554: update your workflow using https://app.stepsecurity.io/secureworkflow/imazen/imageflow/ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/pages.yml:27: update your workflow using https://app.stepsecurity.io/secureworkflow/imazen/imageflow/pages.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/pages.yml:29: update your workflow using https://app.stepsecurity.io/secureworkflow/imazen/imageflow/pages.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/pages.yml:38: update your workflow using https://app.stepsecurity.io/secureworkflow/imazen/imageflow/pages.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/pages.yml:50: update your workflow using https://app.stepsecurity.io/secureworkflow/imazen/imageflow/pages.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/spelling.yml:86: update your workflow using https://app.stepsecurity.io/secureworkflow/imazen/imageflow/spelling.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/spelling.yml:102: update your workflow using https://app.stepsecurity.io/secureworkflow/imazen/imageflow/spelling.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/spelling.yml:61: update your workflow using https://app.stepsecurity.io/secureworkflow/imazen/imageflow/spelling.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/update-actions.yml:14: update your workflow using https://app.stepsecurity.io/secureworkflow/imazen/imageflow/update-actions.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/update-actions.yml:20: update your workflow using https://app.stepsecurity.io/secureworkflow/imazen/imageflow/update-actions.yml/main?enable=pin
Warn: containerImage not pinned by hash: docker/imageflow_bench_ubuntu20/Dockerfile:1: pin your Docker image by updating ubuntu:20.04 to ubuntu:20.04@sha256:8feb4d8ca5354def3d8fce243717141ce31e2c428701f6682bd2fafe15388214
Warn: downloadThenRun not pinned by hash: docker/imageflow_bench_ubuntu20/Dockerfile:55-63
Warn: nugetCommand not pinned by hash: ci/pack_nuget/utils.sh:278: pin your dependecies by either enabling central package management (https://learn.microsoft.com/nuget/consume-packages/Central-Package-Management) or using a lockfile (https://learn.microsoft.com/nuget/consume-packages/package-references-in-project-files#locking-dependencies)
Warn: downloadThenRun not pinned by hash: cov.sh:39
Warn: downloadThenRun not pinned by hash: cov.sh:40
Info: 0 out of 9 GitHub-owned GitHubAction dependencies pinned
Info: 0 out of 17 third-party GitHubAction dependencies pinned
Info: 0 out of 1 containerImage dependencies pinned
Info: 0 out of 3 downloadThenRun dependencies pinned
Info: 0 out of 1 nugetCommand dependencies pinned