pod: component-prefetch-pip-on-p0a50bf22dcb266bb36489cffc5ef28d4-pod | init container: prepare 2026/08/18 04:53:14 Entrypoint initialization pod: component-prefetch-pip-on-p0a50bf22dcb266bb36489cffc5ef28d4-pod | init container: place-scripts 2026/08/18 04:53:20 Decoded script /tekton/scripts/script-0-dnhl7 2026/08/18 04:53:20 Decoded script /tekton/scripts/script-1-tg5hw 2026/08/18 04:53:20 Decoded script /tekton/scripts/script-2-dj6lg pod: component-prefetch-pip-on-p0a50bf22dcb266bb36489cffc5ef28d4-pod | init container: working-dir-initializer pod: component-prefetch-pip-on-p0a50bf22dcb266bb36489cffc5ef28d4-pod | container step-build: [2026-08-18T04:53:32,336293632+00:00] Using mounted CA bundle: /mnt/trusted-ca/ca-bundle.crt '/mnt/trusted-ca/ca-bundle.crt' -> '/etc/pki/ca-trust/source/anchors/ca-bundle.crt' [2026-08-18T04:53:32,554805929+00:00] Update CA trust [2026-08-18T04:53:36,453968469+00:00] Prepare system (architecture: x86_64) Effective container policy: { "default": [ { "type": "insecureAcceptAnything" } ], "transports": { "docker-daemon": { "": [ { "type": "insecureAcceptAnything" } ] } } } [2026-08-18T04:53:36,667887065+00:00] Run the build [2026-08-18T04:53:36,671496948+00:00] konflux-build-cli image build -f /workspace/source/source/./Dockerfile -t quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-a421fa0f323cb04a0a6eee0653f82d872445df3e --source source --context . --additional-tags component-prefetch-pip-on-pull-request-m9fb5-build-container --push --push-format docker --secret-dirs src=/additional-secret\,name=does-not-exist\,optional=true --workdir-mount '' --target '' --inherit-labels=true --source-date-epoch '' --rewrite-timestamp=false --squash=false --omit-history=false --image-source https://github.com/redhat-appstudio-qe/pip-sample-repo --image-revision a421fa0f323cb04a0a6eee0653f82d872445df3e --quay-image-expires-after 5d --build-args-file '' --annotations-file '' --legacy-build-timestamp '' --add-legacy-labels --include-legacy-buildinfo-path=true --skip-injections=false --skip-unused-stages=true --hermetic=true --image-pull-proxy '' --image-pull-noproxy '' --yum-repos-d-sources --yum-repos-d-target /etc/yum.repos.d --prefetch-dir /workspace/source/cachi2 --prefetch-dir-copy /workspace/source/prefetch-copy --prefetch-env-mount /cachi2/cachi2.env --prefetch-output-mount /cachi2/output --security-opts unmask=/proc/interrupts --sbom-format spdx --syft-select-catalogers '' --syft-image-output /shared/sbom-image.json --containerfile-json-output /shared/parsed_dockerfile.json --resolved-base-images-output /shared/base_images_digests --no-cache --ulimits nofile=4096:4096 --src-tls-verify=true --dest-tls-verify=true --allow-cross-platform-images=false --build-args --envs --labels --annotations time="2026-08-18T04:53:36Z" level=info msg="[param] containerfile: /workspace/source/source/./Dockerfile" time="2026-08-18T04:53:36Z" level=info msg="[param] context: ." time="2026-08-18T04:53:36Z" level=info msg="[param] source: source" time="2026-08-18T04:53:36Z" level=info msg="[param] output-ref: quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-a421fa0f323cb04a0a6eee0653f82d872445df3e" time="2026-08-18T04:53:36Z" level=info msg="[param] additional-tags: [component-prefetch-pip-on-pull-request-m9fb5-build-container]" time="2026-08-18T04:53:36Z" level=info msg="[param] push: true" time="2026-08-18T04:53:36Z" level=info msg="[param] push-format: docker" time="2026-08-18T04:53:36Z" level=info msg="[param] secret-dirs: [src=/additional-secret,name=does-not-exist,optional=true]" time="2026-08-18T04:53:36Z" level=info msg="[param] image-source: https://github.com/redhat-appstudio-qe/pip-sample-repo" time="2026-08-18T04:53:36Z" level=info msg="[param] image-revision: a421fa0f323cb04a0a6eee0653f82d872445df3e" time="2026-08-18T04:53:36Z" level=info msg="[param] quay-image-expires-after: 5d" time="2026-08-18T04:53:36Z" level=info msg="[param] add-legacy-labels: true" time="2026-08-18T04:53:36Z" level=info msg="[param] containerfile-json-output: /shared/parsed_dockerfile.json" time="2026-08-18T04:53:36Z" level=info msg="[param] include-legacy-buildinfo-path: true" time="2026-08-18T04:53:36Z" level=info msg="[param] hermetic: true" time="2026-08-18T04:53:36Z" level=info msg="[param] yum-repos-d-target: /etc/yum.repos.d" time="2026-08-18T04:53:36Z" level=info msg="[param] prefetch-dir: /workspace/source/cachi2" time="2026-08-18T04:53:36Z" level=info msg="[param] prefetch-dir-copy: /workspace/source/prefetch-copy" time="2026-08-18T04:53:36Z" level=info msg="[param] prefetch-output-mount: /cachi2/output" time="2026-08-18T04:53:36Z" level=info msg="[param] prefetch-env-mount: /cachi2/cachi2.env" time="2026-08-18T04:53:36Z" level=info msg="[param] resolved-base-images-output: /shared/base_images_digests" time="2026-08-18T04:53:36Z" level=info msg="[param] rhsm-mount-ca-certs: auto" time="2026-08-18T04:53:36Z" level=info msg="[param] no-cache: true" time="2026-08-18T04:53:36Z" level=info msg="[param] security-opts: [unmask=/proc/interrupts]" time="2026-08-18T04:53:36Z" level=info msg="[param] ulimits: [nofile=4096:4096]" time="2026-08-18T04:53:36Z" level=info msg="[param] syft-image-output: /shared/sbom-image.json" time="2026-08-18T04:53:36Z" level=info msg="[param] sbom-format: spdx" time="2026-08-18T04:53:36Z" level=info msg="Setting up prefetch integration..." time="2026-08-18T04:53:36Z" level=info msg="Set up 2 prefetch env var(s) as buildah secret env mounts" time="2026-08-18T04:53:39Z" level=info msg="buildah [stderr] Trying to pull registry.access.redhat.com/ubi9/python-39@sha256:01fe0c6b483a3c425a1b851569b4f6445244c95e16c195a4f52c6e860e82891b..." time="2026-08-18T04:53:40Z" level=info msg="buildah [stderr] Getting image source signatures" time="2026-08-18T04:53:41Z" level=info msg="buildah [stderr] Checking if image destination supports signatures" time="2026-08-18T04:53:41Z" level=info msg="buildah [stderr] Copying blob sha256:fb76de9d1083d62946d5e43034624205b358b77720539b7ee130cdeb60500101" time="2026-08-18T04:53:41Z" level=info msg="buildah [stderr] Copying blob sha256:fc07e4fdbabe54e68d395dead6e5f6c44318493d34abba496630ed6bfd19931f" time="2026-08-18T04:53:41Z" level=info msg="buildah [stderr] Copying blob sha256:94a4c2c1356a9e01d6c107308546c37e6dcb7330b4682b70a18750bffddb5e0d" time="2026-08-18T04:53:41Z" level=info msg="buildah [stderr] Copying blob sha256:25ead466f550b0bc693a7ce9debd7c18fa65a7d6986be207da566a72f0923f10" time="2026-08-18T04:53:57Z" level=info msg="buildah [stderr] Copying config sha256:42ec795691e3fa0dc53e1d5d8a29a6db51bab96be3428011d5e95746759eb0fc" time="2026-08-18T04:53:58Z" level=info msg="buildah [stderr] Writing manifest to image destination" time="2026-08-18T04:53:58Z" level=info msg="buildah [stderr] Storing signatures" time="2026-08-18T04:53:58Z" level=info msg="buildah [stdout] 42ec795691e3fa0dc53e1d5d8a29a6db51bab96be3428011d5e95746759eb0fc" time="2026-08-18T04:53:58Z" level=info msg="Injecting buildinfo: added labels.json" time="2026-08-18T04:53:58Z" level=info msg="Injecting buildinfo: added content-sets.json" time="2026-08-18T04:53:58Z" level=info msg="Building container image..." time="2026-08-18T04:53:59Z" level=info msg="buildah [stdout] STEP 1/9: FROM registry.access.redhat.com/ubi9/python-39@sha256:01fe0c6b483a3c425a1b851569b4f6445244c95e16c195a4f52c6e860e82891b" time="2026-08-18T04:53:59Z" level=info msg="buildah [stdout] STEP 2/9: RUN if curl -IsS www.google.com; then echo \"Has network access!\"; exit 1; fi" time="2026-08-18T04:53:59Z" level=info msg="buildah [stderr] curl: (6) Could not resolve host: www.google.com" time="2026-08-18T04:53:59Z" level=info msg="buildah [stdout] STEP 3/9: WORKDIR /opt/test_package_cachi2" time="2026-08-18T04:54:00Z" level=info msg="buildah [stdout] STEP 4/9: COPY . ." time="2026-08-18T04:54:00Z" level=info msg="buildah [stdout] STEP 5/9: RUN pip install -r requirements.txt" time="2026-08-18T04:54:02Z" level=info msg="buildah [stdout] Looking in links: /cachi2/output/deps/pip" time="2026-08-18T04:54:02Z" level=info msg="buildah [stdout] Processing /cachi2/output/deps/pip/dockerfile-parse-36e4469abb0d96b0e3cd656284d5016e8a674cd57b8ebe5af64786fe63b8184d.tar.gz" time="2026-08-18T04:54:02Z" level=info msg="buildah [stdout] Preparing metadata (setup.py): started" time="2026-08-18T04:54:02Z" level=info msg="buildah [stdout] Preparing metadata (setup.py): finished with status 'done'" time="2026-08-18T04:54:02Z" level=info msg="buildah [stdout] Processing /cachi2/output/deps/pip/certifi-2022.12.7.tar.gz" time="2026-08-18T04:54:02Z" level=info msg="buildah [stdout] Preparing metadata (setup.py): started" time="2026-08-18T04:54:02Z" level=info msg="buildah [stdout] Preparing metadata (setup.py): finished with status 'done'" time="2026-08-18T04:54:02Z" level=info msg="buildah [stdout] Processing /cachi2/output/deps/pip/charset-normalizer-3.0.1.tar.gz" time="2026-08-18T04:54:02Z" level=info msg="buildah [stdout] Preparing metadata (setup.py): started" time="2026-08-18T04:54:02Z" level=info msg="buildah [stdout] Preparing metadata (setup.py): finished with status 'done'" time="2026-08-18T04:54:02Z" level=info msg="buildah [stdout] Processing /cachi2/output/deps/pip/idna-3.4.tar.gz" time="2026-08-18T04:54:02Z" level=info msg="buildah [stdout] Installing build dependencies: started" time="2026-08-18T04:54:03Z" level=info msg="buildah [stdout] Installing build dependencies: finished with status 'done'" time="2026-08-18T04:54:03Z" level=info msg="buildah [stdout] Getting requirements to build wheel: started" time="2026-08-18T04:54:03Z" level=info msg="buildah [stdout] Getting requirements to build wheel: finished with status 'done'" time="2026-08-18T04:54:03Z" level=info msg="buildah [stdout] Preparing metadata (pyproject.toml): started" time="2026-08-18T04:54:03Z" level=info msg="buildah [stdout] Preparing metadata (pyproject.toml): finished with status 'done'" time="2026-08-18T04:54:03Z" level=info msg="buildah [stdout] Processing /cachi2/output/deps/pip/requests-2.28.2.tar.gz" time="2026-08-18T04:54:03Z" level=info msg="buildah [stdout] Installing build dependencies: started" time="2026-08-18T04:54:07Z" level=info msg="buildah [stdout] Installing build dependencies: finished with status 'done'" time="2026-08-18T04:54:07Z" level=info msg="buildah [stdout] Getting requirements to build wheel: started" time="2026-08-18T04:54:08Z" level=info msg="buildah [stdout] Getting requirements to build wheel: finished with status 'done'" time="2026-08-18T04:54:08Z" level=info msg="buildah [stdout] Preparing metadata (pyproject.toml): started" time="2026-08-18T04:54:08Z" level=info msg="buildah [stdout] Preparing metadata (pyproject.toml): finished with status 'done'" time="2026-08-18T04:54:08Z" level=info msg="buildah [stdout] Processing /cachi2/output/deps/pip/urllib3-1.26.14.tar.gz" time="2026-08-18T04:54:08Z" level=info msg="buildah [stdout] Preparing metadata (setup.py): started" time="2026-08-18T04:54:08Z" level=info msg="buildah [stdout] Preparing metadata (setup.py): finished with status 'done'" time="2026-08-18T04:54:08Z" level=info msg="buildah [stdout] Using legacy 'setup.py install' for certifi, since package 'wheel' is not installed." time="2026-08-18T04:54:08Z" level=info msg="buildah [stdout] Using legacy 'setup.py install' for charset-normalizer, since package 'wheel' is not installed." time="2026-08-18T04:54:08Z" level=info msg="buildah [stdout] Using legacy 'setup.py install' for urllib3, since package 'wheel' is not installed." time="2026-08-18T04:54:08Z" level=info msg="buildah [stdout] Using legacy 'setup.py install' for dockerfile-parse, since package 'wheel' is not installed." time="2026-08-18T04:54:08Z" level=info msg="buildah [stdout] Building wheels for collected packages: idna, requests" time="2026-08-18T04:54:08Z" level=info msg="buildah [stdout] Building wheel for idna (pyproject.toml): started" time="2026-08-18T04:54:08Z" level=info msg="buildah [stdout] Building wheel for idna (pyproject.toml): finished with status 'done'" time="2026-08-18T04:54:09Z" level=info msg="buildah [stdout] Created wheel for idna: filename=idna-3.4-py3-none-any.whl size=61539 sha256=6414764f630a0f1f4d776d8fad94ed8d9f0baef5320c8b20ecd938ae96751e19" time="2026-08-18T04:54:09Z" level=info msg="buildah [stdout] Stored in directory: /tmp/pip-ephem-wheel-cache-hajy3lct/wheels/47/63/00/cf4278b3805c252509cddab7c8757262b6a8084a5e91282cca" time="2026-08-18T04:54:09Z" level=info msg="buildah [stdout] Building wheel for requests (pyproject.toml): started" time="2026-08-18T04:54:09Z" level=info msg="buildah [stdout] Building wheel for requests (pyproject.toml): finished with status 'done'" time="2026-08-18T04:54:09Z" level=info msg="buildah [stdout] Created wheel for requests: filename=requests-2.28.2-py3-none-any.whl size=62821 sha256=8a3773f027f4af9b7a1bab82b3a5ef66095c2e4c691832ba0588d1c2a6efa504" time="2026-08-18T04:54:09Z" level=info msg="buildah [stdout] Stored in directory: /tmp/pip-ephem-wheel-cache-hajy3lct/wheels/f9/a7/28/94cd4e171a4b97baa549684beaf629e13f642c7c281860690e" time="2026-08-18T04:54:09Z" level=info msg="buildah [stdout] Successfully built idna requests" time="2026-08-18T04:54:09Z" level=info msg="buildah [stdout] Installing collected packages: urllib3, idna, charset-normalizer, certifi, requests, dockerfile-parse" time="2026-08-18T04:54:09Z" level=info msg="buildah [stdout] Running setup.py install for urllib3: started" time="2026-08-18T04:54:09Z" level=info msg="buildah [stdout] Running setup.py install for urllib3: finished with status 'done'" time="2026-08-18T04:54:09Z" level=info msg="buildah [stdout] Running setup.py install for charset-normalizer: started" time="2026-08-18T04:54:09Z" level=info msg="buildah [stdout] Running setup.py install for charset-normalizer: finished with status 'done'" time="2026-08-18T04:54:09Z" level=info msg="buildah [stdout] Running setup.py install for certifi: started" time="2026-08-18T04:54:10Z" level=info msg="buildah [stdout] Running setup.py install for certifi: finished with status 'done'" time="2026-08-18T04:54:10Z" level=info msg="buildah [stdout] Running setup.py install for dockerfile-parse: started" time="2026-08-18T04:54:10Z" level=info msg="buildah [stdout] Running setup.py install for dockerfile-parse: finished with status 'done'" time="2026-08-18T04:54:10Z" level=info msg="buildah [stdout] Successfully installed certifi-2022.12.7 charset-normalizer-3.0.1 dockerfile-parse-2.0.0 idna-3.4 requests-2.28.2 urllib3-1.26.14" time="2026-08-18T04:54:10Z" level=info msg="buildah [stdout] STEP 6/9: CMD [\"python\", \"/opt/test_package_cachi2/src/test_package_cachi2/main.py\"]" time="2026-08-18T04:54:10Z" level=info msg="buildah [stdout] STEP 7/9: COPY --from=.konflux-buildinfo . /usr/share/buildinfo/" time="2026-08-18T04:54:11Z" level=info msg="buildah [stdout] STEP 8/9: COPY --from=.konflux-buildinfo . /root/buildinfo/" time="2026-08-18T04:54:11Z" level=info msg="buildah [stdout] STEP 9/9: LABEL \"org.opencontainers.image.created\"=\"2026-08-18T04:53:36Z\" \"org.opencontainers.image.source\"=\"https://github.com/redhat-appstudio-qe/pip-sample-repo\" \"org.opencontainers.image.revision\"=\"a421fa0f323cb04a0a6eee0653f82d872445df3e\" \"quay.expires-after\"=\"5d\" \"build-date\"=\"2026-08-18T04:53:36Z\" \"architecture\"=\"x86_64\" \"vcs-url\"=\"https://github.com/redhat-appstudio-qe/pip-sample-repo\" \"vcs-ref\"=\"a421fa0f323cb04a0a6eee0653f82d872445df3e\" \"vcs-type\"=\"git\"" time="2026-08-18T04:54:11Z" level=info msg="buildah [stdout] COMMIT quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-a421fa0f323cb04a0a6eee0653f82d872445df3e" time="2026-08-18T04:54:13Z" level=info msg="buildah [stdout] --> df9c7df762a8" time="2026-08-18T04:54:13Z" level=info msg="buildah [stdout] Successfully tagged quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:component-prefetch-pip-on-pull-request-m9fb5-build-container" time="2026-08-18T04:54:13Z" level=info msg="buildah [stdout] Successfully tagged quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-a421fa0f323cb04a0a6eee0653f82d872445df3e" time="2026-08-18T04:54:13Z" level=info msg="buildah [stdout] df9c7df762a82cd91eca0f376c76c18255097a266060cc50f32e59fe271eec1b" time="2026-08-18T04:54:15Z" level=info msg="Build completed successfully" time="2026-08-18T04:54:15Z" level=info msg="Mounting built image filesystem for syft scan..." time="2026-08-18T04:54:15Z" level=info msg="Running syft scan on built image filesystem..." time="2026-08-18T04:54:19Z" level=info msg="Image SBOM written to /shared/sbom-image.json" time="2026-08-18T04:54:19Z" level=info msg="Pushing image to registry: quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-a421fa0f323cb04a0a6eee0653f82d872445df3e" time="2026-08-18T04:54:19Z" level=info msg="buildah [stderr] Getting image source signatures" time="2026-08-18T04:54:19Z" level=info msg="buildah [stderr] Copying blob sha256:a57ccb00af47537724bd300eba79de28e25001874ba7a167cc9ac491a50eceee" time="2026-08-18T04:54:19Z" level=info msg="buildah [stderr] Copying blob sha256:a554e7cda9270a1a3c736f3e16e88f5d9d6798b46f48a3ac78c343b83d6e2dbc" time="2026-08-18T04:54:19Z" level=info msg="buildah [stderr] Copying blob sha256:5c6dc3016f28a686eadd8992845c9ff4f9949681d57e98e896e407689cb9b51e" time="2026-08-18T04:54:19Z" level=info msg="buildah [stderr] Copying blob sha256:f6236aa24d3908b136b70ac9d9fb4656d46c35b664852b5d6b0836ddb04bf374" time="2026-08-18T04:54:19Z" level=info msg="buildah [stderr] Copying blob sha256:17e4bf9b37cb91b309570030506a32773e48e3f055d915eb92adad9dabaeb38e" time="2026-08-18T04:54:29Z" level=info msg="buildah [stderr] Copying config sha256:df9c7df762a82cd91eca0f376c76c18255097a266060cc50f32e59fe271eec1b" time="2026-08-18T04:54:32Z" level=info msg="buildah [stderr] Writing manifest to image destination" time="2026-08-18T04:54:32Z" level=info msg="Push completed successfully" time="2026-08-18T04:54:32Z" level=info msg="Image digest: sha256:a4f38c45758095f26b5c21e54b043a454078ecfda53d90909f2f6c98324cff87" time="2026-08-18T04:54:32Z" level=info msg="Pushing additional tag: component-prefetch-pip-on-pull-request-m9fb5-build-container" time="2026-08-18T04:54:32Z" level=info msg="buildah [stderr] Getting image source signatures" time="2026-08-18T04:54:32Z" level=info msg="buildah [stderr] Copying blob sha256:17e4bf9b37cb91b309570030506a32773e48e3f055d915eb92adad9dabaeb38e" time="2026-08-18T04:54:32Z" level=info msg="buildah [stderr] Copying blob sha256:a57ccb00af47537724bd300eba79de28e25001874ba7a167cc9ac491a50eceee" time="2026-08-18T04:54:32Z" level=info msg="buildah [stderr] Copying blob sha256:f6236aa24d3908b136b70ac9d9fb4656d46c35b664852b5d6b0836ddb04bf374" time="2026-08-18T04:54:32Z" level=info msg="buildah [stderr] Copying blob sha256:5c6dc3016f28a686eadd8992845c9ff4f9949681d57e98e896e407689cb9b51e" time="2026-08-18T04:54:32Z" level=info msg="buildah [stderr] Copying blob sha256:a554e7cda9270a1a3c736f3e16e88f5d9d6798b46f48a3ac78c343b83d6e2dbc" time="2026-08-18T04:54:34Z" level=info msg="buildah [stderr] Copying config sha256:df9c7df762a82cd91eca0f376c76c18255097a266060cc50f32e59fe271eec1b" time="2026-08-18T04:54:34Z" level=info msg="buildah [stderr] Writing manifest to image destination" time="2026-08-18T04:54:34Z" level=info msg="Pushed additional tag successfully: component-prefetch-pip-on-pull-request-m9fb5-build-container" time="2026-08-18T04:54:34Z" level=info msg="Writing parsed Containerfile to: /shared/parsed_dockerfile.json" time="2026-08-18T04:54:34Z" level=info msg="Containerfile JSON written successfully" time="2026-08-18T04:54:34Z" level=info msg="Writing resolved base images to: /shared/base_images_digests" time="2026-08-18T04:54:34Z" level=info msg="Resolved base images written successfully" {"image_url":"quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-a421fa0f323cb04a0a6eee0653f82d872445df3e","digest":"sha256:a4f38c45758095f26b5c21e54b043a454078ecfda53d90909f2f6c98324cff87"} [2026-08-18T04:54:34,321016271+00:00] Add metadata Making copy of sbom-prefetch.json [2026-08-18T04:54:34,323543271+00:00] End build pod: component-prefetch-pip-on-p0a50bf22dcb266bb36489cffc5ef28d4-pod | container step-prepare-sboms: [2026-08-18T04:54:34,994363970+00:00] Prepare SBOM [2026-08-18T04:54:34,999086524+00:00] Generate SBOM with mobster Skipping SBOM validation 2026-08-18 04:54:55,000 [INFO] mobster.log: Logging level set to 20 2026-08-18 04:54:56,505 [INFO] mobster.cmd.generate.oci_image.hermeto_sbom_filter: Filtering SPDX SBOM by architecture: amd64 2026-08-18 04:54:56,506 [INFO] mobster.cmd.generate.oci_image.hermeto_sbom_filter: Filtered 0 packages out of 11 (11 remaining) 2026-08-18 04:54:59,796 [INFO] mobster.main: Exiting with code 0. [2026-08-18T04:55:00,998332373+00:00] End prepare-sboms pod: component-prefetch-pip-on-p0a50bf22dcb266bb36489cffc5ef28d4-pod | container step-upload-sbom: INFO: Using mounted CA bundle: /mnt/trusted-ca/ca-bundle.crt '/mnt/trusted-ca/ca-bundle.crt' -> '/etc/pki/ca-trust/source/anchors/ca-bundle.crt' Using token for quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip [2026-08-18T04:55:37,075368874+00:00] Upload SBOM Pushing sbom to registry [retry] executing: cosign attach sbom --sbom sbom.json --type spdx quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-a421fa0f323cb04a0a6eee0653f82d872445df3e@sha256:a4f38c45758095f26b5c21e54b043a454078ecfda53d90909f2f6c98324cff87 WARNING: SBOM attachments are deprecated and support will be removed in a Cosign release soon after 2024-02-22 (see https://github.com/sigstore/cosign/issues/2755). Instead, please use SBOM attestations. WARNING: Attaching SBOMs this way does not sign them. To sign them, use 'cosign attest --predicate sbom.json --key '. Uploading SBOM file for [quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip@sha256:a4f38c45758095f26b5c21e54b043a454078ecfda53d90909f2f6c98324cff87] to [quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:sha256-a4f38c45758095f26b5c21e54b043a454078ecfda53d90909f2f6c98324cff87.sbom] with mediaType [text/spdx+json]. quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip@sha256:e378c395d4605fe466ffb9c6b1d004d57d5f913aea54a05758cd15a40eca5ee5 [2026-08-18T04:55:40,175709922+00:00] Handle keyless signing if enabled [retry] executing: kubectl get configmap cluster-config -n konflux-info -o json Keyless signing is disabled (none of rekorInternalUrl, fulcioInternalUrl, defaultOIDCIssuer, tufInternalUrl are configured in the konflux-info/cluster-config configmap) [2026-08-18T04:55:41,075888148+00:00] End upload-sbom pod: component-prefetch-pip-on-p21b0f20ef3b7393174fdab04078814f0-pod | init container: prepare 2026/08/18 04:56:26 Entrypoint initialization pod: component-prefetch-pip-on-p21b0f20ef3b7393174fdab04078814f0-pod | init container: place-scripts 2026/08/18 04:56:31 Decoded script /tekton/scripts/script-0-7bxxd 2026/08/18 04:56:31 Decoded script /tekton/scripts/script-1-dj24r pod: component-prefetch-pip-on-p21b0f20ef3b7393174fdab04078814f0-pod | init container: working-dir-initializer pod: component-prefetch-pip-on-p21b0f20ef3b7393174fdab04078814f0-pod | container step-sast-shell-check: + source /utils.sh ++ OPM_RENDER_CACHE=/tmp/konflux-test-opm-cache ++ DEFAULT_INDEX_IMAGE=registry.redhat.io/redhat/redhat-operator-index INFO: The PROJECT_NAME used is: component-prefetch-pip INFO: Using mounted CA bundle: /mnt/trusted-ca/ca-bundle.crt + trap 'handle_error /tekton/results/TEST_OUTPUT' EXIT + [[ -z '' ]] + PROJECT_NAME=component-prefetch-pip + echo 'INFO: The PROJECT_NAME used is: component-prefetch-pip' + ca_bundle=/mnt/trusted-ca/ca-bundle.crt + '[' -f /mnt/trusted-ca/ca-bundle.crt ']' + echo 'INFO: Using mounted CA bundle: /mnt/trusted-ca/ca-bundle.crt' + cp -vf /mnt/trusted-ca/ca-bundle.crt /etc/pki/ca-trust/source/anchors '/mnt/trusted-ca/ca-bundle.crt' -> '/etc/pki/ca-trust/source/anchors/ca-bundle.crt' + update-ca-trust ++ rpm -q --queryformat '%{NAME}-%{VERSION}-%{RELEASE}\n' ShellCheck + PACKAGE_VERSION=ShellCheck-0.10.0-3.el9 + OUTPUT_FILE=shellcheck-results.json + SOURCE_CODE_DIR=/workspace/workspace/source + declare -a ALL_TARGETS + IFS=, + read -ra TARGET_ARRAY + for d in "${TARGET_ARRAY[@]}" + potential_path=/workspace/workspace/source/. ++ realpath -m /workspace/workspace/source/. + resolved_path=/workspace/workspace/source + [[ /workspace/workspace/source == \/\w\o\r\k\s\p\a\c\e\/\w\o\r\k\s\p\a\c\e\/\s\o\u\r\c\e* ]] + ALL_TARGETS+=("$resolved_path") + '[' -z '' ']' + '[' -r /sys/fs/cgroup/cpu.max ']' + read -r quota period + '[' 800000 '!=' max ']' + '[' -n 100000 ']' + '[' 100000 -gt 0 ']' + export SC_JOBS=8 + SC_JOBS=8 INFO: Setting SC_JOBS=8 based on cgroups v2 max for run-shellcheck.sh + echo 'INFO: Setting SC_JOBS=8 based on cgroups v2 max for run-shellcheck.sh' + [[ true == \t\r\u\e ]] + export SC_SKIP_JINJA=1 + SC_SKIP_JINJA=1 + /usr/share/csmock/scripts/run-shellcheck.sh /workspace/workspace/source Looking for shell scripts................ done + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/applypatch-msg.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/commit-msg.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/post-update.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/prepare-commit-msg.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/pre-applypatch.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/pre-commit.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/pre-merge-commit.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/pre-push.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/pre-rebase.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/pre-receive.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/push-to-checkout.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/sendemail-validate.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/update.sample + CSGREP_OPTS=(--mode=json --strip-path-prefix="$SOURCE_CODE_DIR"/ --remove-duplicates --embed-context=3 --set-scan-prop="ShellCheck:${PACKAGE_VERSION}") + [[ true == \t\r\u\e ]] + CSGREP_EVENT_FILTER='\[SC(1020|1035|1054|1066|1068|1073|1080|1083|1099|1113|1115|1127|1128|1143|2043|2050|' + CSGREP_EVENT_FILTER+='2055|2057|2066|2069|2071|2077|2078|2091|2092|2157|2171|2193|2194|2195|2215|2216|' + CSGREP_EVENT_FILTER+='2218|2224|2225|2242|2256|2258|2261)\]$' + CSGREP_OPTS+=(--event="$CSGREP_EVENT_FILTER") + csgrep --mode=json --strip-path-prefix=/workspace/workspace/source/ --remove-duplicates --embed-context=3 --set-scan-prop=ShellCheck:ShellCheck-0.10.0-3.el9 '--event=\[SC(1020|1035|1054|1066|1068|1073|1080|1083|1099|1113|1115|1127|1128|1143|2043|2050|2055|2057|2066|2069|2071|2077|2078|2091|2092|2157|2171|2193|2194|2195|2215|2216|2218|2224|2225|2242|2256|2258|2261)\]$' ./shellcheck-results/empty.json ./shellcheck-results/sc-102.json ./shellcheck-results/sc-106.json ./shellcheck-results/sc-107.json ./shellcheck-results/sc-110.json ./shellcheck-results/sc-113.json ./shellcheck-results/sc-116.json ./shellcheck-results/sc-135.json ./shellcheck-results/sc-147.json ./shellcheck-results/sc-149.json ./shellcheck-results/sc-151.json + [[ SITE_DEFAULT == \S\I\T\E\_\D\E\F\A\U\L\T ]] + KFP_GIT_URL=https://gitlab.cee.redhat.com/osh/known-false-positives.git + PROBE_URL=https://gitlab.cee.redhat.com/osh/known-false-positives + KFP_DIR=known-false-positives + KFP_CLONED=0 + mkdir known-false-positives + [[ -n https://gitlab.cee.redhat.com/osh/known-false-positives.git ]] + echo -n 'INFO: Probing https://gitlab.cee.redhat.com/osh/known-false-positives... ' + curl --fail --head --max-time 60 --no-progress-meter https://gitlab.cee.redhat.com/osh/known-false-positives ++ head -1 curl: (6) Could not resolve host: gitlab.cee.redhat.com + [[ 0 -eq 0 ]] + echo 'WARN: Failed to clone known-false-positives at https://gitlab.cee.redhat.com/osh/known-false-positives.git, scan results will not be filtered' + echo 'ShellCheck results have been saved to shellcheck-results.json' + csgrep --mode=evtstat shellcheck-results.json INFO: Probing https://gitlab.cee.redhat.com/osh/known-false-positives... WARN: Failed to clone known-false-positives at https://gitlab.cee.redhat.com/osh/known-false-positives.git, scan results will not be filtered ShellCheck results have been saved to shellcheck-results.json + csgrep --mode=sarif shellcheck-results.json + TEST_OUTPUT= + parse_test_output sast-shell-check sarif shellcheck-results.sarif + TEST_NAME=sast-shell-check + TEST_RESULT_FORMAT=sarif + TEST_RESULT_FILE=shellcheck-results.sarif + '[' -z sast-shell-check ']' + '[' -z sarif ']' + '[' -z shellcheck-results.sarif ']' + '[' '!' -f shellcheck-results.sarif ']' + '[' sarif = sarif ']' +++ jq -rce '(if (.runs[].results | length > 0) then "FAILURE" else "SUCCESS" end)' shellcheck-results.sarif +++ jq -rce '(.runs[].results | length)' shellcheck-results.sarif ++ make_result_json -r SUCCESS -f 0 ++ local RESULT= ++ local SUCCESSES=0 ++ local FAILURES=0 ++ local WARNINGS=0 ++ local 'NOTE=For details, check Tekton task log.' ++ local NAMESPACE=default ++ local OUTPUT ++ local OPTIND opt ++ getopts :r:s:f:w:t:n: opt ++ case "${opt}" in ++ RESULT=SUCCESS ++ getopts :r:s:f:w:t:n: opt ++ case "${opt}" in ++ FAILURES=0 ++ getopts :r:s:f:w:t:n: opt ++ shift 4 ++ '[' -z SUCCESS ']' ++ case "${RESULT}" in ++++ date -u --iso-8601=seconds +++ jq -rce --arg date 2026-08-18T04:57:13+00:00 --arg result SUCCESS --arg note 'For details, check Tekton task log.' --arg namespace default --arg successes 0 --arg failures 0 --arg warnings 0 --null-input '{ result: $result, timestamp: $date, note: $note, namespace: $namespace, successes: $successes|tonumber, failures: $failures|tonumber, warnings: $warnings|tonumber }' ++ OUTPUT='{"result":"SUCCESS","timestamp":"2026-08-18T04:57:13+00:00","note":"For details, check Tekton task log.","namespace":"default","successes":0,"failures":0,"warnings":0}' ++ echo '{"result":"SUCCESS","timestamp":"2026-08-18T04:57:13+00:00","note":"For details, check Tekton task log.","namespace":"default","successes":0,"failures":0,"warnings":0}' + TEST_OUTPUT='{"result":"SUCCESS","timestamp":"2026-08-18T04:57:13+00:00","note":"For details, check Tekton task log.","namespace":"default","successes":0,"failures":0,"warnings":0}' ++ echo '{"result":"SUCCESS","timestamp":"2026-08-18T04:57:13+00:00","note":"For details, check Tekton task log.","namespace":"default","successes":0,"failures":0,"warnings":0}' ++ jq .failures + '[' 0 -gt 0 ']' + echo '{"result":"SUCCESS","timestamp":"2026-08-18T04:57:13+00:00","note":"For details, check Tekton task log.","namespace":"default","successes":0,"failures":0,"warnings":0}' + tee /tekton/results/TEST_OUTPUT + handle_error /tekton/results/TEST_OUTPUT + exit_code=0 + '[' 0 -ne 0 ']' + exit 0 {"result":"SUCCESS","timestamp":"2026-08-18T04:57:13+00:00","note":"For details, check Tekton task log.","namespace":"default","successes":0,"failures":0,"warnings":0} pod: component-prefetch-pip-on-p21b0f20ef3b7393174fdab04078814f0-pod | container step-upload: Selecting auth Using token for quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip Attaching to quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-b034c3f13cdf2a5d1c29cf71e72654df35d7092c Executing: oras attach --no-tty --registry-config /home/oras/auth.json --artifact-type application/sarif+json quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-b034c3f13cdf2a5d1c29cf71e72654df35d7092c@sha256:c1660947fdedaf7d9f6945d8919aaa84952ad02667f0b2bfb57ad942ac928351 shellcheck-results.sarif:application/sarif+json Preparing shellcheck-results.sarif Exists 44136fa355b3 application/vnd.oci.empty.v1+json Exists 74c89a6df4ae shellcheck-results.sarif Uploading 8471ffaa0409 application/vnd.oci.image.manifest.v1+json Uploaded 8471ffaa0409 application/vnd.oci.image.manifest.v1+json Attached to [registry] quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-b034c3f13cdf2a5d1c29cf71e72654df35d7092c@sha256:c1660947fdedaf7d9f6945d8919aaa84952ad02667f0b2bfb57ad942ac928351 Digest: sha256:8471ffaa0409cd41f120d34fb4375ff568b168a27659fc4e486e602bc6d49920 No excluded-findings.json exists. Skipping upload. pod: component-prefetch-pip-on-p348de00e9c213f2756d4120f83d6f4e3-pod | init container: prepare 2026/08/18 04:56:23 Entrypoint initialization pod: component-prefetch-pip-on-p348de00e9c213f2756d4120f83d6f4e3-pod | init container: place-scripts 2026/08/18 04:56:28 Decoded script /tekton/scripts/script-0-kwhv2 2026/08/18 04:56:28 Decoded script /tekton/scripts/script-1-qg2md pod: component-prefetch-pip-on-p348de00e9c213f2756d4120f83d6f4e3-pod | init container: working-dir-initializer pod: component-prefetch-pip-on-p348de00e9c213f2756d4120f83d6f4e3-pod | container step-sast-snyk-check: INFO: The PROJECT_NAME used is: component-prefetch-pip INFO: Using mounted CA bundle: /mnt/trusted-ca/ca-bundle.crt '/mnt/trusted-ca/ca-bundle.crt' -> '/etc/pki/ca-trust/source/anchors/ca-bundle.crt' {"result":"SKIPPED","timestamp":"2026-08-18T04:57:12+00:00","note":"Task sast-snyk-check skipped: If you wish to use the Snyk code SAST task, please create a secret name snyk-secret with the key 'snyk_token' containing the Snyk token by following the steps given [here](https://konflux-ci.dev/docs/testing/build/snyk/)","namespace":"default","successes":0,"failures":0,"warnings":0} pod: component-prefetch-pip-on-p348de00e9c213f2756d4120f83d6f4e3-pod | container step-upload: No sast_snyk_check_out.sarif exists. Skipping upload. No excluded-findings.json exists. Skipping upload. pod: component-prefetch-pip-on-p3e50c8b8d8685336bdbee0d50c4ad299-pod | init container: prepare 2026/08/18 04:56:20 Entrypoint initialization pod: component-prefetch-pip-on-p3e50c8b8d8685336bdbee0d50c4ad299-pod | init container: place-scripts 2026/08/18 04:56:25 Decoded script /tekton/scripts/script-0-kqbhs 2026/08/18 04:56:25 Decoded script /tekton/scripts/script-1-wdtl9 pod: component-prefetch-pip-on-p3e50c8b8d8685336bdbee0d50c4ad299-pod | init container: working-dir-initializer pod: component-prefetch-pip-on-p3e50c8b8d8685336bdbee0d50c4ad299-pod | container step-sast-snyk-check: INFO: The PROJECT_NAME used is: component-prefetch-pip INFO: Using mounted CA bundle: /mnt/trusted-ca/ca-bundle.crt '/mnt/trusted-ca/ca-bundle.crt' -> '/etc/pki/ca-trust/source/anchors/ca-bundle.crt' {"result":"SKIPPED","timestamp":"2026-08-18T04:57:00+00:00","note":"Task sast-snyk-check skipped: If you wish to use the Snyk code SAST task, please create a secret name snyk-secret with the key 'snyk_token' containing the Snyk token by following the steps given [here](https://konflux-ci.dev/docs/testing/build/snyk/)","namespace":"default","successes":0,"failures":0,"warnings":0} pod: component-prefetch-pip-on-p3e50c8b8d8685336bdbee0d50c4ad299-pod | container step-upload: No sast_snyk_check_out.sarif exists. Skipping upload. No excluded-findings.json exists. Skipping upload. pod: component-prefetch-pip-on-p45284238f49d8ed8af79ecd43ab1ac6c-pod | init container: prepare 2026/08/18 04:56:39 Entrypoint initialization pod: component-prefetch-pip-on-p45284238f49d8ed8af79ecd43ab1ac6c-pod | init container: working-dir-initializer pod: component-prefetch-pip-on-p45284238f49d8ed8af79ecd43ab1ac6c-pod | container step-push: time="2026-08-18T04:58:19Z" level=info msg="[param] image-url: quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-b034c3f13cdf2a5d1c29cf71e72654df35d7092c" time="2026-08-18T04:58:19Z" level=info msg="[param] image-digest: sha256:c1660947fdedaf7d9f6945d8919aaa84952ad02667f0b2bfb57ad942ac928351" time="2026-08-18T04:58:19Z" level=info msg="[param] containerfile: Dockerfile" time="2026-08-18T04:58:19Z" level=info msg="[param] context: ." time="2026-08-18T04:58:19Z" level=info msg="[param] tag-suffix: .dockerfile" time="2026-08-18T04:58:19Z" level=info msg="[param] artifact-type: application/vnd.konflux.dockerfile" time="2026-08-18T04:58:19Z" level=info msg="[param] source: source" time="2026-08-18T04:58:19Z" level=info msg="[param] result-path-image-ref: /tekton/results/IMAGE_REF" time="2026-08-18T04:58:19Z" level=info msg="[param] alternative-filename: Dockerfile" time="2026-08-18T04:58:20Z" level=info msg="oras [stdout] quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip@sha256:a70094bf8a21b97702dcd0d530e4907f5f5892eacb6b8864c782c92cc35b8e32" time="2026-08-18T04:58:20Z" level=info msg="Containerfile 'source/Dockerfile' is pushed to registry with tag: sha256-c1660947fdedaf7d9f6945d8919aaa84952ad02667f0b2bfb57ad942ac928351.dockerfile" {"image_ref":"quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip@sha256:a70094bf8a21b97702dcd0d530e4907f5f5892eacb6b8864c782c92cc35b8e32"} pod: component-prefetch-pip-on-p45686348549ddb4108243aee65c10c02-pod | init container: prepare 2026/08/18 04:56:23 Entrypoint initialization pod: component-prefetch-pip-on-p45686348549ddb4108243aee65c10c02-pod | init container: place-scripts 2026/08/18 04:56:29 Decoded script /tekton/scripts/script-0-55qfv 2026/08/18 04:56:29 Decoded script /tekton/scripts/script-1-bwnb5 2026/08/18 04:56:29 Decoded script /tekton/scripts/script-2-sn2lm 2026/08/18 04:56:29 Decoded script /tekton/scripts/script-3-pbwfp 2026/08/18 04:56:29 Decoded script /tekton/scripts/script-4-qwwvn 2026/08/18 04:56:29 Decoded script /tekton/scripts/script-5-jxwkn pod: component-prefetch-pip-on-p45686348549ddb4108243aee65c10c02-pod | container step-introspect: Artifact type will be determined by introspection. Checking the media type of the OCI artifact... [retry] executing: skopeo inspect --raw --retry-times 3 docker://quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-c57a4cc803875e74d17199e5d1a90f62fa4dab4a The media type of the OCI artifact is application/vnd.docker.distribution.manifest.v2+json. Looking for image labels that indicate this might be an operator bundle... [retry] executing: skopeo inspect --retry-times 3 docker://quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-c57a4cc803875e74d17199e5d1a90f62fa4dab4a Found 0 matching labels. Expecting 3 or more to identify this image as an operator bundle. Introspection concludes that this artifact is of type "application". pod: component-prefetch-pip-on-p45686348549ddb4108243aee65c10c02-pod | container step-generate-container-auth: Selecting auth for quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-c57a4cc803875e74d17199e5d1a90f62fa4dab4a Using token for quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip Auth json written to "/auth/auth.json". pod: component-prefetch-pip-on-p45686348549ddb4108243aee65c10c02-pod | container step-set-skip-for-bundles: 2026/08/18 04:57:04 INFO Step was skipped due to when expressions were evaluated to false. pod: component-prefetch-pip-on-p45686348549ddb4108243aee65c10c02-pod | container step-app-check: time="2026-08-18T04:57:04Z" level=info msg="certification library version" version="1.20.0 " time="2026-08-18T04:57:05Z" level=info msg="running checks for quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-c57a4cc803875e74d17199e5d1a90f62fa4dab4a for platform amd64" time="2026-08-18T04:57:05Z" level=info msg="target image" image="quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-c57a4cc803875e74d17199e5d1a90f62fa4dab4a" time="2026-08-18T04:57:24Z" level=info msg="warning: licenses directory does not exist or all of its children are empty directories: error when checking for /licenses: stat /tmp/preflight-4190251769/fs/licenses: no such file or directory" check=HasLicense time="2026-08-18T04:57:24Z" level=info msg="check completed" check=HasLicense result=FAILED time="2026-08-18T04:57:24Z" level=info msg="check completed" check=HasUniqueTag result=PASSED time="2026-08-18T04:57:24Z" level=info msg="check completed" check=LayerCountAcceptable result=PASSED time="2026-08-18T04:57:24Z" level=info msg="check completed" check=HasNoProhibitedPackages result=PASSED time="2026-08-18T04:57:24Z" level=info msg="check completed" check=HasRequiredLabel result=PASSED time="2026-08-18T04:57:24Z" level=info msg="USER 1001 specified that is non-root" check=RunAsNonRoot time="2026-08-18T04:57:24Z" level=info msg="check completed" check=RunAsNonRoot result=PASSED time="2026-08-18T04:57:43Z" level=info msg="check completed" check=HasModifiedFiles result=PASSED time="2026-08-18T04:57:44Z" level=info msg="check completed" check=BasedOnUbi result=PASSED time="2026-08-18T04:57:44Z" level=info msg="This image's tag on-pr-c57a4cc803875e74d17199e5d1a90f62fa4dab4a will be paired with digest sha256:6878a3ad2906ee9520c9dac2a37388a2f151dde503ad90052127a57fd446d502 once this image has been published in accordance with Red Hat Certification policy. You may then add or remove any supplemental tags through your Red Hat Connect portal as you see fit." time="2026-08-18T04:57:44Z" level=info msg="Preflight result: FAILED" { "image": "quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-c57a4cc803875e74d17199e5d1a90f62fa4dab4a", "passed": false, "test_library": { "name": "github.com/redhat-openshift-ecosystem/openshift-preflight", "version": "1.20.0", "commit": "96798270d2f3299dcce4c385d908b5cd53b7537a" }, "results": { "passed": [ { "name": "HasUniqueTag", "elapsed_time": 0, "description": "Checking if container has a tag other than 'latest', so that the image can be uniquely identified." }, { "name": "LayerCountAcceptable", "elapsed_time": 0, "description": "Checking if container has less than 40 layers. Too many layers within the container images can degrade container performance." }, { "name": "HasNoProhibitedPackages", "elapsed_time": 115, "description": "Checks to ensure that the image in use does not include prohibited packages, such as Red Hat Enterprise Linux (RHEL) kernel packages." }, { "name": "HasRequiredLabel", "elapsed_time": 0, "description": "Checking if the required labels (name, vendor, version, release, summary, description, maintainer) are present in the container metadata" }, { "name": "RunAsNonRoot", "elapsed_time": 0, "description": "Checking if container runs as the root user because a container that does not specify a non-root user will fail the automatic certification, and will be subject to a manual review before the container can be approved for publication" }, { "name": "HasModifiedFiles", "elapsed_time": 19693, "description": "Checks that no files installed via RPM in the base Red Hat layer have been modified" }, { "name": "BasedOnUbi", "elapsed_time": 718, "description": "Checking if the container's base image is based upon the Red Hat Universal Base Image (UBI) or Red Hat Hardened Images (RHHI)" } ], "failed": [ { "name": "HasLicense", "elapsed_time": 0, "description": "Checking if terms and conditions applicable to the software including open source licensing information are present. The license must be at /licenses", "help": "Check HasLicense encountered an error. Please review the preflight.log file for more information.", "suggestion": "Create a directory named /licenses and include all relevant licensing and/or terms and conditions as text file(s) in that directory.", "knowledgebase_url": "https://access.redhat.com/documentation/en-us/red_hat_software_certification/2026/html-single/red_hat_openshift_software_certification_policy_guide/index#assembly-requirements-for-container-images_openshift-sw-cert-policy-introduction", "check_url": "https://access.redhat.com/documentation/en-us/red_hat_software_certification/2026/html-single/red_hat_openshift_software_certification_policy_guide/index#assembly-requirements-for-container-images_openshift-sw-cert-policy-introduction" } ], "errors": [] } } pod: component-prefetch-pip-on-p45686348549ddb4108243aee65c10c02-pod | container step-app-set-outcome: [retry] executing: skopeo inspect --raw --retry-times 3 docker://quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-c57a4cc803875e74d17199e5d1a90f62fa4dab4a {"result":"FAILURE","timestamp":"1787029064","note":"Task preflight is a FAILURE: Refer to Tekton task logs for more information","successes":7,"failures":1,"warnings":0} pod: component-prefetch-pip-on-p45686348549ddb4108243aee65c10c02-pod | container step-final-outcome: + [[ ! -f /mount/konflux.results.json ]] + tee /tekton/steps/step-final-outcome/results/test-output {"result":"FAILURE","timestamp":"1787029064","note":"Task preflight is a FAILURE: Refer to Tekton task logs for more information","successes":7,"failures":1,"warnings":0} pod: component-prefetch-pip-on-p483867d944844a0847c499b9ebda63d5-pod | init container: prepare 2026/08/18 04:56:49 Entrypoint initialization pod: component-prefetch-pip-on-p483867d944844a0847c499b9ebda63d5-pod | init container: working-dir-initializer pod: component-prefetch-pip-on-p483867d944844a0847c499b9ebda63d5-pod | container step-push: time="2026-08-18T04:57:02Z" level=info msg="[param] image-url: quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-a421fa0f323cb04a0a6eee0653f82d872445df3e" time="2026-08-18T04:57:02Z" level=info msg="[param] image-digest: sha256:a4f38c45758095f26b5c21e54b043a454078ecfda53d90909f2f6c98324cff87" time="2026-08-18T04:57:02Z" level=info msg="[param] containerfile: Dockerfile" time="2026-08-18T04:57:02Z" level=info msg="[param] context: ." time="2026-08-18T04:57:02Z" level=info msg="[param] tag-suffix: .dockerfile" time="2026-08-18T04:57:02Z" level=info msg="[param] artifact-type: application/vnd.konflux.dockerfile" time="2026-08-18T04:57:02Z" level=info msg="[param] source: source" time="2026-08-18T04:57:02Z" level=info msg="[param] result-path-image-ref: /tekton/results/IMAGE_REF" time="2026-08-18T04:57:02Z" level=info msg="[param] alternative-filename: Dockerfile" time="2026-08-18T04:57:03Z" level=info msg="oras [stdout] quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip@sha256:d479fbcfc4d881acfaeea2774799616921a15081125c6bf6bf081332ade87b67" time="2026-08-18T04:57:03Z" level=info msg="Containerfile 'source/Dockerfile' is pushed to registry with tag: sha256-a4f38c45758095f26b5c21e54b043a454078ecfda53d90909f2f6c98324cff87.dockerfile" {"image_ref":"quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip@sha256:d479fbcfc4d881acfaeea2774799616921a15081125c6bf6bf081332ade87b67"} pod: component-prefetch-pip-on-p5552b49efa6750b452b50f79e7c480dd-pod | init container: prepare 2026/08/18 04:52:19 Entrypoint initialization pod: component-prefetch-pip-on-p5552b49efa6750b452b50f79e7c480dd-pod | init container: place-scripts 2026/08/18 04:52:26 Decoded script /tekton/scripts/script-0-vqxwd pod: component-prefetch-pip-on-p5552b49efa6750b452b50f79e7c480dd-pod | container step-clone: INFO: Using mounted CA bundle: /mnt/trusted-ca/ca-bundle.crt '/mnt/trusted-ca/ca-bundle.crt' -> '/etc/pki/ca-trust/source/anchors/ca-bundle.crt' time="2026-08-18T04:52:32Z" level=info msg="[param] url: https://github.com/redhat-appstudio-qe/pip-sample-repo" time="2026-08-18T04:52:32Z" level=info msg="[param] revision: c57a4cc803875e74d17199e5d1a90f62fa4dab4a" time="2026-08-18T04:52:32Z" level=info msg="[param] depth: 1" time="2026-08-18T04:52:32Z" level=info msg="[param] short-commit-length: 7" time="2026-08-18T04:52:32Z" level=info msg="[param] subdirectory: source" time="2026-08-18T04:52:32Z" level=info msg="[param] delete-existing: true" time="2026-08-18T04:52:32Z" level=info msg="[param] target-branch: main" time="2026-08-18T04:52:32Z" level=info msg="[param] merge-commit-author-name: Konflux CI Git Clone" time="2026-08-18T04:52:32Z" level=info msg="[param] merge-commit-author-email: git-clone@konflux-ci.dev" time="2026-08-18T04:52:32Z" level=info msg="[param] output-dir: /workspace/output" time="2026-08-18T04:52:32Z" level=info msg="[param] retry-max-attempts: 10" time="2026-08-18T04:52:32Z" level=info msg="[param] basic-auth-directory: /workspace/basic-auth" pod: component-prefetch-pip-on-p5edafd9db616c1d6aa9565d0fefc3767-pod | init container: prepare 2026/08/18 04:55:32 Entrypoint initialization pod: component-prefetch-pip-on-p5edafd9db616c1d6aa9565d0fefc3767-pod | init container: place-scripts 2026/08/18 04:55:39 Decoded script /tekton/scripts/script-0-9dx7h 2026/08/18 04:55:39 Decoded script /tekton/scripts/script-1-hb9rd 2026/08/18 04:55:39 Decoded script /tekton/scripts/script-2-mnhjm pod: component-prefetch-pip-on-p5edafd9db616c1d6aa9565d0fefc3767-pod | container step-build: [2026-08-18T04:55:54,300191267+00:00] Update CA trust INFO: Using mounted CA bundle: /mnt/trusted-ca/ca-bundle.crt '/mnt/trusted-ca/ca-bundle.crt' -> '/etc/pki/ca-trust/source/anchors/ca-bundle.crt' Running konflux-build-cli time="2026-08-18T04:56:00Z" level=info msg="[param] image: quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-c57a4cc803875e74d17199e5d1a90f62fa4dab4a" time="2026-08-18T04:56:00Z" level=info msg="[param] images: [quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-c57a4cc803875e74d17199e5d1a90f62fa4dab4a@sha256:309f4fe2ce1d73fb3d820eaf96c53e49b51f075db68811165af0ceaa1abdf064]" time="2026-08-18T04:56:00Z" level=info msg="[param] buildah-format: docker" time="2026-08-18T04:56:00Z" level=info msg="[param] always-build-index: false" time="2026-08-18T04:56:00Z" level=info msg="[param] additional-tags: [component-prefetch-pip-on-pull-request-bmmsf-build-image-index]" time="2026-08-18T04:56:00Z" level=info msg="[param] output-manifest-path: /index-build-data/manifest_data.json" time="2026-08-18T04:56:00Z" level=info msg="[param] result-path-image-digest: /tekton/results/IMAGE_DIGEST" time="2026-08-18T04:56:00Z" level=info msg="[param] result-path-image-url: /tekton/results/IMAGE_URL" time="2026-08-18T04:56:00Z" level=info msg="[param] result-path-image-ref: /tekton/results/IMAGE_REF" time="2026-08-18T04:56:00Z" level=info msg="[param] result-path-images: /tekton/results/IMAGES" time="2026-08-18T04:56:00Z" level=info msg="Creating manifest list: quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-c57a4cc803875e74d17199e5d1a90f62fa4dab4a" time="2026-08-18T04:56:01Z" level=info msg="buildah [stdout] 19280732c74d675fa6a20d5e2bcb197fdc8cb24fd1f53bb88ccd39265260f5bf" time="2026-08-18T04:56:01Z" level=info msg="Skipping image index generation. Returning results for single image." {"image_digest":"sha256:309f4fe2ce1d73fb3d820eaf96c53e49b51f075db68811165af0ceaa1abdf064","image_url":"quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-c57a4cc803875e74d17199e5d1a90f62fa4dab4a","image_ref":"quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip@sha256:309f4fe2ce1d73fb3d820eaf96c53e49b51f075db68811165af0ceaa1abdf064","images":"quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip@sha256:309f4fe2ce1d73fb3d820eaf96c53e49b51f075db68811165af0ceaa1abdf064"} pod: component-prefetch-pip-on-p5edafd9db616c1d6aa9565d0fefc3767-pod | container step-create-sbom: The manifest_data.json file does not exist. Skipping the SBOM creation... pod: component-prefetch-pip-on-p5edafd9db616c1d6aa9565d0fefc3767-pod | container step-upload-sbom: [2026-08-18T04:56:02,046395941+00:00] Update CA trust INFO: Using mounted CA bundle: /mnt/trusted-ca/ca-bundle.crt '/mnt/trusted-ca/ca-bundle.crt' -> '/etc/pki/ca-trust/source/anchors/ca-bundle.crt' The index.spdx.json file does not exists. Skipping the SBOM upload... pod: component-prefetch-pip-on-p65253adf73acfd51ff433d7de466cba4-pod | init container: prepare 2026/08/18 04:56:38 Entrypoint initialization pod: component-prefetch-pip-on-p65253adf73acfd51ff433d7de466cba4-pod | init container: place-scripts 2026/08/18 04:56:44 Decoded script /tekton/scripts/script-0-v5hbm 2026/08/18 04:56:44 Decoded script /tekton/scripts/script-1-cth8c pod: component-prefetch-pip-on-p65253adf73acfd51ff433d7de466cba4-pod | init container: working-dir-initializer pod: component-prefetch-pip-on-p65253adf73acfd51ff433d7de466cba4-pod | container step-sast-unicode-check: + . /utils.sh ++ OPM_RENDER_CACHE=/tmp/konflux-test-opm-cache ++ DEFAULT_INDEX_IMAGE=registry.redhat.io/redhat/redhat-operator-index + trap 'handle_error /tekton/results/TEST_OUTPUT' EXIT + [[ -z '' ]] + PROJECT_NAME=component-prefetch-pip + echo 'INFO: The PROJECT_NAME used is: component-prefetch-pip' + ca_bundle=/mnt/trusted-ca/ca-bundle.crt + '[' -f /mnt/trusted-ca/ca-bundle.crt ']' + echo 'INFO: Using mounted CA bundle: /mnt/trusted-ca/ca-bundle.crt' INFO: The PROJECT_NAME used is: component-prefetch-pip INFO: Using mounted CA bundle: /mnt/trusted-ca/ca-bundle.crt + cp -vf /mnt/trusted-ca/ca-bundle.crt /etc/pki/ca-trust/source/anchors '/mnt/trusted-ca/ca-bundle.crt' -> '/etc/pki/ca-trust/source/anchors/ca-bundle.crt' + update-ca-trust + SCAN_PROP=https://github.com/siddhesh/find-unicode-control.git#c2accbfbba7553a8bc1ebd97089ae08ad8347e58 + FUC_EXIT_CODE=0 + declare -a ALL_TARGETS + OLD_IFS=' ' + IFS=, + for d in $TARGET_DIRS + ALL_TARGETS+=("${SOURCE_CODE_DIR}/source/${d}") + IFS=' ' + LANG=en_US.utf8 + find_unicode_control.py -p bidi -v -d -t /workspace/workspace/source/. + [[ 0 -ne 0 ]] + sed -i raw_sast_unicode_check_out.txt -E -e 's|(.*:[0-9]+)(.*)|\1: warning:\2|' -e 's|^|Error: UNICONTROL_WARNING:\n|' + CSGERP_OPTS=(--mode=json --remove-duplicates --embed-context=3 --set-scan-prop="${SCAN_PROP}" --strip-path-prefix="${SOURCE_CODE_DIR}"/source/) + csgrep --mode=json --remove-duplicates --embed-context=3 --set-scan-prop=https://github.com/siddhesh/find-unicode-control.git#c2accbfbba7553a8bc1ebd97089ae08ad8347e58 --strip-path-prefix=/workspace/workspace/source/ raw_sast_unicode_check_out.txt + csgrep --mode=evtstat processed_sast_unicode_check_out.json + [[ SITE_DEFAULT == \S\I\T\E\_\D\E\F\A\U\L\T ]] + KFP_GIT_URL=https://gitlab.cee.redhat.com/osh/known-false-positives.git + PROBE_URL=https://gitlab.cee.redhat.com/osh/known-false-positives + KFP_DIR=known-false-positives + KFP_CLONED=0 + mkdir known-false-positives + [[ -n https://gitlab.cee.redhat.com/osh/known-false-positives.git ]] + echo -n 'INFO: Probing https://gitlab.cee.redhat.com/osh/known-false-positives... ' + curl --fail --head --max-time 60 --no-progress-meter https://gitlab.cee.redhat.com/osh/known-false-positives ++ head -1 curl: (6) Could not resolve host: gitlab.cee.redhat.com INFO: Probing https://gitlab.cee.redhat.com/osh/known-false-positives... WARN: Failed to clone known-false-positives at https://gitlab.cee.redhat.com/osh/known-false-positives.git, scan results will not be filtered + [[ 0 -eq 0 ]] + echo 'WARN: Failed to clone known-false-positives at https://gitlab.cee.redhat.com/osh/known-false-positives.git, scan results will not be filtered' + mv processed_sast_unicode_check_out.json sast_unicode_check_out.json + csgrep --mode=sarif sast_unicode_check_out.json + [[ 0 -eq 0 ]] + note='Task sast-unicode-check success: No finding was detected' ++ make_result_json -r SUCCESS -t 'Task sast-unicode-check success: No finding was detected' ++ local RESULT= ++ local SUCCESSES=0 ++ local FAILURES=0 ++ local WARNINGS=0 ++ local 'NOTE=For details, check Tekton task log.' ++ local NAMESPACE=default ++ local OUTPUT ++ local OPTIND opt ++ getopts :r:s:f:w:t:n: opt ++ case "${opt}" in ++ RESULT=SUCCESS ++ getopts :r:s:f:w:t:n: opt ++ case "${opt}" in ++ NOTE='Task sast-unicode-check success: No finding was detected' ++ getopts :r:s:f:w:t:n: opt ++ shift 4 ++ '[' -z SUCCESS ']' ++ case "${RESULT}" in ++++ date -u --iso-8601=seconds +++ jq -rce --arg date 2026-08-18T04:57:33+00:00 --arg result SUCCESS --arg note 'Task sast-unicode-check success: No finding was detected' --arg namespace default --arg successes 0 --arg failures 0 --arg warnings 0 --null-input '{ result: $result, timestamp: $date, note: $note, namespace: $namespace, successes: $successes|tonumber, failures: $failures|tonumber, warnings: $warnings|tonumber }' ++ OUTPUT='{"result":"SUCCESS","timestamp":"2026-08-18T04:57:33+00:00","note":"Task sast-unicode-check success: No finding was detected","namespace":"default","successes":0,"failures":0,"warnings":0}' ++ echo '{"result":"SUCCESS","timestamp":"2026-08-18T04:57:33+00:00","note":"Task sast-unicode-check success: No finding was detected","namespace":"default","successes":0,"failures":0,"warnings":0}' + ERROR_OUTPUT='{"result":"SUCCESS","timestamp":"2026-08-18T04:57:33+00:00","note":"Task sast-unicode-check success: No finding was detected","namespace":"default","successes":0,"failures":0,"warnings":0}' + echo '{"result":"SUCCESS","timestamp":"2026-08-18T04:57:33+00:00","note":"Task sast-unicode-check success: No finding was detected","namespace":"default","successes":0,"failures":0,"warnings":0}' + tee /tekton/results/TEST_OUTPUT {"result":"SUCCESS","timestamp":"2026-08-18T04:57:33+00:00","note":"Task sast-unicode-check success: No finding was detected","namespace":"default","successes":0,"failures":0,"warnings":0} + handle_error /tekton/results/TEST_OUTPUT + exit_code=0 + '[' 0 -ne 0 ']' + exit 0 pod: component-prefetch-pip-on-p65253adf73acfd51ff433d7de466cba4-pod | container step-upload: Selecting auth Using token for quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip Attaching to quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-c57a4cc803875e74d17199e5d1a90f62fa4dab4a Executing: oras attach --no-tty --registry-config /home/oras/auth.json --artifact-type application/sarif+json quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-c57a4cc803875e74d17199e5d1a90f62fa4dab4a@sha256:309f4fe2ce1d73fb3d820eaf96c53e49b51f075db68811165af0ceaa1abdf064 sast_unicode_check_out.sarif:application/sarif+json Preparing sast_unicode_check_out.sarif Exists e8cd1c5aaef5 sast_unicode_check_out.sarif Exists 44136fa355b3 application/vnd.oci.empty.v1+json Uploading d8a2426e02a0 application/vnd.oci.image.manifest.v1+json Uploaded d8a2426e02a0 application/vnd.oci.image.manifest.v1+json Attached to [registry] quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-c57a4cc803875e74d17199e5d1a90f62fa4dab4a@sha256:309f4fe2ce1d73fb3d820eaf96c53e49b51f075db68811165af0ceaa1abdf064 Digest: sha256:d8a2426e02a0d0b17d8c84cc074391e1677e5284a6bbac5dac47d1d52bb7e1df No excluded-findings.json exists. Skipping upload. pod: component-prefetch-pip-on-p71f36b9c0495a7ca8f102ea08100d368-pod | init container: prepare 2026/08/18 04:57:57 Entrypoint initialization pod: component-prefetch-pip-on-p71f36b9c0495a7ca8f102ea08100d368-pod | init container: place-scripts 2026/08/18 04:58:00 Decoded script /tekton/scripts/script-0-xdggf 2026/08/18 04:58:00 Decoded script /tekton/scripts/script-1-xqzhl pod: component-prefetch-pip-on-p71f36b9c0495a7ca8f102ea08100d368-pod | init container: working-dir-initializer pod: component-prefetch-pip-on-p71f36b9c0495a7ca8f102ea08100d368-pod | container step-sast-unicode-check: + . /utils.sh ++ OPM_RENDER_CACHE=/tmp/konflux-test-opm-cache ++ DEFAULT_INDEX_IMAGE=registry.redhat.io/redhat/redhat-operator-index INFO: The PROJECT_NAME used is: component-prefetch-pip INFO: Using mounted CA bundle: /mnt/trusted-ca/ca-bundle.crt + trap 'handle_error /tekton/results/TEST_OUTPUT' EXIT + [[ -z '' ]] + PROJECT_NAME=component-prefetch-pip + echo 'INFO: The PROJECT_NAME used is: component-prefetch-pip' + ca_bundle=/mnt/trusted-ca/ca-bundle.crt + '[' -f /mnt/trusted-ca/ca-bundle.crt ']' + echo 'INFO: Using mounted CA bundle: /mnt/trusted-ca/ca-bundle.crt' + cp -vf /mnt/trusted-ca/ca-bundle.crt /etc/pki/ca-trust/source/anchors '/mnt/trusted-ca/ca-bundle.crt' -> '/etc/pki/ca-trust/source/anchors/ca-bundle.crt' + update-ca-trust + SCAN_PROP=https://github.com/siddhesh/find-unicode-control.git#c2accbfbba7553a8bc1ebd97089ae08ad8347e58 + FUC_EXIT_CODE=0 + declare -a ALL_TARGETS + OLD_IFS=' ' + IFS=, + for d in $TARGET_DIRS + ALL_TARGETS+=("${SOURCE_CODE_DIR}/source/${d}") + IFS=' ' + LANG=en_US.utf8 + find_unicode_control.py -p bidi -v -d -t /workspace/workspace/source/. + [[ 0 -ne 0 ]] + sed -i raw_sast_unicode_check_out.txt -E -e 's|(.*:[0-9]+)(.*)|\1: warning:\2|' -e 's|^|Error: UNICONTROL_WARNING:\n|' + CSGERP_OPTS=(--mode=json --remove-duplicates --embed-context=3 --set-scan-prop="${SCAN_PROP}" --strip-path-prefix="${SOURCE_CODE_DIR}"/source/) + csgrep --mode=json --remove-duplicates --embed-context=3 --set-scan-prop=https://github.com/siddhesh/find-unicode-control.git#c2accbfbba7553a8bc1ebd97089ae08ad8347e58 --strip-path-prefix=/workspace/workspace/source/ raw_sast_unicode_check_out.txt + csgrep --mode=evtstat processed_sast_unicode_check_out.json + [[ SITE_DEFAULT == \S\I\T\E\_\D\E\F\A\U\L\T ]] + KFP_GIT_URL=https://gitlab.cee.redhat.com/osh/known-false-positives.git + PROBE_URL=https://gitlab.cee.redhat.com/osh/known-false-positives + KFP_DIR=known-false-positives + KFP_CLONED=0 + mkdir known-false-positives + [[ -n https://gitlab.cee.redhat.com/osh/known-false-positives.git ]] + echo -n 'INFO: Probing https://gitlab.cee.redhat.com/osh/known-false-positives... ' + curl --fail --head --max-time 60 --no-progress-meter https://gitlab.cee.redhat.com/osh/known-false-positives ++ head -1 curl: (6) Could not resolve host: gitlab.cee.redhat.com INFO: Probing https://gitlab.cee.redhat.com/osh/known-false-positives... WARN: Failed to clone known-false-positives at https://gitlab.cee.redhat.com/osh/known-false-positives.git, scan results will not be filtered + [[ 0 -eq 0 ]] + echo 'WARN: Failed to clone known-false-positives at https://gitlab.cee.redhat.com/osh/known-false-positives.git, scan results will not be filtered' + mv processed_sast_unicode_check_out.json sast_unicode_check_out.json + csgrep --mode=sarif sast_unicode_check_out.json + [[ 0 -eq 0 ]] + note='Task sast-unicode-check success: No finding was detected' ++ make_result_json -r SUCCESS -t 'Task sast-unicode-check success: No finding was detected' ++ local RESULT= ++ local SUCCESSES=0 ++ local FAILURES=0 ++ local WARNINGS=0 ++ local 'NOTE=For details, check Tekton task log.' ++ local NAMESPACE=default ++ local OUTPUT ++ local OPTIND opt ++ getopts :r:s:f:w:t:n: opt ++ case "${opt}" in ++ RESULT=SUCCESS ++ getopts :r:s:f:w:t:n: opt ++ case "${opt}" in ++ NOTE='Task sast-unicode-check success: No finding was detected' ++ getopts :r:s:f:w:t:n: opt ++ shift 4 ++ '[' -z SUCCESS ']' ++ case "${RESULT}" in ++++ date -u --iso-8601=seconds +++ jq -rce --arg date 2026-08-18T04:58:14+00:00 --arg result SUCCESS --arg note 'Task sast-unicode-check success: No finding was detected' --arg namespace default --arg successes 0 --arg failures 0 --arg warnings 0 --null-input '{ result: $result, timestamp: $date, note: $note, namespace: $namespace, successes: $successes|tonumber, failures: $failures|tonumber, warnings: $warnings|tonumber }' ++ OUTPUT='{"result":"SUCCESS","timestamp":"2026-08-18T04:58:14+00:00","note":"Task sast-unicode-check success: No finding was detected","namespace":"default","successes":0,"failures":0,"warnings":0}' ++ echo '{"result":"SUCCESS","timestamp":"2026-08-18T04:58:14+00:00","note":"Task sast-unicode-check success: No finding was detected","namespace":"default","successes":0,"failures":0,"warnings":0}' + ERROR_OUTPUT='{"result":"SUCCESS","timestamp":"2026-08-18T04:58:14+00:00","note":"Task sast-unicode-check success: No finding was detected","namespace":"default","successes":0,"failures":0,"warnings":0}' + echo '{"result":"SUCCESS","timestamp":"2026-08-18T04:58:14+00:00","note":"Task sast-unicode-check success: No finding was detected","namespace":"default","successes":0,"failures":0,"warnings":0}' + tee /tekton/results/TEST_OUTPUT {"result":"SUCCESS","timestamp":"2026-08-18T04:58:14+00:00","note":"Task sast-unicode-check success: No finding was detected","namespace":"default","successes":0,"failures":0,"warnings":0} + handle_error /tekton/results/TEST_OUTPUT + exit_code=0 + '[' 0 -ne 0 ']' + exit 0 pod: component-prefetch-pip-on-p71f36b9c0495a7ca8f102ea08100d368-pod | container step-upload: Selecting auth Using token for quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip Attaching to quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-a421fa0f323cb04a0a6eee0653f82d872445df3e Executing: oras attach --no-tty --registry-config /home/oras/auth.json --artifact-type application/sarif+json quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-a421fa0f323cb04a0a6eee0653f82d872445df3e@sha256:a4f38c45758095f26b5c21e54b043a454078ecfda53d90909f2f6c98324cff87 sast_unicode_check_out.sarif:application/sarif+json Preparing sast_unicode_check_out.sarif Exists e8cd1c5aaef5 sast_unicode_check_out.sarif Exists 44136fa355b3 application/vnd.oci.empty.v1+json Uploading 0bb41e3d0bbc application/vnd.oci.image.manifest.v1+json Uploaded 0bb41e3d0bbc application/vnd.oci.image.manifest.v1+json Attached to [registry] quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-a421fa0f323cb04a0a6eee0653f82d872445df3e@sha256:a4f38c45758095f26b5c21e54b043a454078ecfda53d90909f2f6c98324cff87 Digest: sha256:0bb41e3d0bbc81c022aea2d06f92671ff116e69be05d2ae4c9569eacddd53728 No excluded-findings.json exists. Skipping upload. pod: component-prefetch-pip-on-p787f6f72af9d7b0fec317374355d3cc4-pod | init container: prepare 2026/08/18 04:57:51 Entrypoint initialization pod: component-prefetch-pip-on-p787f6f72af9d7b0fec317374355d3cc4-pod | init container: place-scripts 2026/08/18 04:57:56 Decoded script /tekton/scripts/script-0-r8lwj 2026/08/18 04:57:56 Decoded script /tekton/scripts/script-1-bdm5x pod: component-prefetch-pip-on-p787f6f72af9d7b0fec317374355d3cc4-pod | init container: working-dir-initializer pod: component-prefetch-pip-on-p787f6f72af9d7b0fec317374355d3cc4-pod | container step-sast-shell-check: + source /utils.sh ++ OPM_RENDER_CACHE=/tmp/konflux-test-opm-cache ++ DEFAULT_INDEX_IMAGE=registry.redhat.io/redhat/redhat-operator-index + trap 'handle_error /tekton/results/TEST_OUTPUT' EXIT + [[ -z '' ]] + PROJECT_NAME=component-prefetch-pip + echo 'INFO: The PROJECT_NAME used is: component-prefetch-pip' + ca_bundle=/mnt/trusted-ca/ca-bundle.crt + '[' -f /mnt/trusted-ca/ca-bundle.crt ']' INFO: The PROJECT_NAME used is: component-prefetch-pip INFO: Using mounted CA bundle: /mnt/trusted-ca/ca-bundle.crt + echo 'INFO: Using mounted CA bundle: /mnt/trusted-ca/ca-bundle.crt' + cp -vf /mnt/trusted-ca/ca-bundle.crt /etc/pki/ca-trust/source/anchors '/mnt/trusted-ca/ca-bundle.crt' -> '/etc/pki/ca-trust/source/anchors/ca-bundle.crt' + update-ca-trust ++ rpm -q --queryformat '%{NAME}-%{VERSION}-%{RELEASE}\n' ShellCheck + PACKAGE_VERSION=ShellCheck-0.10.0-3.el9 + OUTPUT_FILE=shellcheck-results.json + SOURCE_CODE_DIR=/workspace/workspace/source + declare -a ALL_TARGETS + IFS=, + read -ra TARGET_ARRAY + for d in "${TARGET_ARRAY[@]}" + potential_path=/workspace/workspace/source/. ++ realpath -m /workspace/workspace/source/. + resolved_path=/workspace/workspace/source + [[ /workspace/workspace/source == \/\w\o\r\k\s\p\a\c\e\/\w\o\r\k\s\p\a\c\e\/\s\o\u\r\c\e* ]] + ALL_TARGETS+=("$resolved_path") + '[' -z '' ']' + '[' -r /sys/fs/cgroup/cpu.max ']' + read -r quota period + '[' 800000 '!=' max ']' + '[' -n 100000 ']' + '[' 100000 -gt 0 ']' + export SC_JOBS=8 + SC_JOBS=8 INFO: Setting SC_JOBS=8 based on cgroups v2 max for run-shellcheck.sh + echo 'INFO: Setting SC_JOBS=8 based on cgroups v2 max for run-shellcheck.sh' + [[ true == \t\r\u\e ]] + export SC_SKIP_JINJA=1 + SC_SKIP_JINJA=1 + /usr/share/csmock/scripts/run-shellcheck.sh /workspace/workspace/source Looking for shell scripts................ done + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/applypatch-msg.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/commit-msg.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/post-update.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/prepare-commit-msg.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/pre-applypatch.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/pre-commit.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/pre-merge-commit.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/pre-push.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/pre-rebase.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/pre-receive.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/push-to-checkout.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/sendemail-validate.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/update.sample + CSGREP_OPTS=(--mode=json --strip-path-prefix="$SOURCE_CODE_DIR"/ --remove-duplicates --embed-context=3 --set-scan-prop="ShellCheck:${PACKAGE_VERSION}") + [[ true == \t\r\u\e ]] + CSGREP_EVENT_FILTER='\[SC(1020|1035|1054|1066|1068|1073|1080|1083|1099|1113|1115|1127|1128|1143|2043|2050|' + CSGREP_EVENT_FILTER+='2055|2057|2066|2069|2071|2077|2078|2091|2092|2157|2171|2193|2194|2195|2215|2216|' + CSGREP_EVENT_FILTER+='2218|2224|2225|2242|2256|2258|2261)\]$' + CSGREP_OPTS+=(--event="$CSGREP_EVENT_FILTER") + csgrep --mode=json --strip-path-prefix=/workspace/workspace/source/ --remove-duplicates --embed-context=3 --set-scan-prop=ShellCheck:ShellCheck-0.10.0-3.el9 '--event=\[SC(1020|1035|1054|1066|1068|1073|1080|1083|1099|1113|1115|1127|1128|1143|2043|2050|2055|2057|2066|2069|2071|2077|2078|2091|2092|2157|2171|2193|2194|2195|2215|2216|2218|2224|2225|2242|2256|2258|2261)\]$' ./shellcheck-results/empty.json ./shellcheck-results/sc-101.json ./shellcheck-results/sc-103.json ./shellcheck-results/sc-106.json ./shellcheck-results/sc-109.json ./shellcheck-results/sc-111.json ./shellcheck-results/sc-131.json ./shellcheck-results/sc-144.json ./shellcheck-results/sc-145.json ./shellcheck-results/sc-148.json ./shellcheck-results/sc-98.json + [[ SITE_DEFAULT == \S\I\T\E\_\D\E\F\A\U\L\T ]] + KFP_GIT_URL=https://gitlab.cee.redhat.com/osh/known-false-positives.git + PROBE_URL=https://gitlab.cee.redhat.com/osh/known-false-positives + KFP_DIR=known-false-positives + KFP_CLONED=0 + mkdir known-false-positives + [[ -n https://gitlab.cee.redhat.com/osh/known-false-positives.git ]] + echo -n 'INFO: Probing https://gitlab.cee.redhat.com/osh/known-false-positives... ' + curl --fail --head --max-time 60 --no-progress-meter https://gitlab.cee.redhat.com/osh/known-false-positives ++ head -1 curl: (6) Could not resolve host: gitlab.cee.redhat.com + [[ 0 -eq 0 ]] + echo 'WARN: Failed to clone known-false-positives at https://gitlab.cee.redhat.com/osh/known-false-positives.git, scan results will not be filtered' + echo 'ShellCheck results have been saved to shellcheck-results.json' + csgrep --mode=evtstat shellcheck-results.json INFO: Probing https://gitlab.cee.redhat.com/osh/known-false-positives... WARN: Failed to clone known-false-positives at https://gitlab.cee.redhat.com/osh/known-false-positives.git, scan results will not be filtered ShellCheck results have been saved to shellcheck-results.json + csgrep --mode=sarif shellcheck-results.json + TEST_OUTPUT= + parse_test_output sast-shell-check sarif shellcheck-results.sarif + TEST_NAME=sast-shell-check + TEST_RESULT_FORMAT=sarif + TEST_RESULT_FILE=shellcheck-results.sarif + '[' -z sast-shell-check ']' + '[' -z sarif ']' + '[' -z shellcheck-results.sarif ']' + '[' '!' -f shellcheck-results.sarif ']' + '[' sarif = sarif ']' +++ jq -rce '(if (.runs[].results | length > 0) then "FAILURE" else "SUCCESS" end)' shellcheck-results.sarif +++ jq -rce '(.runs[].results | length)' shellcheck-results.sarif ++ make_result_json -r SUCCESS -f 0 ++ local RESULT= ++ local SUCCESSES=0 ++ local FAILURES=0 ++ local WARNINGS=0 ++ local 'NOTE=For details, check Tekton task log.' ++ local NAMESPACE=default ++ local OUTPUT ++ local OPTIND opt ++ getopts :r:s:f:w:t:n: opt ++ case "${opt}" in ++ RESULT=SUCCESS ++ getopts :r:s:f:w:t:n: opt ++ case "${opt}" in ++ FAILURES=0 ++ getopts :r:s:f:w:t:n: opt ++ shift 4 ++ '[' -z SUCCESS ']' ++ case "${RESULT}" in ++++ date -u --iso-8601=seconds +++ jq -rce --arg date 2026-08-18T04:58:12+00:00 --arg result SUCCESS --arg note 'For details, check Tekton task log.' --arg namespace default --arg successes 0 --arg failures 0 --arg warnings 0 --null-input '{ result: $result, timestamp: $date, note: $note, namespace: $namespace, successes: $successes|tonumber, failures: $failures|tonumber, warnings: $warnings|tonumber }' ++ OUTPUT='{"result":"SUCCESS","timestamp":"2026-08-18T04:58:12+00:00","note":"For details, check Tekton task log.","namespace":"default","successes":0,"failures":0,"warnings":0}' ++ echo '{"result":"SUCCESS","timestamp":"2026-08-18T04:58:12+00:00","note":"For details, check Tekton task log.","namespace":"default","successes":0,"failures":0,"warnings":0}' + TEST_OUTPUT='{"result":"SUCCESS","timestamp":"2026-08-18T04:58:12+00:00","note":"For details, check Tekton task log.","namespace":"default","successes":0,"failures":0,"warnings":0}' ++ jq .failures ++ echo '{"result":"SUCCESS","timestamp":"2026-08-18T04:58:12+00:00","note":"For details, check Tekton task log.","namespace":"default","successes":0,"failures":0,"warnings":0}' + '[' 0 -gt 0 ']' + tee /tekton/results/TEST_OUTPUT + echo '{"result":"SUCCESS","timestamp":"2026-08-18T04:58:12+00:00","note":"For details, check Tekton task log.","namespace":"default","successes":0,"failures":0,"warnings":0}' {"result":"SUCCESS","timestamp":"2026-08-18T04:58:12+00:00","note":"For details, check Tekton task log.","namespace":"default","successes":0,"failures":0,"warnings":0} + handle_error /tekton/results/TEST_OUTPUT + exit_code=0 + '[' 0 -ne 0 ']' + exit 0 pod: component-prefetch-pip-on-p787f6f72af9d7b0fec317374355d3cc4-pod | container step-upload: Selecting auth Using token for quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip Attaching to quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-a421fa0f323cb04a0a6eee0653f82d872445df3e Executing: oras attach --no-tty --registry-config /home/oras/auth.json --artifact-type application/sarif+json quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-a421fa0f323cb04a0a6eee0653f82d872445df3e@sha256:a4f38c45758095f26b5c21e54b043a454078ecfda53d90909f2f6c98324cff87 shellcheck-results.sarif:application/sarif+json Preparing shellcheck-results.sarif Exists 44136fa355b3 application/vnd.oci.empty.v1+json Exists 74c89a6df4ae shellcheck-results.sarif Uploading 1732ca193d85 application/vnd.oci.image.manifest.v1+json Uploaded 1732ca193d85 application/vnd.oci.image.manifest.v1+json Attached to [registry] quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-a421fa0f323cb04a0a6eee0653f82d872445df3e@sha256:a4f38c45758095f26b5c21e54b043a454078ecfda53d90909f2f6c98324cff87 Digest: sha256:1732ca193d85fbc369ec20831f604a57a033aa278195de8b4f1644811279c379 No excluded-findings.json exists. Skipping upload. pod: component-prefetch-pip-on-p7d0b673babdd3a0116a1ef8eafdb7df2-pod | init container: prepare 2026/08/18 04:56:40 Entrypoint initialization pod: component-prefetch-pip-on-p7d0b673babdd3a0116a1ef8eafdb7df2-pod | init container: working-dir-initializer pod: component-prefetch-pip-on-p7d0b673babdd3a0116a1ef8eafdb7df2-pod | container step-push: time="2026-08-18T04:56:56Z" level=info msg="[param] image-url: quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-c57a4cc803875e74d17199e5d1a90f62fa4dab4a" time="2026-08-18T04:56:56Z" level=info msg="[param] image-digest: sha256:309f4fe2ce1d73fb3d820eaf96c53e49b51f075db68811165af0ceaa1abdf064" time="2026-08-18T04:56:56Z" level=info msg="[param] containerfile: Dockerfile" time="2026-08-18T04:56:56Z" level=info msg="[param] context: ." time="2026-08-18T04:56:56Z" level=info msg="[param] tag-suffix: .dockerfile" time="2026-08-18T04:56:56Z" level=info msg="[param] artifact-type: application/vnd.konflux.dockerfile" time="2026-08-18T04:56:56Z" level=info msg="[param] source: source" time="2026-08-18T04:56:56Z" level=info msg="[param] result-path-image-ref: /tekton/results/IMAGE_REF" time="2026-08-18T04:56:56Z" level=info msg="[param] alternative-filename: Dockerfile" time="2026-08-18T04:56:57Z" level=info msg="oras [stdout] quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip@sha256:0fb1e2340dad3d8b553d06ea27e38849c85c532099d912b07a4fec1e5cbe32f3" time="2026-08-18T04:56:57Z" level=info msg="Containerfile 'source/Dockerfile' is pushed to registry with tag: sha256-309f4fe2ce1d73fb3d820eaf96c53e49b51f075db68811165af0ceaa1abdf064.dockerfile" {"image_ref":"quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip@sha256:0fb1e2340dad3d8b553d06ea27e38849c85c532099d912b07a4fec1e5cbe32f3"} pod: component-prefetch-pip-on-p81465e1a574b3cd66e0d7aa96051f9f5-pod | init container: prepare 2026/08/18 04:53:08 Entrypoint initialization pod: component-prefetch-pip-on-p81465e1a574b3cd66e0d7aa96051f9f5-pod | init container: place-scripts 2026/08/18 04:53:09 Decoded script /tekton/scripts/script-0-rr5l2 2026/08/18 04:53:09 Decoded script /tekton/scripts/script-1-l564z 2026/08/18 04:53:09 Decoded script /tekton/scripts/script-2-fldkr pod: component-prefetch-pip-on-p81465e1a574b3cd66e0d7aa96051f9f5-pod | init container: working-dir-initializer pod: component-prefetch-pip-on-p81465e1a574b3cd66e0d7aa96051f9f5-pod | container step-build: [2026-08-18T04:53:13,157104640+00:00] Using mounted CA bundle: /mnt/trusted-ca/ca-bundle.crt '/mnt/trusted-ca/ca-bundle.crt' -> '/etc/pki/ca-trust/source/anchors/ca-bundle.crt' [2026-08-18T04:53:13,165826428+00:00] Update CA trust [2026-08-18T04:53:16,231984730+00:00] Prepare system (architecture: x86_64) Effective container policy: { "default": [ { "type": "insecureAcceptAnything" } ], "transports": { "docker-daemon": { "": [ { "type": "insecureAcceptAnything" } ] } } } [2026-08-18T04:53:17,553906976+00:00] Run the build [2026-08-18T04:53:17,557257156+00:00] konflux-build-cli image build -f /workspace/source/source/./Dockerfile -t quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-b034c3f13cdf2a5d1c29cf71e72654df35d7092c --source source --context . --additional-tags component-prefetch-pip-on-pull-request-7ltlq-build-container --push --push-format docker --secret-dirs src=/additional-secret\,name=does-not-exist\,optional=true --workdir-mount '' --target '' --inherit-labels=true --source-date-epoch '' --rewrite-timestamp=false --squash=false --omit-history=false --image-source https://github.com/redhat-appstudio-qe/pip-sample-repo --image-revision b034c3f13cdf2a5d1c29cf71e72654df35d7092c --quay-image-expires-after 5d --build-args-file '' --annotations-file '' --legacy-build-timestamp '' --add-legacy-labels --include-legacy-buildinfo-path=true --skip-injections=false --skip-unused-stages=true --hermetic=true --image-pull-proxy '' --image-pull-noproxy '' --yum-repos-d-sources --yum-repos-d-target /etc/yum.repos.d --prefetch-dir /workspace/source/cachi2 --prefetch-dir-copy /workspace/source/prefetch-copy --prefetch-env-mount /cachi2/cachi2.env --prefetch-output-mount /cachi2/output --security-opts unmask=/proc/interrupts --sbom-format spdx --syft-select-catalogers '' --syft-image-output /shared/sbom-image.json --containerfile-json-output /shared/parsed_dockerfile.json --resolved-base-images-output /shared/base_images_digests --no-cache --ulimits nofile=4096:4096 --src-tls-verify=true --dest-tls-verify=true --allow-cross-platform-images=false --build-args --envs --labels --annotations time="2026-08-18T04:53:17Z" level=info msg="[param] containerfile: /workspace/source/source/./Dockerfile" time="2026-08-18T04:53:17Z" level=info msg="[param] context: ." time="2026-08-18T04:53:17Z" level=info msg="[param] source: source" time="2026-08-18T04:53:17Z" level=info msg="[param] output-ref: quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-b034c3f13cdf2a5d1c29cf71e72654df35d7092c" time="2026-08-18T04:53:17Z" level=info msg="[param] additional-tags: [component-prefetch-pip-on-pull-request-7ltlq-build-container]" time="2026-08-18T04:53:17Z" level=info msg="[param] push: true" time="2026-08-18T04:53:17Z" level=info msg="[param] push-format: docker" time="2026-08-18T04:53:17Z" level=info msg="[param] secret-dirs: [src=/additional-secret,name=does-not-exist,optional=true]" time="2026-08-18T04:53:17Z" level=info msg="[param] image-source: https://github.com/redhat-appstudio-qe/pip-sample-repo" time="2026-08-18T04:53:17Z" level=info msg="[param] image-revision: b034c3f13cdf2a5d1c29cf71e72654df35d7092c" time="2026-08-18T04:53:17Z" level=info msg="[param] quay-image-expires-after: 5d" time="2026-08-18T04:53:17Z" level=info msg="[param] add-legacy-labels: true" time="2026-08-18T04:53:17Z" level=info msg="[param] containerfile-json-output: /shared/parsed_dockerfile.json" time="2026-08-18T04:53:17Z" level=info msg="[param] include-legacy-buildinfo-path: true" time="2026-08-18T04:53:17Z" level=info msg="[param] hermetic: true" time="2026-08-18T04:53:17Z" level=info msg="[param] yum-repos-d-target: /etc/yum.repos.d" time="2026-08-18T04:53:17Z" level=info msg="[param] prefetch-dir: /workspace/source/cachi2" time="2026-08-18T04:53:17Z" level=info msg="[param] prefetch-dir-copy: /workspace/source/prefetch-copy" time="2026-08-18T04:53:17Z" level=info msg="[param] prefetch-output-mount: /cachi2/output" time="2026-08-18T04:53:17Z" level=info msg="[param] prefetch-env-mount: /cachi2/cachi2.env" time="2026-08-18T04:53:17Z" level=info msg="[param] resolved-base-images-output: /shared/base_images_digests" time="2026-08-18T04:53:17Z" level=info msg="[param] rhsm-mount-ca-certs: auto" time="2026-08-18T04:53:17Z" level=info msg="[param] no-cache: true" time="2026-08-18T04:53:17Z" level=info msg="[param] security-opts: [unmask=/proc/interrupts]" time="2026-08-18T04:53:17Z" level=info msg="[param] ulimits: [nofile=4096:4096]" time="2026-08-18T04:53:17Z" level=info msg="[param] syft-image-output: /shared/sbom-image.json" time="2026-08-18T04:53:17Z" level=info msg="[param] sbom-format: spdx" time="2026-08-18T04:53:17Z" level=info msg="Setting up prefetch integration..." time="2026-08-18T04:53:17Z" level=info msg="Set up 2 prefetch env var(s) as buildah secret env mounts" time="2026-08-18T04:53:23Z" level=info msg="buildah [stderr] Trying to pull registry.access.redhat.com/ubi9/python-39@sha256:01fe0c6b483a3c425a1b851569b4f6445244c95e16c195a4f52c6e860e82891b..." time="2026-08-18T04:53:24Z" level=info msg="buildah [stderr] Getting image source signatures" time="2026-08-18T04:53:25Z" level=info msg="buildah [stderr] Checking if image destination supports signatures" time="2026-08-18T04:53:25Z" level=info msg="buildah [stderr] Copying blob sha256:fb76de9d1083d62946d5e43034624205b358b77720539b7ee130cdeb60500101" time="2026-08-18T04:53:25Z" level=info msg="buildah [stderr] Copying blob sha256:fc07e4fdbabe54e68d395dead6e5f6c44318493d34abba496630ed6bfd19931f" time="2026-08-18T04:53:25Z" level=info msg="buildah [stderr] Copying blob sha256:94a4c2c1356a9e01d6c107308546c37e6dcb7330b4682b70a18750bffddb5e0d" time="2026-08-18T04:53:25Z" level=info msg="buildah [stderr] Copying blob sha256:25ead466f550b0bc693a7ce9debd7c18fa65a7d6986be207da566a72f0923f10" time="2026-08-18T04:53:38Z" level=info msg="buildah [stderr] Copying config sha256:42ec795691e3fa0dc53e1d5d8a29a6db51bab96be3428011d5e95746759eb0fc" time="2026-08-18T04:53:39Z" level=info msg="buildah [stderr] Writing manifest to image destination" time="2026-08-18T04:53:39Z" level=info msg="buildah [stderr] Storing signatures" time="2026-08-18T04:53:39Z" level=info msg="buildah [stdout] 42ec795691e3fa0dc53e1d5d8a29a6db51bab96be3428011d5e95746759eb0fc" time="2026-08-18T04:53:39Z" level=info msg="Injecting buildinfo: added labels.json" time="2026-08-18T04:53:39Z" level=info msg="Injecting buildinfo: added content-sets.json" time="2026-08-18T04:53:39Z" level=info msg="Building container image..." time="2026-08-18T04:53:39Z" level=info msg="buildah [stdout] STEP 1/9: FROM registry.access.redhat.com/ubi9/python-39@sha256:01fe0c6b483a3c425a1b851569b4f6445244c95e16c195a4f52c6e860e82891b" time="2026-08-18T04:53:39Z" level=info msg="buildah [stdout] STEP 2/9: RUN if curl -IsS www.google.com; then echo \"Has network access!\"; exit 1; fi" time="2026-08-18T04:53:40Z" level=info msg="buildah [stderr] curl: (6) Could not resolve host: www.google.com" time="2026-08-18T04:53:41Z" level=info msg="buildah [stdout] STEP 3/9: WORKDIR /opt/test_package_cachi2" time="2026-08-18T04:53:41Z" level=info msg="buildah [stdout] STEP 4/9: COPY . ." time="2026-08-18T04:53:41Z" level=info msg="buildah [stdout] STEP 5/9: RUN pip install -r requirements.txt" time="2026-08-18T04:53:42Z" level=info msg="buildah [stdout] Looking in links: /cachi2/output/deps/pip" time="2026-08-18T04:53:42Z" level=info msg="buildah [stdout] Processing /cachi2/output/deps/pip/dockerfile-parse-36e4469abb0d96b0e3cd656284d5016e8a674cd57b8ebe5af64786fe63b8184d.tar.gz" time="2026-08-18T04:53:42Z" level=info msg="buildah [stdout] Preparing metadata (setup.py): started" time="2026-08-18T04:53:42Z" level=info msg="buildah [stdout] Preparing metadata (setup.py): finished with status 'done'" time="2026-08-18T04:53:42Z" level=info msg="buildah [stdout] Processing /cachi2/output/deps/pip/certifi-2022.12.7.tar.gz" time="2026-08-18T04:53:42Z" level=info msg="buildah [stdout] Preparing metadata (setup.py): started" time="2026-08-18T04:53:42Z" level=info msg="buildah [stdout] Preparing metadata (setup.py): finished with status 'done'" time="2026-08-18T04:53:42Z" level=info msg="buildah [stdout] Processing /cachi2/output/deps/pip/charset-normalizer-3.0.1.tar.gz" time="2026-08-18T04:53:42Z" level=info msg="buildah [stdout] Preparing metadata (setup.py): started" time="2026-08-18T04:53:42Z" level=info msg="buildah [stdout] Preparing metadata (setup.py): finished with status 'done'" time="2026-08-18T04:53:42Z" level=info msg="buildah [stdout] Processing /cachi2/output/deps/pip/idna-3.4.tar.gz" time="2026-08-18T04:53:42Z" level=info msg="buildah [stdout] Installing build dependencies: started" time="2026-08-18T04:53:43Z" level=info msg="buildah [stdout] Installing build dependencies: finished with status 'done'" time="2026-08-18T04:53:43Z" level=info msg="buildah [stdout] Getting requirements to build wheel: started" time="2026-08-18T04:53:43Z" level=info msg="buildah [stdout] Getting requirements to build wheel: finished with status 'done'" time="2026-08-18T04:53:43Z" level=info msg="buildah [stdout] Preparing metadata (pyproject.toml): started" time="2026-08-18T04:53:43Z" level=info msg="buildah [stdout] Preparing metadata (pyproject.toml): finished with status 'done'" time="2026-08-18T04:53:43Z" level=info msg="buildah [stdout] Processing /cachi2/output/deps/pip/requests-2.28.2.tar.gz" time="2026-08-18T04:53:43Z" level=info msg="buildah [stdout] Installing build dependencies: started" time="2026-08-18T04:53:47Z" level=info msg="buildah [stdout] Installing build dependencies: finished with status 'done'" time="2026-08-18T04:53:47Z" level=info msg="buildah [stdout] Getting requirements to build wheel: started" time="2026-08-18T04:53:48Z" level=info msg="buildah [stdout] Getting requirements to build wheel: finished with status 'done'" time="2026-08-18T04:53:48Z" level=info msg="buildah [stdout] Preparing metadata (pyproject.toml): started" time="2026-08-18T04:53:48Z" level=info msg="buildah [stdout] Preparing metadata (pyproject.toml): finished with status 'done'" time="2026-08-18T04:53:48Z" level=info msg="buildah [stdout] Processing /cachi2/output/deps/pip/urllib3-1.26.14.tar.gz" time="2026-08-18T04:53:48Z" level=info msg="buildah [stdout] Preparing metadata (setup.py): started" time="2026-08-18T04:53:48Z" level=info msg="buildah [stdout] Preparing metadata (setup.py): finished with status 'done'" time="2026-08-18T04:53:48Z" level=info msg="buildah [stdout] Using legacy 'setup.py install' for certifi, since package 'wheel' is not installed." time="2026-08-18T04:53:48Z" level=info msg="buildah [stdout] Using legacy 'setup.py install' for charset-normalizer, since package 'wheel' is not installed." time="2026-08-18T04:53:48Z" level=info msg="buildah [stdout] Using legacy 'setup.py install' for urllib3, since package 'wheel' is not installed." time="2026-08-18T04:53:48Z" level=info msg="buildah [stdout] Using legacy 'setup.py install' for dockerfile-parse, since package 'wheel' is not installed." time="2026-08-18T04:53:48Z" level=info msg="buildah [stdout] Building wheels for collected packages: idna, requests" time="2026-08-18T04:53:48Z" level=info msg="buildah [stdout] Building wheel for idna (pyproject.toml): started" time="2026-08-18T04:53:48Z" level=info msg="buildah [stdout] Building wheel for idna (pyproject.toml): finished with status 'done'" time="2026-08-18T04:53:48Z" level=info msg="buildah [stdout] Created wheel for idna: filename=idna-3.4-py3-none-any.whl size=61539 sha256=6414764f630a0f1f4d776d8fad94ed8d9f0baef5320c8b20ecd938ae96751e19" time="2026-08-18T04:53:48Z" level=info msg="buildah [stdout] Stored in directory: /tmp/pip-ephem-wheel-cache-acz2oo9v/wheels/47/63/00/cf4278b3805c252509cddab7c8757262b6a8084a5e91282cca" time="2026-08-18T04:53:48Z" level=info msg="buildah [stdout] Building wheel for requests (pyproject.toml): started" time="2026-08-18T04:53:48Z" level=info msg="buildah [stdout] Building wheel for requests (pyproject.toml): finished with status 'done'" time="2026-08-18T04:53:48Z" level=info msg="buildah [stdout] Created wheel for requests: filename=requests-2.28.2-py3-none-any.whl size=62821 sha256=845fbdf17d6e26539cd41c3fd2e8ea30dae91fc3f46a20ae9a0ce2c9af9a525e" time="2026-08-18T04:53:48Z" level=info msg="buildah [stdout] Stored in directory: /tmp/pip-ephem-wheel-cache-acz2oo9v/wheels/f9/a7/28/94cd4e171a4b97baa549684beaf629e13f642c7c281860690e" time="2026-08-18T04:53:48Z" level=info msg="buildah [stdout] Successfully built idna requests" time="2026-08-18T04:53:48Z" level=info msg="buildah [stdout] Installing collected packages: urllib3, idna, charset-normalizer, certifi, requests, dockerfile-parse" time="2026-08-18T04:53:48Z" level=info msg="buildah [stdout] Running setup.py install for urllib3: started" time="2026-08-18T04:53:49Z" level=info msg="buildah [stdout] Running setup.py install for urllib3: finished with status 'done'" time="2026-08-18T04:53:49Z" level=info msg="buildah [stdout] Running setup.py install for charset-normalizer: started" time="2026-08-18T04:53:49Z" level=info msg="buildah [stdout] Running setup.py install for charset-normalizer: finished with status 'done'" time="2026-08-18T04:53:49Z" level=info msg="buildah [stdout] Running setup.py install for certifi: started" time="2026-08-18T04:53:49Z" level=info msg="buildah [stdout] Running setup.py install for certifi: finished with status 'done'" time="2026-08-18T04:53:49Z" level=info msg="buildah [stdout] Running setup.py install for dockerfile-parse: started" time="2026-08-18T04:53:49Z" level=info msg="buildah [stdout] Running setup.py install for dockerfile-parse: finished with status 'done'" time="2026-08-18T04:53:49Z" level=info msg="buildah [stdout] Successfully installed certifi-2022.12.7 charset-normalizer-3.0.1 dockerfile-parse-2.0.0 idna-3.4 requests-2.28.2 urllib3-1.26.14" time="2026-08-18T04:53:49Z" level=info msg="buildah [stdout] STEP 6/9: CMD [\"python\", \"/opt/test_package_cachi2/src/test_package_cachi2/main.py\"]" time="2026-08-18T04:53:50Z" level=info msg="buildah [stdout] STEP 7/9: COPY --from=.konflux-buildinfo . /usr/share/buildinfo/" time="2026-08-18T04:53:51Z" level=info msg="buildah [stdout] STEP 8/9: COPY --from=.konflux-buildinfo . /root/buildinfo/" time="2026-08-18T04:53:51Z" level=info msg="buildah [stdout] STEP 9/9: LABEL \"org.opencontainers.image.created\"=\"2026-08-18T04:53:17Z\" \"org.opencontainers.image.source\"=\"https://github.com/redhat-appstudio-qe/pip-sample-repo\" \"org.opencontainers.image.revision\"=\"b034c3f13cdf2a5d1c29cf71e72654df35d7092c\" \"quay.expires-after\"=\"5d\" \"build-date\"=\"2026-08-18T04:53:17Z\" \"architecture\"=\"x86_64\" \"vcs-url\"=\"https://github.com/redhat-appstudio-qe/pip-sample-repo\" \"vcs-ref\"=\"b034c3f13cdf2a5d1c29cf71e72654df35d7092c\" \"vcs-type\"=\"git\"" time="2026-08-18T04:53:51Z" level=info msg="buildah [stdout] COMMIT quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-b034c3f13cdf2a5d1c29cf71e72654df35d7092c" time="2026-08-18T04:53:55Z" level=info msg="buildah [stdout] --> e83adf38fa1f" time="2026-08-18T04:53:55Z" level=info msg="buildah [stdout] Successfully tagged quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:component-prefetch-pip-on-pull-request-7ltlq-build-container" time="2026-08-18T04:53:55Z" level=info msg="buildah [stdout] Successfully tagged quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-b034c3f13cdf2a5d1c29cf71e72654df35d7092c" time="2026-08-18T04:53:55Z" level=info msg="buildah [stdout] e83adf38fa1f7625d3a416f8c08e189b9abae0041d053e039c2684567b258ce5" time="2026-08-18T04:53:58Z" level=info msg="Build completed successfully" time="2026-08-18T04:53:58Z" level=info msg="Mounting built image filesystem for syft scan..." time="2026-08-18T04:53:58Z" level=info msg="Running syft scan on built image filesystem..." time="2026-08-18T04:54:02Z" level=info msg="Image SBOM written to /shared/sbom-image.json" time="2026-08-18T04:54:03Z" level=info msg="Pushing image to registry: quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-b034c3f13cdf2a5d1c29cf71e72654df35d7092c" time="2026-08-18T04:54:03Z" level=info msg="buildah [stderr] Getting image source signatures" time="2026-08-18T04:54:03Z" level=info msg="buildah [stderr] Copying blob sha256:2f4d39df0947424ffe53eb354e784439e104274bf3eaccf34deef6f02fbe10db" time="2026-08-18T04:54:03Z" level=info msg="buildah [stderr] Copying blob sha256:17e4bf9b37cb91b309570030506a32773e48e3f055d915eb92adad9dabaeb38e" time="2026-08-18T04:54:03Z" level=info msg="buildah [stderr] Copying blob sha256:5c6dc3016f28a686eadd8992845c9ff4f9949681d57e98e896e407689cb9b51e" time="2026-08-18T04:54:03Z" level=info msg="buildah [stderr] Copying blob sha256:a554e7cda9270a1a3c736f3e16e88f5d9d6798b46f48a3ac78c343b83d6e2dbc" time="2026-08-18T04:54:03Z" level=info msg="buildah [stderr] Copying blob sha256:f6236aa24d3908b136b70ac9d9fb4656d46c35b664852b5d6b0836ddb04bf374" time="2026-08-18T04:54:13Z" level=info msg="buildah [stderr] Copying config sha256:e83adf38fa1f7625d3a416f8c08e189b9abae0041d053e039c2684567b258ce5" time="2026-08-18T04:54:15Z" level=info msg="buildah [stderr] Writing manifest to image destination" time="2026-08-18T04:54:16Z" level=info msg="Push completed successfully" time="2026-08-18T04:54:16Z" level=info msg="Image digest: sha256:c1660947fdedaf7d9f6945d8919aaa84952ad02667f0b2bfb57ad942ac928351" time="2026-08-18T04:54:16Z" level=info msg="Pushing additional tag: component-prefetch-pip-on-pull-request-7ltlq-build-container" time="2026-08-18T04:54:16Z" level=info msg="buildah [stderr] Getting image source signatures" time="2026-08-18T04:54:16Z" level=info msg="buildah [stderr] Copying blob sha256:2f4d39df0947424ffe53eb354e784439e104274bf3eaccf34deef6f02fbe10db" time="2026-08-18T04:54:16Z" level=info msg="buildah [stderr] Copying blob sha256:17e4bf9b37cb91b309570030506a32773e48e3f055d915eb92adad9dabaeb38e" time="2026-08-18T04:54:16Z" level=info msg="buildah [stderr] Copying blob sha256:5c6dc3016f28a686eadd8992845c9ff4f9949681d57e98e896e407689cb9b51e" time="2026-08-18T04:54:16Z" level=info msg="buildah [stderr] Copying blob sha256:a554e7cda9270a1a3c736f3e16e88f5d9d6798b46f48a3ac78c343b83d6e2dbc" time="2026-08-18T04:54:16Z" level=info msg="buildah [stderr] Copying blob sha256:f6236aa24d3908b136b70ac9d9fb4656d46c35b664852b5d6b0836ddb04bf374" time="2026-08-18T04:54:18Z" level=info msg="buildah [stderr] Copying config sha256:e83adf38fa1f7625d3a416f8c08e189b9abae0041d053e039c2684567b258ce5" time="2026-08-18T04:54:18Z" level=info msg="buildah [stderr] Writing manifest to image destination" time="2026-08-18T04:54:18Z" level=info msg="Pushed additional tag successfully: component-prefetch-pip-on-pull-request-7ltlq-build-container" time="2026-08-18T04:54:18Z" level=info msg="Writing parsed Containerfile to: /shared/parsed_dockerfile.json" time="2026-08-18T04:54:18Z" level=info msg="Containerfile JSON written successfully" time="2026-08-18T04:54:18Z" level=info msg="Writing resolved base images to: /shared/base_images_digests" time="2026-08-18T04:54:18Z" level=info msg="Resolved base images written successfully" {"image_url":"quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-b034c3f13cdf2a5d1c29cf71e72654df35d7092c","digest":"sha256:c1660947fdedaf7d9f6945d8919aaa84952ad02667f0b2bfb57ad942ac928351"} [2026-08-18T04:54:18,610398747+00:00] Add metadata Making copy of sbom-prefetch.json [2026-08-18T04:54:18,613288338+00:00] End build pod: component-prefetch-pip-on-p81465e1a574b3cd66e0d7aa96051f9f5-pod | container step-prepare-sboms: [2026-08-18T04:54:18,756776886+00:00] Prepare SBOM [2026-08-18T04:54:18,761270297+00:00] Generate SBOM with mobster Skipping SBOM validation 2026-08-18 04:54:37,262 [INFO] mobster.log: Logging level set to 20 2026-08-18 04:54:38,765 [INFO] mobster.cmd.generate.oci_image.hermeto_sbom_filter: Filtering SPDX SBOM by architecture: amd64 2026-08-18 04:54:38,766 [INFO] mobster.cmd.generate.oci_image.hermeto_sbom_filter: Filtered 0 packages out of 11 (11 remaining) 2026-08-18 04:54:42,060 [INFO] mobster.main: Exiting with code 0. [2026-08-18T04:54:43,261517597+00:00] End prepare-sboms pod: component-prefetch-pip-on-p81465e1a574b3cd66e0d7aa96051f9f5-pod | container step-upload-sbom: INFO: Using mounted CA bundle: /mnt/trusted-ca/ca-bundle.crt '/mnt/trusted-ca/ca-bundle.crt' -> '/etc/pki/ca-trust/source/anchors/ca-bundle.crt' Using token for quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip [2026-08-18T04:55:23,557274034+00:00] Upload SBOM Pushing sbom to registry [retry] executing: cosign attach sbom --sbom sbom.json --type spdx quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-b034c3f13cdf2a5d1c29cf71e72654df35d7092c@sha256:c1660947fdedaf7d9f6945d8919aaa84952ad02667f0b2bfb57ad942ac928351 WARNING: SBOM attachments are deprecated and support will be removed in a Cosign release soon after 2024-02-22 (see https://github.com/sigstore/cosign/issues/2755). Instead, please use SBOM attestations. WARNING: Attaching SBOMs this way does not sign them. To sign them, use 'cosign attest --predicate sbom.json --key '. Uploading SBOM file for [quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip@sha256:c1660947fdedaf7d9f6945d8919aaa84952ad02667f0b2bfb57ad942ac928351] to [quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:sha256-c1660947fdedaf7d9f6945d8919aaa84952ad02667f0b2bfb57ad942ac928351.sbom] with mediaType [text/spdx+json]. quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip@sha256:b8a57c70f7e96a36e5415f4c55a1d7c7e0abf1ec5197e5eb2fe8b14a0f99a1ef [2026-08-18T04:55:26,650574140+00:00] Handle keyless signing if enabled [retry] executing: kubectl get configmap cluster-config -n konflux-info -o json Keyless signing is disabled (none of rekorInternalUrl, fulcioInternalUrl, defaultOIDCIssuer, tufInternalUrl are configured in the konflux-info/cluster-config configmap) [2026-08-18T04:55:27,555973425+00:00] End upload-sbom pod: component-prefetch-pip-on-p88408f308979c782ecc1e06b462cb0d4-pod | init container: prepare 2026/08/18 04:52:37 Entrypoint initialization pod: component-prefetch-pip-on-p88408f308979c782ecc1e06b462cb0d4-pod | init container: place-scripts 2026/08/18 04:52:39 Decoded script /tekton/scripts/script-0-cp5jc pod: component-prefetch-pip-on-p88408f308979c782ecc1e06b462cb0d4-pod | container step-clone: INFO: Using mounted CA bundle: /mnt/trusted-ca/ca-bundle.crt '/mnt/trusted-ca/ca-bundle.crt' -> '/etc/pki/ca-trust/source/anchors/ca-bundle.crt' time="2026-08-18T04:52:46Z" level=info msg="[param] url: https://github.com/redhat-appstudio-qe/pip-sample-repo" time="2026-08-18T04:52:46Z" level=info msg="[param] revision: b034c3f13cdf2a5d1c29cf71e72654df35d7092c" time="2026-08-18T04:52:46Z" level=info msg="[param] depth: 1" time="2026-08-18T04:52:46Z" level=info msg="[param] short-commit-length: 7" time="2026-08-18T04:52:46Z" level=info msg="[param] subdirectory: source" time="2026-08-18T04:52:46Z" level=info msg="[param] delete-existing: true" time="2026-08-18T04:52:46Z" level=info msg="[param] target-branch: main" time="2026-08-18T04:52:46Z" level=info msg="[param] merge-commit-author-name: Konflux CI Git Clone" time="2026-08-18T04:52:46Z" level=info msg="[param] merge-commit-author-email: git-clone@konflux-ci.dev" time="2026-08-18T04:52:46Z" level=info msg="[param] output-dir: /workspace/output" time="2026-08-18T04:52:46Z" level=info msg="[param] retry-max-attempts: 10" time="2026-08-18T04:52:46Z" level=info msg="[param] basic-auth-directory: /workspace/basic-auth" pod: component-prefetch-pip-on-paa3663e41872bc4729b9cc11dd75e57e-pod | init container: prepare 2026/08/18 04:57:51 Entrypoint initialization pod: component-prefetch-pip-on-paa3663e41872bc4729b9cc11dd75e57e-pod | init container: place-scripts 2026/08/18 04:57:56 Decoded script /tekton/scripts/script-0-wr486 2026/08/18 04:57:56 Decoded script /tekton/scripts/script-1-xm7zw pod: component-prefetch-pip-on-paa3663e41872bc4729b9cc11dd75e57e-pod | init container: working-dir-initializer pod: component-prefetch-pip-on-paa3663e41872bc4729b9cc11dd75e57e-pod | container step-sast-snyk-check: INFO: The PROJECT_NAME used is: component-prefetch-pip INFO: Using mounted CA bundle: /mnt/trusted-ca/ca-bundle.crt '/mnt/trusted-ca/ca-bundle.crt' -> '/etc/pki/ca-trust/source/anchors/ca-bundle.crt' {"result":"SKIPPED","timestamp":"2026-08-18T04:58:12+00:00","note":"Task sast-snyk-check skipped: If you wish to use the Snyk code SAST task, please create a secret name snyk-secret with the key 'snyk_token' containing the Snyk token by following the steps given [here](https://konflux-ci.dev/docs/testing/build/snyk/)","namespace":"default","successes":0,"failures":0,"warnings":0} pod: component-prefetch-pip-on-paa3663e41872bc4729b9cc11dd75e57e-pod | container step-upload: No sast_snyk_check_out.sarif exists. Skipping upload. No excluded-findings.json exists. Skipping upload. pod: component-prefetch-pip-on-pbb7ffa805a0143596ef95b496be1e382-pod | init container: prepare 2026/08/18 04:56:19 Entrypoint initialization pod: component-prefetch-pip-on-pbb7ffa805a0143596ef95b496be1e382-pod | init container: place-scripts 2026/08/18 04:56:25 Decoded script /tekton/scripts/script-0-5rx6g 2026/08/18 04:56:25 Decoded script /tekton/scripts/script-1-4rpvl 2026/08/18 04:56:25 Decoded script /tekton/scripts/script-2-xxc67 2026/08/18 04:56:25 Decoded script /tekton/scripts/script-3-p8dg4 2026/08/18 04:56:25 Decoded script /tekton/scripts/script-4-g8gbd 2026/08/18 04:56:25 Decoded script /tekton/scripts/script-5-vl7fb pod: component-prefetch-pip-on-pbb7ffa805a0143596ef95b496be1e382-pod | container step-introspect: Artifact type will be determined by introspection. Checking the media type of the OCI artifact... [retry] executing: skopeo inspect --raw --retry-times 3 docker://quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-b034c3f13cdf2a5d1c29cf71e72654df35d7092c The media type of the OCI artifact is application/vnd.docker.distribution.manifest.v2+json. Looking for image labels that indicate this might be an operator bundle... [retry] executing: skopeo inspect --retry-times 3 docker://quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-b034c3f13cdf2a5d1c29cf71e72654df35d7092c Found 0 matching labels. Expecting 3 or more to identify this image as an operator bundle. Introspection concludes that this artifact is of type "application". pod: component-prefetch-pip-on-pbb7ffa805a0143596ef95b496be1e382-pod | container step-generate-container-auth: Selecting auth for quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-b034c3f13cdf2a5d1c29cf71e72654df35d7092c Using token for quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip Auth json written to "/auth/auth.json". pod: component-prefetch-pip-on-pbb7ffa805a0143596ef95b496be1e382-pod | container step-set-skip-for-bundles: 2026/08/18 04:57:02 INFO Step was skipped due to when expressions were evaluated to false. pod: component-prefetch-pip-on-pbb7ffa805a0143596ef95b496be1e382-pod | container step-app-check: time="2026-08-18T04:57:03Z" level=info msg="certification library version" version="1.20.0 " time="2026-08-18T04:57:04Z" level=info msg="running checks for quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-b034c3f13cdf2a5d1c29cf71e72654df35d7092c for platform amd64" time="2026-08-18T04:57:04Z" level=info msg="target image" image="quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-b034c3f13cdf2a5d1c29cf71e72654df35d7092c" time="2026-08-18T04:57:24Z" level=info msg="warning: licenses directory does not exist or all of its children are empty directories: error when checking for /licenses: stat /tmp/preflight-2074753030/fs/licenses: no such file or directory" check=HasLicense time="2026-08-18T04:57:24Z" level=info msg="check completed" check=HasLicense result=FAILED time="2026-08-18T04:57:24Z" level=info msg="check completed" check=HasUniqueTag result=PASSED time="2026-08-18T04:57:24Z" level=info msg="check completed" check=LayerCountAcceptable result=PASSED time="2026-08-18T04:57:24Z" level=info msg="check completed" check=HasNoProhibitedPackages result=PASSED time="2026-08-18T04:57:24Z" level=info msg="check completed" check=HasRequiredLabel result=PASSED time="2026-08-18T04:57:24Z" level=info msg="USER 1001 specified that is non-root" check=RunAsNonRoot time="2026-08-18T04:57:24Z" level=info msg="check completed" check=RunAsNonRoot result=PASSED time="2026-08-18T04:57:43Z" level=info msg="check completed" check=HasModifiedFiles result=PASSED time="2026-08-18T04:57:44Z" level=info msg="check completed" check=BasedOnUbi result=PASSED time="2026-08-18T04:57:44Z" level=info msg="This image's tag on-pr-b034c3f13cdf2a5d1c29cf71e72654df35d7092c will be paired with digest sha256:49d53361aeb707039d663d25fb4798e2db478f974784008da798975f72a0ce2a once this image has been published in accordance with Red Hat Certification policy. You may then add or remove any supplemental tags through your Red Hat Connect portal as you see fit." { "image": "quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-b034c3f13cdf2a5d1c29cf71e72654df35d7092c", "passed": false, "test_library": { "name": "github.com/redhat-openshift-ecosystem/openshift-preflight", "version": "1.20.0", "commit": "96798270d2f3299dcce4c385d908b5cd53b7537a" }, "results": { "passed": [ { "name": "HasUniqueTag", "elapsed_time": 0, "description": "Checking if container has a tag other than 'latest', so that the image can be uniquely identified." }, { "name": "LayerCountAcceptable", "elapsed_time": 0, "description": "Checking if container has less than 40 layers. Too many layers within the container images can degrade container performance." }, { "name": "HasNoProhibitedPackages", "elapsed_time": 115, "description": "Checks to ensure that the image in use does not include prohibited packages, such as Red Hat Enterprise Linux (RHEL) kernel packages." }, { "name": "HasRequiredLabel", "elapsed_time": 0, "description": "Checking if the required labels (name, vendor, version, release, summary, description, maintainer) are present in the container metadata" }, { "name": "RunAsNonRoot", "elapsed_time": 0, "description": "Checking if container runs as the root user because a container that does not specify a non-root user will fail the automatic certification, and will be subject to a manual review before the container can be approved for publication" }, { "name": "HasModifiedFiles", "elapsed_time": 19715, "description": "Checks that no files installed via RPM in the base Red Hat layer have been modified" }, { "name": "BasedOnUbi", "elapsed_time": 775, "description": "Checking if the container's base image is based upon the Red Hat Universal Base Image (UBI) or Red Hat Hardened Images (RHHI)" } ], "failed": [ { "name": "HasLicense", "elapsed_time": 0, "description": "Checking if terms and conditions applicable to the software including open source licensing information are present. The license must be at /licenses", "help": "Check HasLicense encountered an error. Please review the preflight.log file for more information.", "suggestion": "Create a directory named /licenses and include all relevant licensing and/or terms and conditions as text file(s) in that directory.", "knowledgebase_url": "https://access.redhat.com/documentation/en-us/red_hat_software_certification/2026/html-single/red_hat_openshift_software_certification_policy_guide/index#assembly-requirements-for-container-images_openshift-sw-cert-policy-introduction", "check_url": "https://access.redhat.com/documentation/en-us/red_hat_software_certification/2026/html-single/red_hat_openshift_software_certification_policy_guide/index#assembly-requirements-for-container-images_openshift-sw-cert-policy-introduction" } ], "errors": [] } } time="2026-08-18T04:57:44Z" level=info msg="Preflight result: FAILED" pod: component-prefetch-pip-on-pbb7ffa805a0143596ef95b496be1e382-pod | container step-app-set-outcome: [retry] executing: skopeo inspect --raw --retry-times 3 docker://quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-b034c3f13cdf2a5d1c29cf71e72654df35d7092c {"result":"FAILURE","timestamp":"1787029065","note":"Task preflight is a FAILURE: Refer to Tekton task logs for more information","successes":7,"failures":1,"warnings":0} pod: component-prefetch-pip-on-pbb7ffa805a0143596ef95b496be1e382-pod | container step-final-outcome: + [[ ! -f /mount/konflux.results.json ]] + tee /tekton/steps/step-final-outcome/results/test-output {"result":"FAILURE","timestamp":"1787029065","note":"Task preflight is a FAILURE: Refer to Tekton task logs for more information","successes":7,"failures":1,"warnings":0} pod: component-prefetch-pip-on-pbec160d12830f5e8e1277bfc5459a48a-pod | init container: prepare 2026/08/18 04:55:54 Entrypoint initialization pod: component-prefetch-pip-on-pbec160d12830f5e8e1277bfc5459a48a-pod | init container: place-scripts 2026/08/18 04:55:58 Decoded script /tekton/scripts/script-0-xk9gb 2026/08/18 04:55:58 Decoded script /tekton/scripts/script-1-hjh5q 2026/08/18 04:55:58 Decoded script /tekton/scripts/script-2-tbmhr pod: component-prefetch-pip-on-pbec160d12830f5e8e1277bfc5459a48a-pod | container step-build: [2026-08-18T04:56:12,261198969+00:00] Update CA trust INFO: Using mounted CA bundle: /mnt/trusted-ca/ca-bundle.crt '/mnt/trusted-ca/ca-bundle.crt' -> '/etc/pki/ca-trust/source/anchors/ca-bundle.crt' Running konflux-build-cli time="2026-08-18T04:56:16Z" level=info msg="[param] image: quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-a421fa0f323cb04a0a6eee0653f82d872445df3e" time="2026-08-18T04:56:16Z" level=info msg="[param] images: [quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-a421fa0f323cb04a0a6eee0653f82d872445df3e@sha256:a4f38c45758095f26b5c21e54b043a454078ecfda53d90909f2f6c98324cff87]" time="2026-08-18T04:56:16Z" level=info msg="[param] buildah-format: docker" time="2026-08-18T04:56:16Z" level=info msg="[param] always-build-index: false" time="2026-08-18T04:56:16Z" level=info msg="[param] additional-tags: [component-prefetch-pip-on-pull-request-m9fb5-build-image-index]" time="2026-08-18T04:56:16Z" level=info msg="[param] output-manifest-path: /index-build-data/manifest_data.json" time="2026-08-18T04:56:16Z" level=info msg="[param] result-path-image-digest: /tekton/results/IMAGE_DIGEST" time="2026-08-18T04:56:16Z" level=info msg="[param] result-path-image-url: /tekton/results/IMAGE_URL" time="2026-08-18T04:56:16Z" level=info msg="[param] result-path-image-ref: /tekton/results/IMAGE_REF" time="2026-08-18T04:56:16Z" level=info msg="[param] result-path-images: /tekton/results/IMAGES" time="2026-08-18T04:56:16Z" level=info msg="Creating manifest list: quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-a421fa0f323cb04a0a6eee0653f82d872445df3e" time="2026-08-18T04:56:16Z" level=info msg="buildah [stdout] 6724acfc5229397153c80dc91d8a05e37eaf8b4468ba604091571032fced46fb" time="2026-08-18T04:56:16Z" level=info msg="Skipping image index generation. Returning results for single image." {"image_digest":"sha256:a4f38c45758095f26b5c21e54b043a454078ecfda53d90909f2f6c98324cff87","image_url":"quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-a421fa0f323cb04a0a6eee0653f82d872445df3e","image_ref":"quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip@sha256:a4f38c45758095f26b5c21e54b043a454078ecfda53d90909f2f6c98324cff87","images":"quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip@sha256:a4f38c45758095f26b5c21e54b043a454078ecfda53d90909f2f6c98324cff87"} pod: component-prefetch-pip-on-pbec160d12830f5e8e1277bfc5459a48a-pod | container step-create-sbom: The manifest_data.json file does not exist. Skipping the SBOM creation... pod: component-prefetch-pip-on-pbec160d12830f5e8e1277bfc5459a48a-pod | container step-upload-sbom: [2026-08-18T04:56:17,997166379+00:00] Update CA trust INFO: Using mounted CA bundle: /mnt/trusted-ca/ca-bundle.crt '/mnt/trusted-ca/ca-bundle.crt' -> '/etc/pki/ca-trust/source/anchors/ca-bundle.crt' The index.spdx.json file does not exists. Skipping the SBOM upload... pod: component-prefetch-pip-on-pc672e067b629c1ae9ed6dc555293ebab-pod | init container: prepare 2026/08/18 04:52:42 Entrypoint initialization pod: component-prefetch-pip-on-pc672e067b629c1ae9ed6dc555293ebab-pod | init container: place-scripts 2026/08/18 04:52:43 Decoded script /tekton/scripts/script-0-lgwmt pod: component-prefetch-pip-on-pc672e067b629c1ae9ed6dc555293ebab-pod | container step-clone: INFO: Using mounted CA bundle: /mnt/trusted-ca/ca-bundle.crt '/mnt/trusted-ca/ca-bundle.crt' -> '/etc/pki/ca-trust/source/anchors/ca-bundle.crt' time="2026-08-18T04:52:49Z" level=info msg="[param] url: https://github.com/redhat-appstudio-qe/pip-sample-repo" time="2026-08-18T04:52:49Z" level=info msg="[param] revision: a421fa0f323cb04a0a6eee0653f82d872445df3e" time="2026-08-18T04:52:49Z" level=info msg="[param] depth: 1" time="2026-08-18T04:52:49Z" level=info msg="[param] short-commit-length: 7" time="2026-08-18T04:52:49Z" level=info msg="[param] subdirectory: source" time="2026-08-18T04:52:49Z" level=info msg="[param] delete-existing: true" time="2026-08-18T04:52:49Z" level=info msg="[param] target-branch: main" time="2026-08-18T04:52:49Z" level=info msg="[param] merge-commit-author-name: Konflux CI Git Clone" time="2026-08-18T04:52:49Z" level=info msg="[param] merge-commit-author-email: git-clone@konflux-ci.dev" time="2026-08-18T04:52:49Z" level=info msg="[param] output-dir: /workspace/output" time="2026-08-18T04:52:49Z" level=info msg="[param] retry-max-attempts: 10" time="2026-08-18T04:52:49Z" level=info msg="[param] basic-auth-directory: /workspace/basic-auth" pod: component-prefetch-pip-on-pc8638f3d4b6cb9fce02765fc904d4781-pod | init container: prepare 2026/08/18 04:56:30 Entrypoint initialization pod: component-prefetch-pip-on-pc8638f3d4b6cb9fce02765fc904d4781-pod | init container: place-scripts 2026/08/18 04:56:41 Decoded script /tekton/scripts/script-0-9vxfb 2026/08/18 04:56:41 Decoded script /tekton/scripts/script-1-vts4q pod: component-prefetch-pip-on-pc8638f3d4b6cb9fce02765fc904d4781-pod | init container: working-dir-initializer pod: component-prefetch-pip-on-pc8638f3d4b6cb9fce02765fc904d4781-pod | container step-sast-unicode-check: + . /utils.sh ++ OPM_RENDER_CACHE=/tmp/konflux-test-opm-cache ++ DEFAULT_INDEX_IMAGE=registry.redhat.io/redhat/redhat-operator-index + trap 'handle_error /tekton/results/TEST_OUTPUT' EXIT + [[ -z '' ]] + PROJECT_NAME=component-prefetch-pip INFO: The PROJECT_NAME used is: component-prefetch-pip + echo 'INFO: The PROJECT_NAME used is: component-prefetch-pip' + ca_bundle=/mnt/trusted-ca/ca-bundle.crt + '[' -f /mnt/trusted-ca/ca-bundle.crt ']' + echo 'INFO: Using mounted CA bundle: /mnt/trusted-ca/ca-bundle.crt' + cp -vf /mnt/trusted-ca/ca-bundle.crt /etc/pki/ca-trust/source/anchors INFO: Using mounted CA bundle: /mnt/trusted-ca/ca-bundle.crt + update-ca-trust '/mnt/trusted-ca/ca-bundle.crt' -> '/etc/pki/ca-trust/source/anchors/ca-bundle.crt' + SCAN_PROP=https://github.com/siddhesh/find-unicode-control.git#c2accbfbba7553a8bc1ebd97089ae08ad8347e58 + FUC_EXIT_CODE=0 + declare -a ALL_TARGETS + OLD_IFS=' ' + IFS=, + for d in $TARGET_DIRS + ALL_TARGETS+=("${SOURCE_CODE_DIR}/source/${d}") + IFS=' ' + LANG=en_US.utf8 + find_unicode_control.py -p bidi -v -d -t /workspace/workspace/source/. + [[ 0 -ne 0 ]] + sed -i raw_sast_unicode_check_out.txt -E -e 's|(.*:[0-9]+)(.*)|\1: warning:\2|' -e 's|^|Error: UNICONTROL_WARNING:\n|' + CSGERP_OPTS=(--mode=json --remove-duplicates --embed-context=3 --set-scan-prop="${SCAN_PROP}" --strip-path-prefix="${SOURCE_CODE_DIR}"/source/) + csgrep --mode=json --remove-duplicates --embed-context=3 --set-scan-prop=https://github.com/siddhesh/find-unicode-control.git#c2accbfbba7553a8bc1ebd97089ae08ad8347e58 --strip-path-prefix=/workspace/workspace/source/ raw_sast_unicode_check_out.txt + csgrep --mode=evtstat processed_sast_unicode_check_out.json + [[ SITE_DEFAULT == \S\I\T\E\_\D\E\F\A\U\L\T ]] + KFP_GIT_URL=https://gitlab.cee.redhat.com/osh/known-false-positives.git + PROBE_URL=https://gitlab.cee.redhat.com/osh/known-false-positives + KFP_DIR=known-false-positives + KFP_CLONED=0 + mkdir known-false-positives + [[ -n https://gitlab.cee.redhat.com/osh/known-false-positives.git ]] + echo -n 'INFO: Probing https://gitlab.cee.redhat.com/osh/known-false-positives... ' + curl --fail --head --max-time 60 --no-progress-meter https://gitlab.cee.redhat.com/osh/known-false-positives ++ head -1 curl: (6) Could not resolve host: gitlab.cee.redhat.com INFO: Probing https://gitlab.cee.redhat.com/osh/known-false-positives... WARN: Failed to clone known-false-positives at https://gitlab.cee.redhat.com/osh/known-false-positives.git, scan results will not be filtered + [[ 0 -eq 0 ]] + echo 'WARN: Failed to clone known-false-positives at https://gitlab.cee.redhat.com/osh/known-false-positives.git, scan results will not be filtered' + mv processed_sast_unicode_check_out.json sast_unicode_check_out.json + csgrep --mode=sarif sast_unicode_check_out.json + [[ 0 -eq 0 ]] + note='Task sast-unicode-check success: No finding was detected' ++ make_result_json -r SUCCESS -t 'Task sast-unicode-check success: No finding was detected' ++ local RESULT= ++ local SUCCESSES=0 ++ local FAILURES=0 ++ local WARNINGS=0 ++ local 'NOTE=For details, check Tekton task log.' ++ local NAMESPACE=default ++ local OUTPUT ++ local OPTIND opt ++ getopts :r:s:f:w:t:n: opt ++ case "${opt}" in ++ RESULT=SUCCESS ++ getopts :r:s:f:w:t:n: opt ++ case "${opt}" in ++ NOTE='Task sast-unicode-check success: No finding was detected' ++ getopts :r:s:f:w:t:n: opt ++ shift 4 ++ '[' -z SUCCESS ']' ++ case "${RESULT}" in ++++ date -u --iso-8601=seconds +++ jq -rce --arg date 2026-08-18T04:57:32+00:00 --arg result SUCCESS --arg note 'Task sast-unicode-check success: No finding was detected' --arg namespace default --arg successes 0 --arg failures 0 --arg warnings 0 --null-input '{ result: $result, timestamp: $date, note: $note, namespace: $namespace, successes: $successes|tonumber, failures: $failures|tonumber, warnings: $warnings|tonumber }' ++ OUTPUT='{"result":"SUCCESS","timestamp":"2026-08-18T04:57:32+00:00","note":"Task sast-unicode-check success: No finding was detected","namespace":"default","successes":0,"failures":0,"warnings":0}' ++ echo '{"result":"SUCCESS","timestamp":"2026-08-18T04:57:32+00:00","note":"Task sast-unicode-check success: No finding was detected","namespace":"default","successes":0,"failures":0,"warnings":0}' + ERROR_OUTPUT='{"result":"SUCCESS","timestamp":"2026-08-18T04:57:32+00:00","note":"Task sast-unicode-check success: No finding was detected","namespace":"default","successes":0,"failures":0,"warnings":0}' + tee /tekton/results/TEST_OUTPUT + echo '{"result":"SUCCESS","timestamp":"2026-08-18T04:57:32+00:00","note":"Task sast-unicode-check success: No finding was detected","namespace":"default","successes":0,"failures":0,"warnings":0}' + handle_error /tekton/results/TEST_OUTPUT + exit_code=0 + '[' 0 -ne 0 ']' + exit 0 {"result":"SUCCESS","timestamp":"2026-08-18T04:57:32+00:00","note":"Task sast-unicode-check success: No finding was detected","namespace":"default","successes":0,"failures":0,"warnings":0} pod: component-prefetch-pip-on-pc8638f3d4b6cb9fce02765fc904d4781-pod | container step-upload: Selecting auth Using token for quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip Attaching to quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-b034c3f13cdf2a5d1c29cf71e72654df35d7092c Executing: oras attach --no-tty --registry-config /home/oras/auth.json --artifact-type application/sarif+json quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-b034c3f13cdf2a5d1c29cf71e72654df35d7092c@sha256:c1660947fdedaf7d9f6945d8919aaa84952ad02667f0b2bfb57ad942ac928351 sast_unicode_check_out.sarif:application/sarif+json Preparing sast_unicode_check_out.sarif Exists e8cd1c5aaef5 sast_unicode_check_out.sarif Exists 44136fa355b3 application/vnd.oci.empty.v1+json Uploading 5ab75c25cb95 application/vnd.oci.image.manifest.v1+json Uploaded 5ab75c25cb95 application/vnd.oci.image.manifest.v1+json Attached to [registry] quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-b034c3f13cdf2a5d1c29cf71e72654df35d7092c@sha256:c1660947fdedaf7d9f6945d8919aaa84952ad02667f0b2bfb57ad942ac928351 Digest: sha256:5ab75c25cb957dc28af44eb6ad26187730cf380b8491ff2eb85035e199c635d5 No excluded-findings.json exists. Skipping upload. pod: component-prefetch-pip-on-pe188dbbd86f0d275e1ef96c31b6355f7-pod | init container: prepare 2026/08/18 04:52:59 Entrypoint initialization pod: component-prefetch-pip-on-pe188dbbd86f0d275e1ef96c31b6355f7-pod | init container: place-scripts 2026/08/18 04:53:00 Decoded script /tekton/scripts/script-0-5xqhg 2026/08/18 04:53:00 Decoded script /tekton/scripts/script-1-bpbwk 2026/08/18 04:53:00 Decoded script /tekton/scripts/script-2-62xdf pod: component-prefetch-pip-on-pe188dbbd86f0d275e1ef96c31b6355f7-pod | init container: working-dir-initializer pod: component-prefetch-pip-on-pe188dbbd86f0d275e1ef96c31b6355f7-pod | container step-build: [2026-08-18T04:53:04,062339084+00:00] Using mounted CA bundle: /mnt/trusted-ca/ca-bundle.crt '/mnt/trusted-ca/ca-bundle.crt' -> '/etc/pki/ca-trust/source/anchors/ca-bundle.crt' [2026-08-18T04:53:04,075410227+00:00] Update CA trust [2026-08-18T04:53:06,448935262+00:00] Prepare system (architecture: x86_64) Effective container policy: { "default": [ { "type": "insecureAcceptAnything" } ], "transports": { "docker-daemon": { "": [ { "type": "insecureAcceptAnything" } ] } } } [2026-08-18T04:53:06,465809617+00:00] Run the build [2026-08-18T04:53:06,469432096+00:00] konflux-build-cli image build -f /workspace/source/source/./Dockerfile -t quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-c57a4cc803875e74d17199e5d1a90f62fa4dab4a --source source --context . --additional-tags component-prefetch-pip-on-pull-request-bmmsf-build-container --push --push-format docker --secret-dirs src=/additional-secret\,name=does-not-exist\,optional=true --workdir-mount '' --target '' --inherit-labels=true --source-date-epoch '' --rewrite-timestamp=false --squash=false --omit-history=false --image-source https://github.com/redhat-appstudio-qe/pip-sample-repo --image-revision c57a4cc803875e74d17199e5d1a90f62fa4dab4a --quay-image-expires-after 5d --build-args-file '' --annotations-file '' --legacy-build-timestamp '' --add-legacy-labels --include-legacy-buildinfo-path=true --skip-injections=false --skip-unused-stages=true --hermetic=true --image-pull-proxy '' --image-pull-noproxy '' --yum-repos-d-sources --yum-repos-d-target /etc/yum.repos.d --prefetch-dir /workspace/source/cachi2 --prefetch-dir-copy /workspace/source/prefetch-copy --prefetch-env-mount /cachi2/cachi2.env --prefetch-output-mount /cachi2/output --security-opts unmask=/proc/interrupts --sbom-format spdx --syft-select-catalogers '' --syft-image-output /shared/sbom-image.json --containerfile-json-output /shared/parsed_dockerfile.json --resolved-base-images-output /shared/base_images_digests --no-cache --ulimits nofile=4096:4096 --src-tls-verify=true --dest-tls-verify=true --allow-cross-platform-images=false --build-args --envs --labels --annotations time="2026-08-18T04:53:06Z" level=info msg="[param] containerfile: /workspace/source/source/./Dockerfile" time="2026-08-18T04:53:06Z" level=info msg="[param] context: ." time="2026-08-18T04:53:06Z" level=info msg="[param] source: source" time="2026-08-18T04:53:06Z" level=info msg="[param] output-ref: quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-c57a4cc803875e74d17199e5d1a90f62fa4dab4a" time="2026-08-18T04:53:06Z" level=info msg="[param] additional-tags: [component-prefetch-pip-on-pull-request-bmmsf-build-container]" time="2026-08-18T04:53:06Z" level=info msg="[param] push: true" time="2026-08-18T04:53:06Z" level=info msg="[param] push-format: docker" time="2026-08-18T04:53:06Z" level=info msg="[param] secret-dirs: [src=/additional-secret,name=does-not-exist,optional=true]" time="2026-08-18T04:53:06Z" level=info msg="[param] image-source: https://github.com/redhat-appstudio-qe/pip-sample-repo" time="2026-08-18T04:53:06Z" level=info msg="[param] image-revision: c57a4cc803875e74d17199e5d1a90f62fa4dab4a" time="2026-08-18T04:53:06Z" level=info msg="[param] quay-image-expires-after: 5d" time="2026-08-18T04:53:06Z" level=info msg="[param] add-legacy-labels: true" time="2026-08-18T04:53:06Z" level=info msg="[param] containerfile-json-output: /shared/parsed_dockerfile.json" time="2026-08-18T04:53:06Z" level=info msg="[param] include-legacy-buildinfo-path: true" time="2026-08-18T04:53:06Z" level=info msg="[param] hermetic: true" time="2026-08-18T04:53:06Z" level=info msg="[param] yum-repos-d-target: /etc/yum.repos.d" time="2026-08-18T04:53:06Z" level=info msg="[param] prefetch-dir: /workspace/source/cachi2" time="2026-08-18T04:53:06Z" level=info msg="[param] prefetch-dir-copy: /workspace/source/prefetch-copy" time="2026-08-18T04:53:06Z" level=info msg="[param] prefetch-output-mount: /cachi2/output" time="2026-08-18T04:53:06Z" level=info msg="[param] prefetch-env-mount: /cachi2/cachi2.env" time="2026-08-18T04:53:06Z" level=info msg="[param] resolved-base-images-output: /shared/base_images_digests" time="2026-08-18T04:53:06Z" level=info msg="[param] rhsm-mount-ca-certs: auto" time="2026-08-18T04:53:06Z" level=info msg="[param] no-cache: true" time="2026-08-18T04:53:06Z" level=info msg="[param] security-opts: [unmask=/proc/interrupts]" time="2026-08-18T04:53:06Z" level=info msg="[param] ulimits: [nofile=4096:4096]" time="2026-08-18T04:53:06Z" level=info msg="[param] syft-image-output: /shared/sbom-image.json" time="2026-08-18T04:53:06Z" level=info msg="[param] sbom-format: spdx" time="2026-08-18T04:53:06Z" level=info msg="Setting up prefetch integration..." time="2026-08-18T04:53:06Z" level=info msg="Set up 2 prefetch env var(s) as buildah secret env mounts" time="2026-08-18T04:53:06Z" level=info msg="buildah [stderr] Trying to pull registry.access.redhat.com/ubi9/python-39@sha256:01fe0c6b483a3c425a1b851569b4f6445244c95e16c195a4f52c6e860e82891b..." time="2026-08-18T04:53:07Z" level=info msg="buildah [stderr] Getting image source signatures" time="2026-08-18T04:53:08Z" level=info msg="buildah [stderr] Checking if image destination supports signatures" time="2026-08-18T04:53:08Z" level=info msg="buildah [stderr] Copying blob sha256:fb76de9d1083d62946d5e43034624205b358b77720539b7ee130cdeb60500101" time="2026-08-18T04:53:08Z" level=info msg="buildah [stderr] Copying blob sha256:fc07e4fdbabe54e68d395dead6e5f6c44318493d34abba496630ed6bfd19931f" time="2026-08-18T04:53:08Z" level=info msg="buildah [stderr] Copying blob sha256:25ead466f550b0bc693a7ce9debd7c18fa65a7d6986be207da566a72f0923f10" time="2026-08-18T04:53:08Z" level=info msg="buildah [stderr] Copying blob sha256:94a4c2c1356a9e01d6c107308546c37e6dcb7330b4682b70a18750bffddb5e0d" time="2026-08-18T04:53:22Z" level=info msg="buildah [stderr] Copying config sha256:42ec795691e3fa0dc53e1d5d8a29a6db51bab96be3428011d5e95746759eb0fc" time="2026-08-18T04:53:23Z" level=info msg="buildah [stderr] Writing manifest to image destination" time="2026-08-18T04:53:23Z" level=info msg="buildah [stderr] Storing signatures" time="2026-08-18T04:53:23Z" level=info msg="buildah [stdout] 42ec795691e3fa0dc53e1d5d8a29a6db51bab96be3428011d5e95746759eb0fc" time="2026-08-18T04:53:24Z" level=info msg="Injecting buildinfo: added labels.json" time="2026-08-18T04:53:24Z" level=info msg="Injecting buildinfo: added content-sets.json" time="2026-08-18T04:53:24Z" level=info msg="Building container image..." time="2026-08-18T04:53:24Z" level=info msg="buildah [stdout] STEP 1/9: FROM registry.access.redhat.com/ubi9/python-39@sha256:01fe0c6b483a3c425a1b851569b4f6445244c95e16c195a4f52c6e860e82891b" time="2026-08-18T04:53:24Z" level=info msg="buildah [stdout] STEP 2/9: RUN if curl -IsS www.google.com; then echo \"Has network access!\"; exit 1; fi" time="2026-08-18T04:53:24Z" level=info msg="buildah [stderr] curl: (6) Could not resolve host: www.google.com" time="2026-08-18T04:53:24Z" level=info msg="buildah [stdout] STEP 3/9: WORKDIR /opt/test_package_cachi2" time="2026-08-18T04:53:24Z" level=info msg="buildah [stdout] STEP 4/9: COPY . ." time="2026-08-18T04:53:24Z" level=info msg="buildah [stdout] STEP 5/9: RUN pip install -r requirements.txt" time="2026-08-18T04:53:25Z" level=info msg="buildah [stdout] Looking in links: /cachi2/output/deps/pip" time="2026-08-18T04:53:25Z" level=info msg="buildah [stdout] Processing /cachi2/output/deps/pip/dockerfile-parse-36e4469abb0d96b0e3cd656284d5016e8a674cd57b8ebe5af64786fe63b8184d.tar.gz" time="2026-08-18T04:53:25Z" level=info msg="buildah [stdout] Preparing metadata (setup.py): started" time="2026-08-18T04:53:25Z" level=info msg="buildah [stdout] Preparing metadata (setup.py): finished with status 'done'" time="2026-08-18T04:53:25Z" level=info msg="buildah [stdout] Processing /cachi2/output/deps/pip/certifi-2022.12.7.tar.gz" time="2026-08-18T04:53:25Z" level=info msg="buildah [stdout] Preparing metadata (setup.py): started" time="2026-08-18T04:53:25Z" level=info msg="buildah [stdout] Preparing metadata (setup.py): finished with status 'done'" time="2026-08-18T04:53:25Z" level=info msg="buildah [stdout] Processing /cachi2/output/deps/pip/charset-normalizer-3.0.1.tar.gz" time="2026-08-18T04:53:25Z" level=info msg="buildah [stdout] Preparing metadata (setup.py): started" time="2026-08-18T04:53:25Z" level=info msg="buildah [stdout] Preparing metadata (setup.py): finished with status 'done'" time="2026-08-18T04:53:25Z" level=info msg="buildah [stdout] Processing /cachi2/output/deps/pip/idna-3.4.tar.gz" time="2026-08-18T04:53:25Z" level=info msg="buildah [stdout] Installing build dependencies: started" time="2026-08-18T04:53:26Z" level=info msg="buildah [stdout] Installing build dependencies: finished with status 'done'" time="2026-08-18T04:53:26Z" level=info msg="buildah [stdout] Getting requirements to build wheel: started" time="2026-08-18T04:53:26Z" level=info msg="buildah [stdout] Getting requirements to build wheel: finished with status 'done'" time="2026-08-18T04:53:26Z" level=info msg="buildah [stdout] Preparing metadata (pyproject.toml): started" time="2026-08-18T04:53:26Z" level=info msg="buildah [stdout] Preparing metadata (pyproject.toml): finished with status 'done'" time="2026-08-18T04:53:26Z" level=info msg="buildah [stdout] Processing /cachi2/output/deps/pip/requests-2.28.2.tar.gz" time="2026-08-18T04:53:26Z" level=info msg="buildah [stdout] Installing build dependencies: started" time="2026-08-18T04:53:30Z" level=info msg="buildah [stdout] Installing build dependencies: finished with status 'done'" time="2026-08-18T04:53:30Z" level=info msg="buildah [stdout] Getting requirements to build wheel: started" time="2026-08-18T04:53:30Z" level=info msg="buildah [stdout] Getting requirements to build wheel: finished with status 'done'" time="2026-08-18T04:53:30Z" level=info msg="buildah [stdout] Preparing metadata (pyproject.toml): started" time="2026-08-18T04:53:30Z" level=info msg="buildah [stdout] Preparing metadata (pyproject.toml): finished with status 'done'" time="2026-08-18T04:53:30Z" level=info msg="buildah [stdout] Processing /cachi2/output/deps/pip/urllib3-1.26.14.tar.gz" time="2026-08-18T04:53:30Z" level=info msg="buildah [stdout] Preparing metadata (setup.py): started" time="2026-08-18T04:53:31Z" level=info msg="buildah [stdout] Preparing metadata (setup.py): finished with status 'done'" time="2026-08-18T04:53:31Z" level=info msg="buildah [stdout] Using legacy 'setup.py install' for certifi, since package 'wheel' is not installed." time="2026-08-18T04:53:31Z" level=info msg="buildah [stdout] Using legacy 'setup.py install' for charset-normalizer, since package 'wheel' is not installed." time="2026-08-18T04:53:31Z" level=info msg="buildah [stdout] Using legacy 'setup.py install' for urllib3, since package 'wheel' is not installed." time="2026-08-18T04:53:31Z" level=info msg="buildah [stdout] Using legacy 'setup.py install' for dockerfile-parse, since package 'wheel' is not installed." time="2026-08-18T04:53:31Z" level=info msg="buildah [stdout] Building wheels for collected packages: idna, requests" time="2026-08-18T04:53:31Z" level=info msg="buildah [stdout] Building wheel for idna (pyproject.toml): started" time="2026-08-18T04:53:31Z" level=info msg="buildah [stdout] Building wheel for idna (pyproject.toml): finished with status 'done'" time="2026-08-18T04:53:31Z" level=info msg="buildah [stdout] Created wheel for idna: filename=idna-3.4-py3-none-any.whl size=61539 sha256=6414764f630a0f1f4d776d8fad94ed8d9f0baef5320c8b20ecd938ae96751e19" time="2026-08-18T04:53:31Z" level=info msg="buildah [stdout] Stored in directory: /tmp/pip-ephem-wheel-cache-ml9uimz2/wheels/47/63/00/cf4278b3805c252509cddab7c8757262b6a8084a5e91282cca" time="2026-08-18T04:53:31Z" level=info msg="buildah [stdout] Building wheel for requests (pyproject.toml): started" time="2026-08-18T04:53:31Z" level=info msg="buildah [stdout] Building wheel for requests (pyproject.toml): finished with status 'done'" time="2026-08-18T04:53:31Z" level=info msg="buildah [stdout] Created wheel for requests: filename=requests-2.28.2-py3-none-any.whl size=62821 sha256=e0c353cd2998583010d957632e09106dd8b44ebb419d97066a335623981ad28d" time="2026-08-18T04:53:31Z" level=info msg="buildah [stdout] Stored in directory: /tmp/pip-ephem-wheel-cache-ml9uimz2/wheels/f9/a7/28/94cd4e171a4b97baa549684beaf629e13f642c7c281860690e" time="2026-08-18T04:53:31Z" level=info msg="buildah [stdout] Successfully built idna requests" time="2026-08-18T04:53:31Z" level=info msg="buildah [stdout] Installing collected packages: urllib3, idna, charset-normalizer, certifi, requests, dockerfile-parse" time="2026-08-18T04:53:31Z" level=info msg="buildah [stdout] Running setup.py install for urllib3: started" time="2026-08-18T04:53:31Z" level=info msg="buildah [stdout] Running setup.py install for urllib3: finished with status 'done'" time="2026-08-18T04:53:31Z" level=info msg="buildah [stdout] Running setup.py install for charset-normalizer: started" time="2026-08-18T04:53:31Z" level=info msg="buildah [stdout] Running setup.py install for charset-normalizer: finished with status 'done'" time="2026-08-18T04:53:31Z" level=info msg="buildah [stdout] Running setup.py install for certifi: started" time="2026-08-18T04:53:31Z" level=info msg="buildah [stdout] Running setup.py install for certifi: finished with status 'done'" time="2026-08-18T04:53:31Z" level=info msg="buildah [stdout] Running setup.py install for dockerfile-parse: started" time="2026-08-18T04:53:32Z" level=info msg="buildah [stdout] Running setup.py install for dockerfile-parse: finished with status 'done'" time="2026-08-18T04:53:32Z" level=info msg="buildah [stdout] Successfully installed certifi-2022.12.7 charset-normalizer-3.0.1 dockerfile-parse-2.0.0 idna-3.4 requests-2.28.2 urllib3-1.26.14" time="2026-08-18T04:53:32Z" level=info msg="buildah [stdout] STEP 6/9: CMD [\"python\", \"/opt/test_package_cachi2/src/test_package_cachi2/main.py\"]" time="2026-08-18T04:53:32Z" level=info msg="buildah [stdout] STEP 7/9: COPY --from=.konflux-buildinfo . /usr/share/buildinfo/" time="2026-08-18T04:53:34Z" level=info msg="buildah [stdout] STEP 8/9: COPY --from=.konflux-buildinfo . /root/buildinfo/" time="2026-08-18T04:53:34Z" level=info msg="buildah [stdout] STEP 9/9: LABEL \"org.opencontainers.image.created\"=\"2026-08-18T04:53:06Z\" \"org.opencontainers.image.source\"=\"https://github.com/redhat-appstudio-qe/pip-sample-repo\" \"org.opencontainers.image.revision\"=\"c57a4cc803875e74d17199e5d1a90f62fa4dab4a\" \"quay.expires-after\"=\"5d\" \"build-date\"=\"2026-08-18T04:53:06Z\" \"architecture\"=\"x86_64\" \"vcs-url\"=\"https://github.com/redhat-appstudio-qe/pip-sample-repo\" \"vcs-ref\"=\"c57a4cc803875e74d17199e5d1a90f62fa4dab4a\" \"vcs-type\"=\"git\"" time="2026-08-18T04:53:35Z" level=info msg="buildah [stdout] COMMIT quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-c57a4cc803875e74d17199e5d1a90f62fa4dab4a" time="2026-08-18T04:53:38Z" level=info msg="buildah [stdout] --> e4a54fd6459f" time="2026-08-18T04:53:38Z" level=info msg="buildah [stdout] Successfully tagged quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:component-prefetch-pip-on-pull-request-bmmsf-build-container" time="2026-08-18T04:53:38Z" level=info msg="buildah [stdout] Successfully tagged quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-c57a4cc803875e74d17199e5d1a90f62fa4dab4a" time="2026-08-18T04:53:39Z" level=info msg="buildah [stdout] e4a54fd6459fc0a89011b307d345c0d4f6fe8c0976e892de70f44e0d11787eb0" time="2026-08-18T04:53:39Z" level=info msg="Build completed successfully" time="2026-08-18T04:53:39Z" level=info msg="Mounting built image filesystem for syft scan..." time="2026-08-18T04:53:39Z" level=info msg="Running syft scan on built image filesystem..." time="2026-08-18T04:53:43Z" level=info msg="Image SBOM written to /shared/sbom-image.json" time="2026-08-18T04:53:43Z" level=info msg="Pushing image to registry: quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-c57a4cc803875e74d17199e5d1a90f62fa4dab4a" time="2026-08-18T04:53:44Z" level=info msg="buildah [stderr] Getting image source signatures" time="2026-08-18T04:53:44Z" level=info msg="buildah [stderr] Copying blob sha256:f74de28de2a5a62d35f1ae1fd229ac52d82b66aadf77b5310707dc3588e21af7" time="2026-08-18T04:53:44Z" level=info msg="buildah [stderr] Copying blob sha256:17e4bf9b37cb91b309570030506a32773e48e3f055d915eb92adad9dabaeb38e" time="2026-08-18T04:53:44Z" level=info msg="buildah [stderr] Copying blob sha256:5c6dc3016f28a686eadd8992845c9ff4f9949681d57e98e896e407689cb9b51e" time="2026-08-18T04:53:44Z" level=info msg="buildah [stderr] Copying blob sha256:a554e7cda9270a1a3c736f3e16e88f5d9d6798b46f48a3ac78c343b83d6e2dbc" time="2026-08-18T04:53:44Z" level=info msg="buildah [stderr] Copying blob sha256:f6236aa24d3908b136b70ac9d9fb4656d46c35b664852b5d6b0836ddb04bf374" time="2026-08-18T04:53:55Z" level=info msg="buildah [stderr] Copying config sha256:e4a54fd6459fc0a89011b307d345c0d4f6fe8c0976e892de70f44e0d11787eb0" time="2026-08-18T04:53:56Z" level=info msg="buildah [stderr] Writing manifest to image destination" time="2026-08-18T04:53:57Z" level=info msg="Push completed successfully" time="2026-08-18T04:53:57Z" level=info msg="Image digest: sha256:309f4fe2ce1d73fb3d820eaf96c53e49b51f075db68811165af0ceaa1abdf064" time="2026-08-18T04:53:57Z" level=info msg="Pushing additional tag: component-prefetch-pip-on-pull-request-bmmsf-build-container" time="2026-08-18T04:53:57Z" level=info msg="buildah [stderr] Getting image source signatures" time="2026-08-18T04:53:57Z" level=info msg="buildah [stderr] Copying blob sha256:f74de28de2a5a62d35f1ae1fd229ac52d82b66aadf77b5310707dc3588e21af7" time="2026-08-18T04:53:57Z" level=info msg="buildah [stderr] Copying blob sha256:17e4bf9b37cb91b309570030506a32773e48e3f055d915eb92adad9dabaeb38e" time="2026-08-18T04:53:57Z" level=info msg="buildah [stderr] Copying blob sha256:5c6dc3016f28a686eadd8992845c9ff4f9949681d57e98e896e407689cb9b51e" time="2026-08-18T04:53:57Z" level=info msg="buildah [stderr] Copying blob sha256:a554e7cda9270a1a3c736f3e16e88f5d9d6798b46f48a3ac78c343b83d6e2dbc" time="2026-08-18T04:53:57Z" level=info msg="buildah [stderr] Copying blob sha256:f6236aa24d3908b136b70ac9d9fb4656d46c35b664852b5d6b0836ddb04bf374" time="2026-08-18T04:53:59Z" level=info msg="buildah [stderr] Copying config sha256:e4a54fd6459fc0a89011b307d345c0d4f6fe8c0976e892de70f44e0d11787eb0" time="2026-08-18T04:53:59Z" level=info msg="buildah [stderr] Writing manifest to image destination" time="2026-08-18T04:53:59Z" level=info msg="Pushed additional tag successfully: component-prefetch-pip-on-pull-request-bmmsf-build-container" time="2026-08-18T04:53:59Z" level=info msg="Writing parsed Containerfile to: /shared/parsed_dockerfile.json" time="2026-08-18T04:53:59Z" level=info msg="Containerfile JSON written successfully" time="2026-08-18T04:53:59Z" level=info msg="Writing resolved base images to: /shared/base_images_digests" time="2026-08-18T04:53:59Z" level=info msg="Resolved base images written successfully" {"image_url":"quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-c57a4cc803875e74d17199e5d1a90f62fa4dab4a","digest":"sha256:309f4fe2ce1d73fb3d820eaf96c53e49b51f075db68811165af0ceaa1abdf064"} [2026-08-18T04:53:59,512385385+00:00] Add metadata Making copy of sbom-prefetch.json [2026-08-18T04:53:59,515064275+00:00] End build pod: component-prefetch-pip-on-pe188dbbd86f0d275e1ef96c31b6355f7-pod | container step-prepare-sboms: [2026-08-18T04:53:59,698024504+00:00] Prepare SBOM [2026-08-18T04:53:59,702912216+00:00] Generate SBOM with mobster Skipping SBOM validation 2026-08-18 04:54:18,400 [INFO] mobster.log: Logging level set to 20 2026-08-18 04:54:19,904 [INFO] mobster.cmd.generate.oci_image.hermeto_sbom_filter: Filtering SPDX SBOM by architecture: amd64 2026-08-18 04:54:19,904 [INFO] mobster.cmd.generate.oci_image.hermeto_sbom_filter: Filtered 0 packages out of 11 (11 remaining) 2026-08-18 04:54:23,203 [INFO] mobster.main: Exiting with code 0. [2026-08-18T04:54:24,595558684+00:00] End prepare-sboms pod: component-prefetch-pip-on-pe188dbbd86f0d275e1ef96c31b6355f7-pod | container step-upload-sbom: INFO: Using mounted CA bundle: /mnt/trusted-ca/ca-bundle.crt '/mnt/trusted-ca/ca-bundle.crt' -> '/etc/pki/ca-trust/source/anchors/ca-bundle.crt' Using token for quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip [2026-08-18T04:55:03,706710004+00:00] Upload SBOM Pushing sbom to registry [retry] executing: cosign attach sbom --sbom sbom.json --type spdx quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-c57a4cc803875e74d17199e5d1a90f62fa4dab4a@sha256:309f4fe2ce1d73fb3d820eaf96c53e49b51f075db68811165af0ceaa1abdf064 WARNING: SBOM attachments are deprecated and support will be removed in a Cosign release soon after 2024-02-22 (see https://github.com/sigstore/cosign/issues/2755). Instead, please use SBOM attestations. WARNING: Attaching SBOMs this way does not sign them. To sign them, use 'cosign attest --predicate sbom.json --key '. Uploading SBOM file for [quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip@sha256:309f4fe2ce1d73fb3d820eaf96c53e49b51f075db68811165af0ceaa1abdf064] to [quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:sha256-309f4fe2ce1d73fb3d820eaf96c53e49b51f075db68811165af0ceaa1abdf064.sbom] with mediaType [text/spdx+json]. quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip@sha256:a66f809ff92e06fa6056b025b8c75050ddfa53a10b1562963a5407ecb2179a0a [2026-08-18T04:55:09,601003880+00:00] Handle keyless signing if enabled [retry] executing: kubectl get configmap cluster-config -n konflux-info -o json Keyless signing is disabled (none of rekorInternalUrl, fulcioInternalUrl, defaultOIDCIssuer, tufInternalUrl are configured in the konflux-info/cluster-config configmap) [2026-08-18T04:55:14,499144512+00:00] End upload-sbom pod: component-prefetch-pip-on-pe2af9787a1509e8335405226fdecf6e5-pod | init container: prepare 2026/08/18 04:56:30 Entrypoint initialization pod: component-prefetch-pip-on-pe2af9787a1509e8335405226fdecf6e5-pod | init container: place-scripts 2026/08/18 04:56:40 Decoded script /tekton/scripts/script-0-9xnrf 2026/08/18 04:56:40 Decoded script /tekton/scripts/script-1-xj8ws pod: component-prefetch-pip-on-pe2af9787a1509e8335405226fdecf6e5-pod | init container: working-dir-initializer pod: component-prefetch-pip-on-pe2af9787a1509e8335405226fdecf6e5-pod | container step-sast-shell-check: + source /utils.sh ++ OPM_RENDER_CACHE=/tmp/konflux-test-opm-cache ++ DEFAULT_INDEX_IMAGE=registry.redhat.io/redhat/redhat-operator-index + trap 'handle_error /tekton/results/TEST_OUTPUT' EXIT + [[ -z '' ]] INFO: The PROJECT_NAME used is: component-prefetch-pip INFO: Using mounted CA bundle: /mnt/trusted-ca/ca-bundle.crt + PROJECT_NAME=component-prefetch-pip + echo 'INFO: The PROJECT_NAME used is: component-prefetch-pip' + ca_bundle=/mnt/trusted-ca/ca-bundle.crt + '[' -f /mnt/trusted-ca/ca-bundle.crt ']' + echo 'INFO: Using mounted CA bundle: /mnt/trusted-ca/ca-bundle.crt' + cp -vf /mnt/trusted-ca/ca-bundle.crt /etc/pki/ca-trust/source/anchors '/mnt/trusted-ca/ca-bundle.crt' -> '/etc/pki/ca-trust/source/anchors/ca-bundle.crt' + update-ca-trust ++ rpm -q --queryformat '%{NAME}-%{VERSION}-%{RELEASE}\n' ShellCheck + PACKAGE_VERSION=ShellCheck-0.10.0-3.el9 + OUTPUT_FILE=shellcheck-results.json + SOURCE_CODE_DIR=/workspace/workspace/source + declare -a ALL_TARGETS + IFS=, + read -ra TARGET_ARRAY + for d in "${TARGET_ARRAY[@]}" + potential_path=/workspace/workspace/source/. ++ realpath -m /workspace/workspace/source/. + resolved_path=/workspace/workspace/source + [[ /workspace/workspace/source == \/\w\o\r\k\s\p\a\c\e\/\w\o\r\k\s\p\a\c\e\/\s\o\u\r\c\e* ]] + ALL_TARGETS+=("$resolved_path") + '[' -z '' ']' + '[' -r /sys/fs/cgroup/cpu.max ']' + read -r quota period + '[' 800000 '!=' max ']' + '[' -n 100000 ']' + '[' 100000 -gt 0 ']' + export SC_JOBS=8 + SC_JOBS=8 + echo 'INFO: Setting SC_JOBS=8 based on cgroups v2 max for run-shellcheck.sh' + [[ true == \t\r\u\e ]] + export SC_SKIP_JINJA=1 + SC_SKIP_JINJA=1 + /usr/share/csmock/scripts/run-shellcheck.sh /workspace/workspace/source INFO: Setting SC_JOBS=8 based on cgroups v2 max for run-shellcheck.sh Looking for shell scripts................ done + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/applypatch-msg.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/commit-msg.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/post-update.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/prepare-commit-msg.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/pre-applypatch.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/pre-commit.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/pre-push.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/pre-merge-commit.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/pre-rebase.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/pre-receive.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/push-to-checkout.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/sendemail-validate.sample + timeout 30 shellcheck --format=json1 --external-sources --source-path=/workspace/workspace/source /workspace/workspace/source/.git/hooks/update.sample + CSGREP_OPTS=(--mode=json --strip-path-prefix="$SOURCE_CODE_DIR"/ --remove-duplicates --embed-context=3 --set-scan-prop="ShellCheck:${PACKAGE_VERSION}") + [[ true == \t\r\u\e ]] + CSGREP_EVENT_FILTER='\[SC(1020|1035|1054|1066|1068|1073|1080|1083|1099|1113|1115|1127|1128|1143|2043|2050|' + CSGREP_EVENT_FILTER+='2055|2057|2066|2069|2071|2077|2078|2091|2092|2157|2171|2193|2194|2195|2215|2216|' + CSGREP_EVENT_FILTER+='2218|2224|2225|2242|2256|2258|2261)\]$' + CSGREP_OPTS+=(--event="$CSGREP_EVENT_FILTER") + csgrep --mode=json --strip-path-prefix=/workspace/workspace/source/ --remove-duplicates --embed-context=3 --set-scan-prop=ShellCheck:ShellCheck-0.10.0-3.el9 '--event=\[SC(1020|1035|1054|1066|1068|1073|1080|1083|1099|1113|1115|1127|1128|1143|2043|2050|2055|2057|2066|2069|2071|2077|2078|2091|2092|2157|2171|2193|2194|2195|2215|2216|2218|2224|2225|2242|2256|2258|2261)\]$' ./shellcheck-results/empty.json ./shellcheck-results/sc-102.json ./shellcheck-results/sc-104.json ./shellcheck-results/sc-107.json ./shellcheck-results/sc-111.json ./shellcheck-results/sc-113.json ./shellcheck-results/sc-132.json ./shellcheck-results/sc-143.json ./shellcheck-results/sc-144.json ./shellcheck-results/sc-147.json ./shellcheck-results/sc-99.json + [[ SITE_DEFAULT == \S\I\T\E\_\D\E\F\A\U\L\T ]] + KFP_GIT_URL=https://gitlab.cee.redhat.com/osh/known-false-positives.git + PROBE_URL=https://gitlab.cee.redhat.com/osh/known-false-positives + KFP_DIR=known-false-positives + KFP_CLONED=0 + mkdir known-false-positives + [[ -n https://gitlab.cee.redhat.com/osh/known-false-positives.git ]] + echo -n 'INFO: Probing https://gitlab.cee.redhat.com/osh/known-false-positives... ' + curl --fail --head --max-time 60 --no-progress-meter https://gitlab.cee.redhat.com/osh/known-false-positives ++ head -1 curl: (6) Could not resolve host: gitlab.cee.redhat.com INFO: Probing https://gitlab.cee.redhat.com/osh/known-false-positives... WARN: Failed to clone known-false-positives at https://gitlab.cee.redhat.com/osh/known-false-positives.git, scan results will not be filtered + [[ 0 -eq 0 ]] + echo 'WARN: Failed to clone known-false-positives at https://gitlab.cee.redhat.com/osh/known-false-positives.git, scan results will not be filtered' + echo 'ShellCheck results have been saved to shellcheck-results.json' + csgrep --mode=evtstat shellcheck-results.json ShellCheck results have been saved to shellcheck-results.json + csgrep --mode=sarif shellcheck-results.json + TEST_OUTPUT= + parse_test_output sast-shell-check sarif shellcheck-results.sarif + TEST_NAME=sast-shell-check + TEST_RESULT_FORMAT=sarif + TEST_RESULT_FILE=shellcheck-results.sarif + '[' -z sast-shell-check ']' + '[' -z sarif ']' + '[' -z shellcheck-results.sarif ']' + '[' '!' -f shellcheck-results.sarif ']' + '[' sarif = sarif ']' +++ jq -rce '(if (.runs[].results | length > 0) then "FAILURE" else "SUCCESS" end)' shellcheck-results.sarif +++ jq -rce '(.runs[].results | length)' shellcheck-results.sarif ++ make_result_json -r SUCCESS -f 0 ++ local RESULT= ++ local SUCCESSES=0 ++ local FAILURES=0 ++ local WARNINGS=0 ++ local 'NOTE=For details, check Tekton task log.' ++ local NAMESPACE=default ++ local OUTPUT ++ local OPTIND opt ++ getopts :r:s:f:w:t:n: opt ++ case "${opt}" in ++ RESULT=SUCCESS ++ getopts :r:s:f:w:t:n: opt ++ case "${opt}" in ++ FAILURES=0 ++ getopts :r:s:f:w:t:n: opt ++ shift 4 ++ '[' -z SUCCESS ']' ++ case "${RESULT}" in ++++ date -u --iso-8601=seconds +++ jq -rce --arg date 2026-08-18T04:57:15+00:00 --arg result SUCCESS --arg note 'For details, check Tekton task log.' --arg namespace default --arg successes 0 --arg failures 0 --arg warnings 0 --null-input '{ result: $result, timestamp: $date, note: $note, namespace: $namespace, successes: $successes|tonumber, failures: $failures|tonumber, warnings: $warnings|tonumber }' ++ OUTPUT='{"result":"SUCCESS","timestamp":"2026-08-18T04:57:15+00:00","note":"For details, check Tekton task log.","namespace":"default","successes":0,"failures":0,"warnings":0}' ++ echo '{"result":"SUCCESS","timestamp":"2026-08-18T04:57:15+00:00","note":"For details, check Tekton task log.","namespace":"default","successes":0,"failures":0,"warnings":0}' + TEST_OUTPUT='{"result":"SUCCESS","timestamp":"2026-08-18T04:57:15+00:00","note":"For details, check Tekton task log.","namespace":"default","successes":0,"failures":0,"warnings":0}' ++ echo '{"result":"SUCCESS","timestamp":"2026-08-18T04:57:15+00:00","note":"For details, check Tekton task log.","namespace":"default","successes":0,"failures":0,"warnings":0}' ++ jq .failures + '[' 0 -gt 0 ']' + echo '{"result":"SUCCESS","timestamp":"2026-08-18T04:57:15+00:00","note":"For details, check Tekton task log.","namespace":"default","successes":0,"failures":0,"warnings":0}' + tee /tekton/results/TEST_OUTPUT {"result":"SUCCESS","timestamp":"2026-08-18T04:57:15+00:00","note":"For details, check Tekton task log.","namespace":"default","successes":0,"failures":0,"warnings":0} + handle_error /tekton/results/TEST_OUTPUT + exit_code=0 + '[' 0 -ne 0 ']' + exit 0 pod: component-prefetch-pip-on-pe2af9787a1509e8335405226fdecf6e5-pod | container step-upload: Selecting auth Using token for quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip Attaching to quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-c57a4cc803875e74d17199e5d1a90f62fa4dab4a Executing: oras attach --no-tty --registry-config /home/oras/auth.json --artifact-type application/sarif+json quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-c57a4cc803875e74d17199e5d1a90f62fa4dab4a@sha256:309f4fe2ce1d73fb3d820eaf96c53e49b51f075db68811165af0ceaa1abdf064 shellcheck-results.sarif:application/sarif+json Preparing shellcheck-results.sarif Exists 44136fa355b3 application/vnd.oci.empty.v1+json Exists 74c89a6df4ae shellcheck-results.sarif Uploading 1f0d0ddffb1a application/vnd.oci.image.manifest.v1+json Uploaded 1f0d0ddffb1a application/vnd.oci.image.manifest.v1+json Attached to [registry] quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-c57a4cc803875e74d17199e5d1a90f62fa4dab4a@sha256:309f4fe2ce1d73fb3d820eaf96c53e49b51f075db68811165af0ceaa1abdf064 Digest: sha256:1f0d0ddffb1a225a958d118f155fdee5fadb667f7f1523c808bcb8525f913418 No excluded-findings.json exists. Skipping upload. pod: component-prefetch-pip-on-pf7cddaf4025a2218b8f25126717ad22e-pod | init container: prepare 2026/08/18 04:55:36 Entrypoint initialization pod: component-prefetch-pip-on-pf7cddaf4025a2218b8f25126717ad22e-pod | init container: place-scripts 2026/08/18 04:55:40 Decoded script /tekton/scripts/script-0-7bh8d 2026/08/18 04:55:40 Decoded script /tekton/scripts/script-1-47sft 2026/08/18 04:55:40 Decoded script /tekton/scripts/script-2-9m429 pod: component-prefetch-pip-on-pf7cddaf4025a2218b8f25126717ad22e-pod | container step-build: [2026-08-18T04:55:55,446260249+00:00] Update CA trust INFO: Using mounted CA bundle: /mnt/trusted-ca/ca-bundle.crt '/mnt/trusted-ca/ca-bundle.crt' -> '/etc/pki/ca-trust/source/anchors/ca-bundle.crt' Running konflux-build-cli time="2026-08-18T04:56:00Z" level=info msg="[param] image: quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-b034c3f13cdf2a5d1c29cf71e72654df35d7092c" time="2026-08-18T04:56:00Z" level=info msg="[param] images: [quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-b034c3f13cdf2a5d1c29cf71e72654df35d7092c@sha256:c1660947fdedaf7d9f6945d8919aaa84952ad02667f0b2bfb57ad942ac928351]" time="2026-08-18T04:56:00Z" level=info msg="[param] buildah-format: docker" time="2026-08-18T04:56:00Z" level=info msg="[param] always-build-index: false" time="2026-08-18T04:56:00Z" level=info msg="[param] additional-tags: [component-prefetch-pip-on-pull-request-7ltlq-build-image-index]" time="2026-08-18T04:56:00Z" level=info msg="[param] output-manifest-path: /index-build-data/manifest_data.json" time="2026-08-18T04:56:00Z" level=info msg="[param] result-path-image-digest: /tekton/results/IMAGE_DIGEST" time="2026-08-18T04:56:00Z" level=info msg="[param] result-path-image-url: /tekton/results/IMAGE_URL" time="2026-08-18T04:56:00Z" level=info msg="[param] result-path-image-ref: /tekton/results/IMAGE_REF" time="2026-08-18T04:56:00Z" level=info msg="[param] result-path-images: /tekton/results/IMAGES" time="2026-08-18T04:56:00Z" level=info msg="Creating manifest list: quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-b034c3f13cdf2a5d1c29cf71e72654df35d7092c" time="2026-08-18T04:56:01Z" level=info msg="buildah [stdout] cc6d5c575c671f7b63bd912fab92b1503c901098e3022b3a17c6c61909c3e2f1" time="2026-08-18T04:56:01Z" level=info msg="Skipping image index generation. Returning results for single image." {"image_digest":"sha256:c1660947fdedaf7d9f6945d8919aaa84952ad02667f0b2bfb57ad942ac928351","image_url":"quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-b034c3f13cdf2a5d1c29cf71e72654df35d7092c","image_ref":"quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip@sha256:c1660947fdedaf7d9f6945d8919aaa84952ad02667f0b2bfb57ad942ac928351","images":"quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip@sha256:c1660947fdedaf7d9f6945d8919aaa84952ad02667f0b2bfb57ad942ac928351"} pod: component-prefetch-pip-on-pf7cddaf4025a2218b8f25126717ad22e-pod | container step-create-sbom: The manifest_data.json file does not exist. Skipping the SBOM creation... pod: component-prefetch-pip-on-pf7cddaf4025a2218b8f25126717ad22e-pod | container step-upload-sbom: [2026-08-18T04:56:03,181795002+00:00] Update CA trust INFO: Using mounted CA bundle: /mnt/trusted-ca/ca-bundle.crt '/mnt/trusted-ca/ca-bundle.crt' -> '/etc/pki/ca-trust/source/anchors/ca-bundle.crt' The index.spdx.json file does not exists. Skipping the SBOM upload... pod: component-prefetch-pip-on-pff38d56a672f155821c279cc13539aa0-pod | init container: prepare 2026/08/18 04:57:40 Entrypoint initialization pod: component-prefetch-pip-on-pff38d56a672f155821c279cc13539aa0-pod | init container: place-scripts 2026/08/18 04:57:45 Decoded script /tekton/scripts/script-0-bbqcm 2026/08/18 04:57:45 Decoded script /tekton/scripts/script-1-gl27b 2026/08/18 04:57:45 Decoded script /tekton/scripts/script-2-b6drg 2026/08/18 04:57:45 Decoded script /tekton/scripts/script-3-2dgx4 2026/08/18 04:57:45 Decoded script /tekton/scripts/script-4-g2d2q 2026/08/18 04:57:45 Decoded script /tekton/scripts/script-5-lkzrv pod: component-prefetch-pip-on-pff38d56a672f155821c279cc13539aa0-pod | container step-introspect: Artifact type will be determined by introspection. Checking the media type of the OCI artifact... [retry] executing: skopeo inspect --raw --retry-times 3 docker://quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-a421fa0f323cb04a0a6eee0653f82d872445df3e The media type of the OCI artifact is application/vnd.docker.distribution.manifest.v2+json. Looking for image labels that indicate this might be an operator bundle... [retry] executing: skopeo inspect --retry-times 3 docker://quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-a421fa0f323cb04a0a6eee0653f82d872445df3e Found 0 matching labels. Expecting 3 or more to identify this image as an operator bundle. Introspection concludes that this artifact is of type "application". pod: component-prefetch-pip-on-pff38d56a672f155821c279cc13539aa0-pod | container step-generate-container-auth: Selecting auth for quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-a421fa0f323cb04a0a6eee0653f82d872445df3e Using token for quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip Auth json written to "/auth/auth.json". pod: component-prefetch-pip-on-pff38d56a672f155821c279cc13539aa0-pod | container step-set-skip-for-bundles: 2026/08/18 04:58:06 INFO Step was skipped due to when expressions were evaluated to false. pod: component-prefetch-pip-on-pff38d56a672f155821c279cc13539aa0-pod | container step-app-check: time="2026-08-18T04:58:07Z" level=info msg="certification library version" version="1.20.0 " time="2026-08-18T04:58:07Z" level=info msg="running checks for quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-a421fa0f323cb04a0a6eee0653f82d872445df3e for platform amd64" time="2026-08-18T04:58:07Z" level=info msg="target image" image="quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-a421fa0f323cb04a0a6eee0653f82d872445df3e" time="2026-08-18T04:58:26Z" level=info msg="warning: licenses directory does not exist or all of its children are empty directories: error when checking for /licenses: stat /tmp/preflight-263363022/fs/licenses: no such file or directory" check=HasLicense time="2026-08-18T04:58:26Z" level=info msg="check completed" check=HasLicense result=FAILED time="2026-08-18T04:58:26Z" level=info msg="check completed" check=HasUniqueTag result=PASSED time="2026-08-18T04:58:26Z" level=info msg="check completed" check=LayerCountAcceptable result=PASSED time="2026-08-18T04:58:26Z" level=info msg="check completed" check=HasNoProhibitedPackages result=PASSED time="2026-08-18T04:58:26Z" level=info msg="check completed" check=HasRequiredLabel result=PASSED time="2026-08-18T04:58:26Z" level=info msg="USER 1001 specified that is non-root" check=RunAsNonRoot time="2026-08-18T04:58:26Z" level=info msg="check completed" check=RunAsNonRoot result=PASSED time="2026-08-18T04:58:45Z" level=info msg="check completed" check=HasModifiedFiles result=PASSED time="2026-08-18T04:58:46Z" level=info msg="check completed" check=BasedOnUbi result=PASSED time="2026-08-18T04:58:46Z" level=info msg="This image's tag on-pr-a421fa0f323cb04a0a6eee0653f82d872445df3e will be paired with digest sha256:53429f9e2c3ba776efdb6158bcc9f89b379d2bbbc41e53ce9bc5d76f9e7e8b38 once this image has been published in accordance with Red Hat Certification policy. You may then add or remove any supplemental tags through your Red Hat Connect portal as you see fit." time="2026-08-18T04:58:46Z" level=info msg="Preflight result: FAILED" { "image": "quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-a421fa0f323cb04a0a6eee0653f82d872445df3e", "passed": false, "test_library": { "name": "github.com/redhat-openshift-ecosystem/openshift-preflight", "version": "1.20.0", "commit": "96798270d2f3299dcce4c385d908b5cd53b7537a" }, "results": { "passed": [ { "name": "HasUniqueTag", "elapsed_time": 0, "description": "Checking if container has a tag other than 'latest', so that the image can be uniquely identified." }, { "name": "LayerCountAcceptable", "elapsed_time": 0, "description": "Checking if container has less than 40 layers. Too many layers within the container images can degrade container performance." }, { "name": "HasNoProhibitedPackages", "elapsed_time": 107, "description": "Checks to ensure that the image in use does not include prohibited packages, such as Red Hat Enterprise Linux (RHEL) kernel packages." }, { "name": "HasRequiredLabel", "elapsed_time": 0, "description": "Checking if the required labels (name, vendor, version, release, summary, description, maintainer) are present in the container metadata" }, { "name": "RunAsNonRoot", "elapsed_time": 0, "description": "Checking if container runs as the root user because a container that does not specify a non-root user will fail the automatic certification, and will be subject to a manual review before the container can be approved for publication" }, { "name": "HasModifiedFiles", "elapsed_time": 19348, "description": "Checks that no files installed via RPM in the base Red Hat layer have been modified" }, { "name": "BasedOnUbi", "elapsed_time": 877, "description": "Checking if the container's base image is based upon the Red Hat Universal Base Image (UBI) or Red Hat Hardened Images (RHHI)" } ], "failed": [ { "name": "HasLicense", "elapsed_time": 0, "description": "Checking if terms and conditions applicable to the software including open source licensing information are present. The license must be at /licenses", "help": "Check HasLicense encountered an error. Please review the preflight.log file for more information.", "suggestion": "Create a directory named /licenses and include all relevant licensing and/or terms and conditions as text file(s) in that directory.", "knowledgebase_url": "https://access.redhat.com/documentation/en-us/red_hat_software_certification/2026/html-single/red_hat_openshift_software_certification_policy_guide/index#assembly-requirements-for-container-images_openshift-sw-cert-policy-introduction", "check_url": "https://access.redhat.com/documentation/en-us/red_hat_software_certification/2026/html-single/red_hat_openshift_software_certification_policy_guide/index#assembly-requirements-for-container-images_openshift-sw-cert-policy-introduction" } ], "errors": [] } } pod: component-prefetch-pip-on-pff38d56a672f155821c279cc13539aa0-pod | container step-app-set-outcome: [retry] executing: skopeo inspect --raw --retry-times 3 docker://quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-a421fa0f323cb04a0a6eee0653f82d872445df3e {"result":"FAILURE","timestamp":"1787029127","note":"Task preflight is a FAILURE: Refer to Tekton task logs for more information","successes":7,"failures":1,"warnings":0} pod: component-prefetch-pip-on-pff38d56a672f155821c279cc13539aa0-pod | container step-final-outcome: + [[ ! -f /mount/konflux.results.json ]] + tee /tekton/steps/step-final-outcome/results/test-output {"result":"FAILURE","timestamp":"1787029127","note":"Task preflight is a FAILURE: Refer to Tekton task logs for more information","successes":7,"failures":1,"warnings":0} pod: component-prefetch-pip-on-pull-request-7ltlq-apply-tags-pod | init container: prepare 2026/08/18 04:56:32 Entrypoint initialization pod: component-prefetch-pip-on-pull-request-7ltlq-apply-tags-pod | container step-apply-additional-tags: time="2026-08-18T04:56:44Z" level=info msg="[param] image-url: quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-b034c3f13cdf2a5d1c29cf71e72654df35d7092c" time="2026-08-18T04:56:44Z" level=info msg="[param] digest: sha256:c1660947fdedaf7d9f6945d8919aaa84952ad02667f0b2bfb57ad942ac928351" time="2026-08-18T04:56:44Z" level=info msg="[param] tags: [test-tag1 test-tag2]" time="2026-08-18T04:56:44Z" level=info msg="[param] tags-from-image-label: konflux.additional-tags" time="2026-08-18T04:56:46Z" level=warning msg="No tags given in 'konflux.additional-tags' image label" {"tags":["test-tag1","test-tag2"]} pod: component-prefetch-pip-on-pull-request-7ltlq-clamav-scan-pod | init container: prepare 2026/08/18 04:56:22 Entrypoint initialization pod: component-prefetch-pip-on-pull-request-7ltlq-clamav-scan-pod | init container: place-scripts 2026/08/18 04:56:28 Decoded script /tekton/scripts/script-0-vmsnt 2026/08/18 04:56:28 Decoded script /tekton/scripts/script-1-4kxnz pod: component-prefetch-pip-on-pull-request-7ltlq-clamav-scan-pod | container step-extract-and-scan-image: Starting clamd ... clamd is ready! Detecting artifact type for quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip@sha256:c1660947fdedaf7d9f6945d8919aaa84952ad02667f0b2bfb57ad942ac928351. Detected container image. Processing image manifests. Running "oc image extract" on image of arch amd64 Scanning image for arch amd64. This operation may take a while. ----------- SCAN SUMMARY ----------- Infected files: 0 Time: 25.172 sec (0 m 25 s) Start Date: 2026:08:18 04:57:30 End Date: 2026:08:18 04:57:55 Executed-on: Scan was executed on clamsdcan version - ClamAV 1.4.6/28095/Mon Aug 17 06:23:59 2026 Database version: 28095 [ { "filename": "/work/logs/clamscan-result-log-amd64.json", "namespace": "required_checks", "successes": 2 } ] {"timestamp":"1787029075","namespace":"required_checks","successes":2,"failures":0,"warnings":0,"result":"SUCCESS","note":"All checks passed successfully"} {"timestamp":"1787029075","namespace":"required_checks","successes":2,"failures":0,"warnings":0,"result":"SUCCESS","note":"All checks passed successfully"} {"timestamp":"1787029075","namespace":"required_checks","successes":2,"failures":0,"warnings":0,"result":"SUCCESS","note":"All checks passed successfully"} {"image": {"pullspec": "quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-b034c3f13cdf2a5d1c29cf71e72654df35d7092c", "digests": ["sha256:c1660947fdedaf7d9f6945d8919aaa84952ad02667f0b2bfb57ad942ac928351"]}} pod: component-prefetch-pip-on-pull-request-7ltlq-clamav-scan-pod | container step-upload: Selecting auth Using token for quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip Attaching to quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-b034c3f13cdf2a5d1c29cf71e72654df35d7092c [retry] executing: oras attach --no-tty --registry-config /home/taskuser/auth.json --artifact-type application/vnd.clamav quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-b034c3f13cdf2a5d1c29cf71e72654df35d7092c@sha256:c1660947fdedaf7d9f6945d8919aaa84952ad02667f0b2bfb57ad942ac928351 clamscan-result-amd64.log:text/vnd.clamav clamscan-ec-test-amd64.json:application/vnd.konflux.test_output+json Preparing clamscan-result-amd64.log Preparing clamscan-ec-test-amd64.json Exists 44136fa355b3 application/vnd.oci.empty.v1+json Uploading 7d39a633cb4a clamscan-ec-test-amd64.json Uploading 7c0b523e1003 clamscan-result-amd64.log Uploaded 7d39a633cb4a clamscan-ec-test-amd64.json Uploaded 7c0b523e1003 clamscan-result-amd64.log Uploading d662149d8795 application/vnd.oci.image.manifest.v1+json Uploaded d662149d8795 application/vnd.oci.image.manifest.v1+json Attached to [registry] quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-b034c3f13cdf2a5d1c29cf71e72654df35d7092c@sha256:c1660947fdedaf7d9f6945d8919aaa84952ad02667f0b2bfb57ad942ac928351 Digest: sha256:d662149d87958e5149d5a6e562cf945ec6930454a8db882dd9986531e5efa015 pod: component-prefetch-pip-on-pull-request-7ltlq-init-pod | init container: prepare 2026/08/18 04:52:25 Entrypoint initialization pod: component-prefetch-pip-on-pull-request-7ltlq-init-pod | container step-init: time="2026-08-18T04:52:29Z" level=info msg="[param] enable: false" time="2026-08-18T04:52:29Z" level=info msg="[param] default-http-proxy: squid.caching.svc.cluster.local:3128" time="2026-08-18T04:52:29Z" level=info msg="[param] default-no-proxy: brew.registry.redhat.io,docker.io,gcr.io,ghcr.io,images.paas.redhat.com,mirror.gcr.io,nvcr.io,quay.io,registry-proxy.engineering.redhat.com,registry.access.redhat.com,registry.ci.openshift.org,registry.fedoraproject.org,registry.redhat.io,registry.stage.redhat.io,vault.habana.ai" time="2026-08-18T04:52:29Z" level=info msg="[param] http-proxy-result-path: /tekton/results/http-proxy" time="2026-08-18T04:52:29Z" level=info msg="[param] no-proxy-result-path: /tekton/results/no-proxy" time="2026-08-18T04:52:29Z" level=info msg="Using in-cluster config" logger=KubeClient time="2026-08-18T04:52:29Z" level=info msg="Cache proxy is disabled via param" time="2026-08-18T04:52:29Z" level=info msg="[result] HTTP PROXY: " time="2026-08-18T04:52:29Z" level=info msg="[result] NO PROXY: " pod: component-prefetch-pip-on-pull-request-bmmsf-apply-tags-pod | init container: prepare 2026/08/18 04:56:40 Entrypoint initialization pod: component-prefetch-pip-on-pull-request-bmmsf-apply-tags-pod | container step-apply-additional-tags: time="2026-08-18T04:56:49Z" level=info msg="[param] image-url: quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-c57a4cc803875e74d17199e5d1a90f62fa4dab4a" time="2026-08-18T04:56:49Z" level=info msg="[param] digest: sha256:309f4fe2ce1d73fb3d820eaf96c53e49b51f075db68811165af0ceaa1abdf064" time="2026-08-18T04:56:49Z" level=info msg="[param] tags: [test-tag1 test-tag2]" time="2026-08-18T04:56:49Z" level=info msg="[param] tags-from-image-label: konflux.additional-tags" time="2026-08-18T04:56:51Z" level=warning msg="No tags given in 'konflux.additional-tags' image label" {"tags":["test-tag1","test-tag2"]} pod: component-prefetch-pip-on-pull-request-bmmsf-init-pod | init container: prepare 2026/08/18 04:52:09 Entrypoint initialization pod: component-prefetch-pip-on-pull-request-bmmsf-init-pod | container step-init: time="2026-08-18T04:52:14Z" level=info msg="[param] enable: false" time="2026-08-18T04:52:14Z" level=info msg="[param] default-http-proxy: squid.caching.svc.cluster.local:3128" time="2026-08-18T04:52:14Z" level=info msg="[param] default-no-proxy: brew.registry.redhat.io,docker.io,gcr.io,ghcr.io,images.paas.redhat.com,mirror.gcr.io,nvcr.io,quay.io,registry-proxy.engineering.redhat.com,registry.access.redhat.com,registry.ci.openshift.org,registry.fedoraproject.org,registry.redhat.io,registry.stage.redhat.io,vault.habana.ai" time="2026-08-18T04:52:14Z" level=info msg="[param] http-proxy-result-path: /tekton/results/http-proxy" time="2026-08-18T04:52:14Z" level=info msg="[param] no-proxy-result-path: /tekton/results/no-proxy" time="2026-08-18T04:52:14Z" level=info msg="Using in-cluster config" logger=KubeClient time="2026-08-18T04:52:14Z" level=info msg="Cache proxy is disabled via param" time="2026-08-18T04:52:14Z" level=info msg="[result] HTTP PROXY: " time="2026-08-18T04:52:14Z" level=info msg="[result] NO PROXY: " pod: component-prefetch-pip-on-pull-request-m9fb5-apply-tags-pod | init container: prepare 2026/08/18 04:56:49 Entrypoint initialization pod: component-prefetch-pip-on-pull-request-m9fb5-apply-tags-pod | container step-apply-additional-tags: time="2026-08-18T04:56:59Z" level=info msg="[param] image-url: quay.io/redhat-appstudio-qe/build-e2e-prefetch-pip/component-prefetch-pip:on-pr-a421fa0f323cb04a0a6eee0653f82d872445df3e" time="2026-08-18T04:56:59Z" level=info msg="[param] digest: sha256:a4f38c45758095f26b5c21e54b043a454078ecfda53d90909f2f6c98324cff87" time="2026-08-18T04:56:59Z" level=info msg="[param] tags: [test-tag1 test-tag2]" time="2026-08-18T04:56:59Z" level=info msg="[param] tags-from-image-label: konflux.additional-tags" time="2026-08-18T04:57:01Z" level=warning msg="No tags given in 'konflux.additional-tags' image label" {"tags":["test-tag1","test-tag2"]} pod: component-prefetch-pip-on-pull-request-m9fb5-init-pod | init container: prepare 2026/08/18 04:52:29 Entrypoint initialization pod: component-prefetch-pip-on-pull-request-m9fb5-init-pod | container step-init: time="2026-08-18T04:52:32Z" level=info msg="[param] enable: false" time="2026-08-18T04:52:32Z" level=info msg="[param] default-http-proxy: squid.caching.svc.cluster.local:3128" time="2026-08-18T04:52:32Z" level=info msg="[param] default-no-proxy: brew.registry.redhat.io,docker.io,gcr.io,ghcr.io,images.paas.redhat.com,mirror.gcr.io,nvcr.io,quay.io,registry-proxy.engineering.redhat.com,registry.access.redhat.com,registry.ci.openshift.org,registry.fedoraproject.org,registry.redhat.io,registry.stage.redhat.io,vault.habana.ai" time="2026-08-18T04:52:32Z" level=info msg="[param] http-proxy-result-path: /tekton/results/http-proxy" time="2026-08-18T04:52:32Z" level=info msg="[param] no-proxy-result-path: /tekton/results/no-proxy" time="2026-08-18T04:52:32Z" level=info msg="Using in-cluster config" logger=KubeClient time="2026-08-18T04:52:33Z" level=info msg="Cache proxy is disabled via param" time="2026-08-18T04:52:33Z" level=info msg="[result] HTTP PROXY: " time="2026-08-18T04:52:33Z" level=info msg="[result] NO PROXY: "