From 0db212402c337ae90f864b5f6047598ed16d05f5 Mon Sep 17 00:00:00 2001 From: Rafaela Soares Date: Thu, 13 Mar 2025 15:57:10 +0000 Subject: [PATCH 1/2] add govulncheck gh action --- .github/workflows/govulncheck.yml | 25 +++++++++++++++++++++++++ 1 file changed, 25 insertions(+) create mode 100644 .github/workflows/govulncheck.yml diff --git a/.github/workflows/govulncheck.yml b/.github/workflows/govulncheck.yml new file mode 100644 index 000000000..4714f3a58 --- /dev/null +++ b/.github/workflows/govulncheck.yml @@ -0,0 +1,25 @@ +name: govulncheck +on: + pull_request: + branches: + - master + +jobs: + govulncheck: + name: govulncheck + runs-on: ubuntu-24.04 + + steps: + - name: Checkout code + uses: actions/checkout@v4 + + - name: Install Go + uses: actions/setup-go@v5 + with: + go-version-file: go.mod + + - name: Run govulncheck + uses: golang/govulncheck-action@v1 + with: + go-version-input: ${{ steps.install-go.outputs.go-version }} + go-package: ./... \ No newline at end of file From 4f0b3f2ae6b774416cc91e779cca4a8bb71af054 Mon Sep 17 00:00:00 2001 From: Rafaela Soares Date: Thu, 13 Mar 2025 16:03:42 +0000 Subject: [PATCH 2/2] update --- .github/workflows/govulncheck.yml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/.github/workflows/govulncheck.yml b/.github/workflows/govulncheck.yml index 4714f3a58..1a4091a40 100644 --- a/.github/workflows/govulncheck.yml +++ b/.github/workflows/govulncheck.yml @@ -8,7 +8,7 @@ jobs: govulncheck: name: govulncheck runs-on: ubuntu-24.04 - + steps: - name: Checkout code uses: actions/checkout@v4 @@ -17,7 +17,7 @@ jobs: uses: actions/setup-go@v5 with: go-version-file: go.mod - + - name: Run govulncheck uses: golang/govulncheck-action@v1 with: