Skip to content

Scanning: 42

Scanning: 42 #25

Workflow file for this run

name: Code scanning
run-name: "Scanning: ${{ github.event.pull_request.number || github.event.head_commit.message }}"
on:
push:
branches:
- main
pull_request:
branches:
- main
permissions:
contents: read
security-events: write
jobs:
golangci-lint:
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
- name: Lint
uses: golangci/golangci-lint-action@1e7e51e771db61008b38414a730f564565cf7c20 # v9.2.0
with:
version: v2.12.0
args: --output.sarif.path=results.sarif
- name: Upload SARIF report
if: always()
uses: github/codeql-action/upload-sarif@68bde559dea0fdcac2102bfdf6230c5f70eb485e # v4.53.3
with:
sarif_file: results.sarif
govulncheck:
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
- name: Set up Golang stable
uses: actions/setup-go@4a3601121dd01d1626a1e23e37211e3254c1c06c # v6.4.0
with:
go-version: stable
cache-dependency-path: tools/go.sum
- name: Run govulncheck
run: go tool -modfile tools/go.mod govulncheck -format sarif ./... > results.sarif
- name: Upload SARIF report
if: always()
uses: github/codeql-action/upload-sarif@68bde559dea0fdcac2102bfdf6230c5f70eb485e # v4.35.4
with:
sarif_file: results.sarif