donotpassgo/action.yaml

16 lines
368 B
YAML
Raw Normal View History

2025-05-10 01:16:42 -04:00
name: "donotpassgo"
description: "general go code checks"
runs:
using: "composite"
steps:
- name: "install go packages"
run: |
go install golang.org/x/vuln/cmd/govulncheck@latest
- name: "dependency scan"
2025-05-10 01:29:37 -04:00
run: govulncheck ./...
- name: "static code analysis"
uses: securego/gosec@master
with:
args: ./...