README update

This commit is contained in:
jake 2025-05-10 14:39:30 -04:00
parent 8099c60f71
commit 10b0a0439f

View File

@ -1,3 +1,14 @@
# donotpassgo
action to run general go code scans, includes dependency scan with govulncheck and static code analysis from gosec
do not pass Go runs all general checks for Golang applications, all steps must pass for workflow to pass.
## Steps
### govulncheck
```
govulncheck is install using 'go install' and is used to scan the application dependencies and standard library.
```
### gosec
```
gosec is used for static code analysis.
```