From 7834bbf2dd87af42c5506941419c7f4b6666fa17 Mon Sep 17 00:00:00 2001 From: Lenin Alevski Date: Tue, 18 Oct 2022 17:05:25 -0700 Subject: [PATCH] adding vulncheck github workflow action (#4) Signed-off-by: Lenin Alevski Signed-off-by: Lenin Alevski --- .github/workflows/vulncheck.yml | 30 ++++++++++++++++++++++++++++++ 1 file changed, 30 insertions(+) create mode 100644 .github/workflows/vulncheck.yml diff --git a/.github/workflows/vulncheck.yml b/.github/workflows/vulncheck.yml new file mode 100644 index 0000000..7b8dfe8 --- /dev/null +++ b/.github/workflows/vulncheck.yml @@ -0,0 +1,30 @@ +name: VulnCheck +on: + pull_request: + branches: + - master + - main + push: + branches: + - master + - main +jobs: + vulncheck: + name: Analysis + runs-on: ubuntu-latest + strategy: + matrix: + go-version: [ 1.19 ] + steps: + - name: Check out code into the Go module directory + uses: actions/checkout@v3 + - uses: actions/setup-go@v3 + with: + go-version: ${{ matrix.go-version }} + check-latest: true + - name: Get govulncheck + run: go install golang.org/x/vuln/cmd/govulncheck@latest + shell: bash + - name: Run govulncheck + run: govulncheck ./... + shell: bash