2024-03-23 18:59:10 +01:00
|
|
|
# SPDX-FileCopyrightText: 2022 Winni Neessen <winni@neessen.dev>
|
|
|
|
#
|
|
|
|
# SPDX-License-Identifier: CC0-1.0
|
|
|
|
|
|
|
|
name: Govulncheck Security Scan
|
|
|
|
|
|
|
|
on: [push, pull_request]
|
|
|
|
|
|
|
|
permissions:
|
|
|
|
contents: read
|
|
|
|
|
|
|
|
jobs:
|
|
|
|
test:
|
|
|
|
runs-on: ubuntu-latest
|
|
|
|
steps:
|
|
|
|
- name: Harden Runner
|
2024-04-30 16:03:23 +02:00
|
|
|
uses: step-security/harden-runner@a4aa98b93cab29d9b1101a6143fb8bce00e2eac4 # v2.7.1
|
2024-03-23 18:59:10 +01:00
|
|
|
with:
|
|
|
|
egress-policy: audit
|
|
|
|
- name: Run govulncheck
|
2024-03-23 19:01:31 +01:00
|
|
|
uses: golang/govulncheck-action@3a32958c2706f7048305d5a2e53633d7e37e97d0 # v1.0.2
|