Skip to content

Commit 1cd1ee7

Browse files
committed
Move gosec to CI to test
1 parent 5350055 commit 1cd1ee7

File tree

2 files changed

+55
-32
lines changed

2 files changed

+55
-32
lines changed

.github/workflows/ci-auto.yaml

+23
Original file line numberDiff line numberDiff line change
@@ -38,3 +38,26 @@ jobs:
3838
steps:
3939
- uses: actions/checkout@v3
4040
- run: cd nodeadm && make test-e2e
41+
dependency-review:
42+
runs-on: ubuntu-latest
43+
steps:
44+
- uses: actions/checkout@v3
45+
- uses: actions/dependency-review-action@v4
46+
gosec:
47+
runs-on: ubuntu-latest
48+
steps:
49+
- uses: actions/checkout@v3
50+
- uses: securego/gosec@master
51+
with:
52+
args: -exclude=G101,G103,G204 nodeadm/...
53+
govulncheck:
54+
runs-on: ubuntu-latest
55+
steps:
56+
- uses: actions/checkout@v3
57+
- uses: golang/govulncheck-action@v1
58+
with:
59+
go-version-input: 1.21.6
60+
work-dir: ./nodeadm
61+
go-version-file: nodeadm/go.mod
62+
cache: false
63+
repo-checkout: false
+32-32
Original file line numberDiff line numberDiff line change
@@ -1,32 +1,32 @@
1-
name: "Dependency Review"
2-
on:
3-
pull_request:
4-
branches:
5-
- "master"
6-
- "al2023"
7-
permissions:
8-
contents: read
9-
jobs:
10-
dependency-review:
11-
runs-on: ubuntu-latest
12-
steps:
13-
- uses: actions/checkout@v3
14-
- uses: actions/dependency-review-action@v4
15-
gosec:
16-
runs-on: ubuntu-latest
17-
steps:
18-
- uses: actions/checkout@v3
19-
- uses: securego/gosec@master
20-
with:
21-
args: -exclude=G101,G103,G204 nodeadm/...
22-
govulncheck:
23-
runs-on: ubuntu-latest
24-
steps:
25-
- uses: actions/checkout@v3
26-
- uses: golang/govulncheck-action@v1
27-
with:
28-
go-version-input: 1.21.6
29-
work-dir: ./nodeadm
30-
go-version-file: nodeadm/go.mod
31-
cache: false
32-
repo-checkout: false
1+
#name: "Dependency Review"
2+
#on:
3+
# pull_request:
4+
# branches:
5+
# - "master"
6+
# - "al2023"
7+
#permissions:
8+
# contents: read
9+
#jobs:
10+
# dependency-review:
11+
# runs-on: ubuntu-latest
12+
# steps:
13+
# - uses: actions/checkout@v3
14+
# - uses: actions/dependency-review-action@v4
15+
# gosec:
16+
# runs-on: ubuntu-latest
17+
# steps:
18+
# - uses: actions/checkout@v3
19+
# - uses: securego/gosec@master
20+
# with:
21+
# args: -exclude=G101,G103,G204 nodeadm/...
22+
# govulncheck:
23+
# runs-on: ubuntu-latest
24+
# steps:
25+
# - uses: actions/checkout@v3
26+
# - uses: golang/govulncheck-action@v1
27+
# with:
28+
# go-version-input: 1.21.6
29+
# work-dir: ./nodeadm
30+
# go-version-file: nodeadm/go.mod
31+
# cache: false
32+
# repo-checkout: false

0 commit comments

Comments
 (0)