gosick #1

Merged
DelphicOkami merged 162 commits from gosick into main 2026-03-21 23:08:00 +00:00
2 changed files with 13 additions and 17 deletions
Showing only changes of commit dd1d802605 - Show all commits

View File

@@ -22,6 +22,7 @@ jobs:
AWS_SECRET_ACCESS_KEY: ${{ secrets.ARTEFACT_BUCKET_WRITE_ACCESS_SECRET }} AWS_SECRET_ACCESS_KEY: ${{ secrets.ARTEFACT_BUCKET_WRITE_ACCESS_SECRET }}
AWS_DEFAULT_REGION: ${{ vars.ARTEFACT_BUCKET_REGION }} AWS_DEFAULT_REGION: ${{ vars.ARTEFACT_BUCKET_REGION }}
AWS_EC2_METADATA_DISABLED: true AWS_EC2_METADATA_DISABLED: true
GOTOOLCHAIN: auto
SUMMARY_FILE: ${{ runner.temp }}/summary.md SUMMARY_FILE: ${{ runner.temp }}/summary.md
steps: steps:
- name: Checkout - name: Checkout
@@ -136,16 +137,13 @@ jobs:
fi fi
- name: Run Gosec Security Scanner - name: Run Gosec Security Scanner
uses: securego/gosec@v2.22.3 run: |
env: set -euo pipefail
GOTOOLCHAIN: auto go install github.com/securego/gosec/v2/cmd/gosec@latest
with: gosec ./...
args: './...'
- name: Run Go Vulnerability Check - name: Run Go Vulnerability Check
uses: golang/govulncheck-action@v1 uses: golang/govulncheck-action@v1.0.4
env:
GOTOOLCHAIN: auto
- name: Upload coverage badge - name: Upload coverage badge
id: badge id: badge

View File

@@ -22,6 +22,7 @@ jobs:
AWS_SECRET_ACCESS_KEY: ${{ secrets.ARTEFACT_BUCKET_WRITE_ACCESS_SECRET }} AWS_SECRET_ACCESS_KEY: ${{ secrets.ARTEFACT_BUCKET_WRITE_ACCESS_SECRET }}
AWS_DEFAULT_REGION: ${{ vars.ARTEFACT_BUCKET_REGION }} AWS_DEFAULT_REGION: ${{ vars.ARTEFACT_BUCKET_REGION }}
AWS_EC2_METADATA_DISABLED: true AWS_EC2_METADATA_DISABLED: true
GOTOOLCHAIN: auto
SUMMARY_FILE: ${{ runner.temp }}/summary.md SUMMARY_FILE: ${{ runner.temp }}/summary.md
steps: steps:
- name: Checkout - name: Checkout
@@ -64,16 +65,13 @@ jobs:
fi fi
- name: Run Gosec Security Scanner - name: Run Gosec Security Scanner
uses: securego/gosec@v2.22.3 run: |
env: set -euo pipefail
GOTOOLCHAIN: auto go install github.com/securego/gosec/v2/cmd/gosec@latest
with: gosec ./...
args: './...'
- name: Run Go Vulnerability Check - name: Run Go Vulnerability Check
uses: golang/govulncheck-action@v1 uses: golang/govulncheck-action@v1.0.4
env:
GOTOOLCHAIN: auto
- name: Install AWS CLI v2 - name: Install AWS CLI v2
uses: ankurk91/install-aws-cli-action@v1 uses: ankurk91/install-aws-cli-action@v1
@@ -158,7 +156,7 @@ jobs:
- name: Publish coverage artefacts - name: Publish coverage artefacts
id: coverage-badge id: coverage-badge
uses: https://git.hrafn.xyz/aether/vociferate/coverage-badge@v1.0.1 uses: https://git.hrafn.xyz/aether/vociferate/coverage-badge@v1.1.0
with: with:
coverage-profile: coverage.out coverage-profile: coverage.out
coverage-html: coverage.html coverage-html: coverage.html