Skip to content

Merge pull request #133 from etcd-io/dependabot/github_actions/action… #220

Merge pull request #133 from etcd-io/dependabot/github_actions/action…

Merge pull request #133 from etcd-io/dependabot/github_actions/action… #220

Workflow file for this run

---
name: Go Vulnerability Checker
on: [push, pull_request]
permissions: read-all
jobs:
govuln:
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@1af3b93b6815bc44a9784bd300feb67ff0d1eeb3 # v6.0.0
- id: goversion
run: echo "goversion=$(cat .go-version)" >> "$GITHUB_OUTPUT"
- uses: actions/setup-go@44694675825211faa026b3c33043df3e48a5fa00 # v6.0.0
with:
go-version: ${{ steps.goversion.outputs.goversion }}
- run: date
- run: |
set -euo pipefail
go install golang.org/x/vuln/cmd/govulncheck@latest && govulncheck ./...