We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
1 parent 4d95af2 commit 5c15a6eCopy full SHA for 5c15a6e
.github/workflows/codeql-analysis.yml
@@ -9,9 +9,6 @@ on:
9
schedule:
10
- cron: '0 22 * * 5'
11
12
-permissions:
13
- contents: read # to fetch code (actions/checkout)
14
-
15
jobs:
16
CodeQL-Build:
17
@@ -67,3 +64,17 @@ jobs:
67
64
68
65
- name: Perform CodeQL Analysis
69
66
uses: github/codeql-action/analyze@v3
+
+ - name: Run govulncheck
+ if: matrix.language == 'go'
70
+ uses: golang/govulncheck-action@v1
71
+ with:
72
+ output-format: sarif
73
+ output-file: govulncheck.sarif
74
75
+ - name: Upload govulncheck results
76
77
+ uses: github/codeql-action/upload-sarif@v3
78
79
+ sarif_file: govulncheck.sarif
80
+ category: govulncheck
0 commit comments