From 87cedc2022cc3ebfe3ca4ec5621154feb9a313e5 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?M=2E=20Efe=20=C3=87etin?= Date: Tue, 1 Nov 2022 10:50:33 +0300 Subject: [PATCH] :construction_worker: ci: replace snyk with govulncheck (#2178) --- .github/workflows/snyk.yml | 11 ----------- .github/workflows/vulncheck.yml | 20 ++++++++++++++++++++ 2 files changed, 20 insertions(+), 11 deletions(-) delete mode 100644 .github/workflows/snyk.yml create mode 100644 .github/workflows/vulncheck.yml diff --git a/.github/workflows/snyk.yml b/.github/workflows/snyk.yml deleted file mode 100644 index f3b872ec0c..0000000000 --- a/.github/workflows/snyk.yml +++ /dev/null @@ -1,11 +0,0 @@ -on: [push, pull_request_target] -name: Snyk security -jobs: - security: - runs-on: ubuntu-latest - steps: - - uses: actions/checkout@v3 - - name: Run Snyk to check for vulnerabilities - uses: snyk/actions/golang@master - env: - SNYK_TOKEN: ${{ secrets.SNYK_TOKEN }} \ No newline at end of file diff --git a/.github/workflows/vulncheck.yml b/.github/workflows/vulncheck.yml new file mode 100644 index 0000000000..bbf7c155c4 --- /dev/null +++ b/.github/workflows/vulncheck.yml @@ -0,0 +1,20 @@ +on: [push, pull_request_target] +name: Vulnerability Check +jobs: + Security: + runs-on: ubuntu-latest + steps: + - name: Install Go + uses: actions/setup-go@v3 + with: + go-version: 1.19.x + - name: Fetch Repository + uses: actions/checkout@v3 + - name: Install Govulncheck + run: | + export GO111MODULE=on + export PATH=${PATH}:`go env GOPATH`/bin + go install golang.org/x/vuln/cmd/govulncheck@latest + - name: Run Govulncheck + run: "`go env GOPATH`/bin/govulncheck ./..." +