Skip to content

build(deps): bump github/codeql-action from 3.36.0 to 4.36.2 #166

build(deps): bump github/codeql-action from 3.36.0 to 4.36.2

build(deps): bump github/codeql-action from 3.36.0 to 4.36.2 #166

Workflow file for this run

name: CI
on:
pull_request:
branches: [main]
# Least privilege by default; the token is read-only unless a job opts
# into more. Keeps the OpenSSF Scorecard Token-Permissions check green.
permissions:
contents: read
jobs:
validate:
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
- uses: actions/setup-go@4a3601121dd01d1626a1e23e37211e3254c1c06c # v6.4.0
with:
go-version-file: go.mod
cache: true
- name: Format check
run: |
gofmt -l .
test -z "$(gofmt -l .)"
- name: Lint
uses: golangci/golangci-lint-action@82606bf257cbaff209d206a39f5134f0cfbfd2ee # v9.2.1
with:
version: v2.7.2
args: --timeout 10m
- name: Test
run: go test -race -cover ./...
vuln:
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
- uses: actions/setup-go@4a3601121dd01d1626a1e23e37211e3254c1c06c # v6.4.0
with:
go-version-file: go.mod
cache: true
- name: govulncheck
run: |
go install golang.org/x/vuln/cmd/govulncheck@v1.3.0
govulncheck ./...