Skip to content

Merge pull request #80 from synadia-io/mdv/accept-wombat-config-arg #467

Merge pull request #80 from synadia-io/mdv/accept-wombat-config-arg

Merge pull request #80 from synadia-io/mdv/accept-wombat-config-arg #467

Workflow file for this run

name: Security Scan
on:
push:
branches: [ main ]
pull_request:
branches: [ main ]
schedule:
# Run daily at 9am UTC
- cron: '0 9 * * *'
permissions:
contents: read
jobs:
govulncheck:
runs-on: ubuntu-latest
name: Run govulncheck
steps:
- name: Checkout code
uses: actions/checkout@v5
- name: Setup Go
uses: actions/setup-go@v6
with:
go-version-file: 'go.mod'
cache: true
- name: Install govulncheck
run: go install golang.org/x/vuln/cmd/govulncheck@latest
- name: Run govulncheck
run: govulncheck -test ./...
dependency-review:
runs-on: ubuntu-latest
name: Dependency Review
if: ${{ github.event_name == 'pull_request' }}
steps:
- name: Checkout code
uses: actions/checkout@v5
- name: Dependency Review
uses: actions/dependency-review-action@v4
with:
fail-on-severity: moderate