Files
keywarden/.gitea/workflows/security-scan.yml
Patrick Asmus (scriptos) 1d60ba2999
Some checks failed
PR Tests / Lint, Build & Test (pull_request) Has been cancelled
Security Scan / Go Vulnerability Check (pull_request) Has been cancelled
fix: add nodejs to security-scan container for checkout action
2026-04-05 18:25:46 +02:00

28 lines
624 B
YAML

# Keywarden CI - Security Scan
# Checks for known vulnerabilities in Go dependencies on PRs
name: Security Scan
on:
pull_request:
branches: [master]
jobs:
govulncheck:
name: Go Vulnerability Check
runs-on: ubuntu-latest
container:
image: golang:1.26-alpine
steps:
- name: Install dependencies
run: apk add --no-cache git gcc musl-dev sqlite-dev nodejs
- name: Checkout code
uses: actions/checkout@v4
- name: Install govulncheck
run: go install golang.org/x/vuln/cmd/govulncheck@latest
- name: Run govulncheck
run: govulncheck ./...