Fix security scan by using official gosec GitHub action

This commit is contained in:
Tomas Dvorak
2026-02-27 17:45:01 +01:00
parent 0a80ecd9f7
commit e377516cc3
+3 -3
View File
@@ -93,9 +93,9 @@ jobs:
go-version: '1.24'
- name: Run Gosec Security Scanner
run: |
go install github.com/securecodewarrior/gosec/v2/cmd/gosec@latest
gosec -no-fail -fmt sarif -out results.sarif ./...
uses: securecodewarrior/github-action-gosec@master
with:
args: '-no-fail -fmt sarif -out results.sarif ./...'
- name: Upload SARIF file
uses: github/codeql-action/upload-sarif@v3