Fix security scan by using official gosec GitHub action

This commit is contained in:
Tomas Dvorak
2026-02-27 17:45:01 +01:00
parent 0a80ecd9f7
commit e377516cc3
+3 -3
View File
@@ -93,9 +93,9 @@ jobs:
go-version: '1.24' go-version: '1.24'
- name: Run Gosec Security Scanner - name: Run Gosec Security Scanner
run: | uses: securecodewarrior/github-action-gosec@master
go install github.com/securecodewarrior/gosec/v2/cmd/gosec@latest with:
gosec -no-fail -fmt sarif -out results.sarif ./... args: '-no-fail -fmt sarif -out results.sarif ./...'
- name: Upload SARIF file - name: Upload SARIF file
uses: github/codeql-action/upload-sarif@v3 uses: github/codeql-action/upload-sarif@v3