Skip to content

feat: license check ci and commands #94

feat: license check ci and commands

feat: license check ci and commands #94

Workflow file for this run

name: govulncheck
on:
push:
branches:
- main
pull_request:
jobs:
check:
name: Check for known vulnerabilities that affect Go code
runs-on: ubuntu-latest
permissions:
id-token: write
pull-requests: write
contents: write
steps:
- uses: actions/checkout@v5
- name: Hub login
uses: docker/login-action@v3
with:
username: dockerpublicbot
password: ${{ secrets.DOCKERPUBLICBOT_WRITE_PAT }}
- name: Set up Docker Buildx
id: buildx
uses: docker/setup-buildx-action@v3
with:
driver: cloud
endpoint: "docker/secrets-engine"
install: true
- name: govulncheck
run: make BUILDER=${{ steps.buildx.outputs.name }} govulncheck