diff --git a/.github/workflows/govulncheck.yml b/.github/workflows/govulncheck.yml new file mode 100644 index 0000000..ce587cf --- /dev/null +++ b/.github/workflows/govulncheck.yml @@ -0,0 +1,29 @@ +on: + push: + branches: + - main + pull_request: + schedule: # daily at 04:00 UTC + - cron: '0 4 * * *' + +permissions: + contents: read + +name: govulncheck +jobs: + govulncheck: + + runs-on: ubuntu-latest + steps: + - name: Checkout code + uses: actions/checkout@v6 + + - name: Install Go + id: install-go + uses: actions/setup-go@v6 + with: + go-version-file: go.mod + + - name: Run govalncheck + run: | + go run golang.org/x/vuln/cmd/govulncheck@latest ./... diff --git a/.github/workflows/test.yml b/.github/workflows/test.yml index f9ad514..6a11959 100644 --- a/.github/workflows/test.yml +++ b/.github/workflows/test.yml @@ -24,6 +24,7 @@ jobs: uses: actions/setup-go@v6 with: go-version: ${{ matrix.go-version }} + check-latest: 'true' - name: Download dependencies run: go mod download diff --git a/go.mod b/go.mod index 70b1527..2bdcbf9 100644 --- a/go.mod +++ b/go.mod @@ -1,6 +1,6 @@ module github.com/hamba/pkg/v2 -go 1.25.0 +go 1.25.7 require ( github.com/hamba/logger/v2 v2.9.0