Skip to content

ca333 is scanning dependencies for vulnerabilities πŸ”’ #1476

ca333 is scanning dependencies for vulnerabilities πŸ”’

ca333 is scanning dependencies for vulnerabilities πŸ”’ #1476

Workflow file for this run

name: Vulnerability Scan
run-name: ${{ github.actor }} is scanning dependencies for vulnerabilities πŸ”’
on:
pull_request:
types: [opened, synchronize, reopened]
workflow_dispatch:
jobs:
osv_scan:
runs-on: ubuntu-latest
steps:
- name: Checkout code
id: checkout
uses: actions/checkout@v4
- name: Set up Go
id: setup_go
uses: actions/setup-go@v5
with:
go-version: '1.22'
- name: Install osv-scanner
id: install_osv_scanner
run: |
go install github.com/google/osv-scanner/v2/cmd/osv-scanner@latest
echo "${HOME}/go/bin" >> $GITHUB_PATH
- name: Scan for vulnerabilities
id: scan_vulnerabilities
run: osv-scanner -r .