Skip to content

chore: bump version to v2.3.5 #198

chore: bump version to v2.3.5

chore: bump version to v2.3.5 #198

name: Vulnerability Scan
on:
push:
branches: [main, master, develop]
pull_request:
branches: [main, master, develop]
schedule:
# Run weekly on Sundays at 00:00 UTC
- cron: "0 0 * * 0"
workflow_dispatch:
permissions:
contents: read
security-events: write
actions: read
env:
GO_VERSION: "1.26"
jobs:
vulncheck:
name: Vulnerability Scan
runs-on: ubuntu-latest
steps:
- name: Checkout code
uses: actions/checkout@v5
- name: Setup Go
uses: actions/setup-go@v5
with:
go-version: ${{ env.GO_VERSION }}
cache: true
cache-dependency-path: go.sum
- name: Install govulncheck
run: |
go install golang.org/x/vuln/cmd/govulncheck@latest
- name: Run govulncheck
run: |
$(go env GOPATH)/bin/govulncheck ./...
dependency-review:
name: Dependency Review
runs-on: ubuntu-latest
if: github.event_name == 'pull_request'
steps:
- name: Checkout code
uses: actions/checkout@v5
- name: Dependency Review
uses: actions/dependency-review-action@v4
with:
fail-on-severity: moderate