Skip to content

Commit

Permalink
Gosec (#387)
Browse files Browse the repository at this point in the history
#### What this PR does / why we need it

see: open-component-model/ocm-project#270

#### Which issue(s) this PR fixes

fixes https://github.com/open-component-model/ocm-project/issues/383
  • Loading branch information
hilmarf authored Jan 30, 2025
1 parent b439fdb commit 871583c
Show file tree
Hide file tree
Showing 2 changed files with 21 additions and 1 deletion.
20 changes: 20 additions & 0 deletions .github/workflows/code-scan.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,20 @@
name: "Code scanning"

on:
push:
branches: ["main"]
pull_request:
branches: ["main"]
schedule:
- cron: "26 14 * * 2"

jobs:
gosec:
permissions:
# Required to upload SARIF files
security-events: write
# for actions/checkout to fetch code
contents: read
# call reusable workflow from central '.github' repo
uses: open-component-model/.github/.github/workflows/code-scan.yml@main
secrets: inherit
2 changes: 1 addition & 1 deletion content/docs/tutorials/best-practices-with-ocm.md
Original file line number Diff line number Diff line change
Expand Up @@ -128,7 +128,7 @@ Helm chart assume the following folder structure. The example is built using con
The Dockerfile has the following content:

```Dockerfile
FROM golang:1.22 as build
FROM golang:1.23.5 as build

WORKDIR /go/src/app
COPY . .
Expand Down

0 comments on commit 871583c

Please sign in to comment.