Analyze code statically by using gosec in Github actions
Specify directories
(Multiple directories can be specified by separating them with line feed)
Changes gosec
command line options.
Specify the options in JSON array format.
e.g.: ["-conf", ".gosecrc.json"]
Changes the current working directory of the Node.js process
Change the reporter.
(Multiple can be specified separated by commas)
name: Analyze code statically
"on": pull_request
jobs:
reek:
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@v2
- name: Analyze code statically using gosec
uses: naokikimura/gosec-action@v0
Bug reports and pull requests are welcome on GitHub at https://github.com/naokikimura/gosec-action
The gem is available as open source under the terms of the MIT License.