Skip to content

Bump github.com/patrickcping/pingone-go-sdk-v2/verify from 0.10.0 to 0.11.0 #3541

Bump github.com/patrickcping/pingone-go-sdk-v2/verify from 0.10.0 to 0.11.0

Bump github.com/patrickcping/pingone-go-sdk-v2/verify from 0.10.0 to 0.11.0 #3541

Workflow file for this run

name: "Security Scan"
# Run workflow each time code is pushed to your repository and on a schedule.
# The scheduled workflow runs every at 00:00 on Sunday UTC time.
on:
push:
branches: [ "main" ]
pull_request:
# The branches below must be a subset of the branches above
branches: [ "main" ]
schedule:
- cron: '0 0 * * 0'
jobs:
tests:
runs-on: ubuntu-latest
env:
GO111MODULE: on
steps:
- name: Checkout Source
uses: actions/checkout@v6
- name: Run Gosec Security Scanner
uses: securego/gosec@master
with:
# we let the report trigger content trigger a failure using the GitHub Security features.
args: '-no-fail -fmt sarif -out results.sarif ./...'
- name: Upload SARIF file
uses: github/codeql-action/upload-sarif@v4
with:
# Path to SARIF file relative to the root of the repository
sarif_file: results.sarif
onfailure:
if: ${{ failure() && github.event_name == 'schedule' }}
needs: [tests]
name: Send failure webhook
runs-on: ubuntu-latest
steps:
- run: |
curl --silent --request POST "${{ secrets.FAILURE_WEBHOOK_URL }}" \
--header 'Accept: application/json' \
--header 'Content-Type: text/plain' \
--data-raw '{
"WorkflowName": "${{ github.workflow }}",
"WorkflowURL": "https://github.com/${{ github.repository }}/actions/runs/${{ github.run_id }}",
"RepoName" : "${{ github.repository }}",
}'