Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

TOOLS-3535 Add gosec as a linter and generate a SARIF report as part of release #650

Closed
wants to merge 6 commits into from

Conversation

jddubois
Copy link
Collaborator

@jddubois jddubois commented May 9, 2024

This PR adds infrastructure to install dev tools including precious, which we use to run gosec as a linter. As part of the release process, this will generate a SARIF report. If there are new issues in the code base, then the release will be blocked.

It also updates the lint-go Evergreen task to run our new linting, which right now will just run gosec.

@autarch autarch force-pushed the TOOLS-3535 branch 6 times, most recently from 5172b0c to 0814038 Compare May 21, 2024 05:44
@autarch autarch changed the title TOOLS-3535 Add gosec as a linter TOOLS-3535 Add gosec as a linter and generate a SARIF report as part of release May 21, 2024
@autarch autarch marked this pull request as ready for review May 21, 2024 13:27
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
2 participants