1
0
mirror of https://github.com/openshift/installer.git synced 2026-02-05 06:46:36 +01:00
Files
installer/hack/go-sec.sh
2025-07-29 23:10:04 -04:00

18 lines
511 B
Bash
Executable File

#!/bin/sh
# Example: ./hack/gosec.sh
set -x
if [ "$IS_CONTAINER" != "" ]; then
if [ ! "$(command -v gosec >/dev/null)" ]; then
go get github.com/securego/gosec/cmd/gosec
fi
gosec -severity high -confidence high -exclude G304 ./cmd/... ./data/... ./pkg/... "${@}"
else
podman run --rm \
--env IS_CONTAINER=TRUE \
--volume "${PWD}:/go/src/github.com/openshift/installer:z" \
--workdir /go/src/github.com/openshift/installer \
docker.io/golang:1.24 \
./hack/go-sec.sh "${@}"
fi