You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
To strengthen the supply chain security of the Gno ecosystem, we need to be very proactive and that should involve us taking advantage of tooling such as https://pkg.go.dev/golang.org/x/vuln/cmd/govulncheck which we should add before any PR merge that'll be run and if it fails, should flag a PR as not mergeable.
The text was updated successfully, but these errors were encountered:
…ty checks
This change adds a Makefile directive for continuous supply chain
security checks that when run will check against the Go module
vulnerabilities and CVEs.
Fixesgnolang#3992
Description
To strengthen the supply chain security of the Gno ecosystem, we need to be very proactive and that should involve us taking advantage of tooling such as https://pkg.go.dev/golang.org/x/vuln/cmd/govulncheck which we should add before any PR merge that'll be run and if it fails, should flag a PR as not mergeable.
The text was updated successfully, but these errors were encountered: