github.com/openshift/installer@v1.4.17/hack/go-sec.sh (about)

     1  #!/bin/sh
     2  # Example:  ./hack/gosec.sh
     3  set -x
     4  
     5  if [ "$IS_CONTAINER" != "" ]; then
     6    if [ ! "$(command -v gosec >/dev/null)" ]; then
     7        go get github.com/securego/gosec/cmd/gosec
     8    fi
     9    gosec -severity high -confidence high -exclude G304 ./cmd/... ./data/... ./pkg/... "${@}"
    10  else
    11    podman run --rm \
    12      --env IS_CONTAINER=TRUE \
    13      --volume "${PWD}:/go/src/github.com/openshift/installer:z" \
    14      --workdir /go/src/github.com/openshift/installer \
    15      docker.io/golang:1.22 \
    16      ./hack/go-sec.sh "${@}"
    17  fi