kanisterio/kanister

Nightly runs for govulncheck

Closed this issue · 1 comments

Is your feature request related to a problem? Please describe.

Already merged code should be scanned with govulncheck as well. E.g. when a new vulnerability emerges in the mean-time.

(Github Action for govulncheck was added in #2752)

Describe the solution you'd like

Nightly runs should be added. Possibly in a separate pipeline and with continue-on-error: false

Describe alternatives you've considered

Automatically creating Github issues as reminders on failures might be useful. It could also be used for notifications when a Github Team is tagged in the text. Probably a separate issue should be created though if needed.

Environment

Additional context

Thanks for opening this issue 👍. The team will review it shortly.

If this is a bug report, make sure to include clear instructions how on to reproduce the problem with minimal reproducible examples, where possible. If this is a security report, please review our security policy as outlined in SECURITY.md.

If you haven't already, please take a moment to review our project's Code of Conduct document.