Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update to v1.3.9 #404

Open
wants to merge 63 commits into
base: main
Choose a base branch
from
Open
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
63 commits
Select commit Hold shift + click to select a range
2a6f6aa
clean up spaces
loosebazooka Nov 22, 2024
760ef4b
build(deps): Bump google.golang.org/api from 0.206.0 to 0.209.0
dependabot[bot] Nov 25, 2024
d994780
build(deps): Bump codecov/codecov-action in the all group
dependabot[bot] Nov 25, 2024
4fcb4d4
build(deps): Bump google/cloud-sdk from 501.0.0 to 502.0.0
dependabot[bot] Nov 25, 2024
1c87d03
build(deps): Bump github.com/google/trillian from 1.6.1 to 1.7.0
dependabot[bot] Dec 2, 2024
f50a08e
build(deps): Bump golang.org/x/sync from 0.9.0 to 0.10.0
dependabot[bot] Dec 9, 2024
9e0cb2e
build(deps): Bump golang.org/x/crypto from 0.29.0 to 0.30.0
dependabot[bot] Dec 9, 2024
293e88c
build(deps): Bump go.step.sm/crypto from 0.54.2 to 0.55.0
dependabot[bot] Dec 9, 2024
91776c0
build(deps): Bump golang.org/x/net from 0.31.0 to 0.32.0
dependabot[bot] Dec 9, 2024
d25f1a2
build(deps): Bump codecov/codecov-action in the all group
dependabot[bot] Dec 9, 2024
b04e614
build(deps): Bump the all group with 4 updates
dependabot[bot] Dec 10, 2024
ae541d0
build(deps): Bump golang from 1.23.3 to 1.23.4 in the all group
dependabot[bot] Dec 9, 2024
d3f96ec
fix zizmor issues (#2298)
bobcallaway Dec 11, 2024
153f3e6
build(deps): Bump golang.org/x/crypto in /hack/tools
dependabot[bot] Dec 12, 2024
865700b
build(deps): Bump golang.org/x/crypto from 0.30.0 to 0.31.0
dependabot[bot] Dec 12, 2024
cbee873
update builder to use go1.23.4 (#2301)
cpanato Dec 12, 2024
c08f843
Updates go and golangci-lint (#2302)
cpanato Dec 12, 2024
1c2d14b
build(deps): Bump actions/setup-go from 5.1.0 to 5.2.0 in the all group
dependabot[bot] Dec 16, 2024
9da2ea4
build(deps): Bump google/cloud-sdk from 502.0.0 to 503.0.0
dependabot[bot] Dec 16, 2024
652850c
build(deps): Bump golang from `574185e` to `7003184`
dependabot[bot] Dec 16, 2024
b57431d
build(deps): Bump the all group with 6 updates
dependabot[bot] Dec 16, 2024
5a7ca53
build(deps): Bump google.golang.org/api from 0.210.0 to 0.211.0
dependabot[bot] Dec 16, 2024
228ad9a
build(deps): Bump google.golang.org/grpc from 1.68.1 to 1.69.0
dependabot[bot] Dec 16, 2024
d114b80
build(deps): Bump github.com/secure-systems-lab/go-securesystemslib
dependabot[bot] Dec 16, 2024
2e6920c
build(deps): Bump google.golang.org/grpc in the all group
dependabot[bot] Dec 23, 2024
1f23009
build(deps): Bump google/cloud-sdk from 503.0.0 to 504.0.1
dependabot[bot] Dec 23, 2024
548758d
build(deps): Bump go.step.sm/crypto from 0.55.0 to 0.56.0
dependabot[bot] Dec 23, 2024
a8782a0
build(deps): Bump golang.org/x/net from 0.32.0 to 0.33.0
dependabot[bot] Dec 23, 2024
19007ec
build(deps): Bump google.golang.org/protobuf from 1.35.2 to 1.36.1
dependabot[bot] Dec 23, 2024
09b39a0
build(deps): Bump google.golang.org/api from 0.211.0 to 0.214.0
dependabot[bot] Dec 23, 2024
e7eacd1
build(deps): Bump golang from `7003184` to `7ea4c9d`
dependabot[bot] Dec 30, 2024
8f7b5a0
build(deps): Bump sigs.k8s.io/release-utils from 0.8.5 to 0.9.0
dependabot[bot] Jan 6, 2025
513c30e
Update types.md (#2322)
sgpinkus Jan 9, 2025
7bf4b21
chore(deps): bump actions pins to latest
dnwe Jan 10, 2025
280c8c1
fix(ci): simplify GOVERSION extraction
dnwe Jan 10, 2025
c505919
fetch minisign from homebrew instead of custom ppa (#2329)
bobcallaway Jan 13, 2025
362ccea
build(deps): Bump google/cloud-sdk from 504.0.1 to 505.0.0 (#2326)
dependabot[bot] Jan 13, 2025
1082f48
build(deps): Bump the all group with 11 updates (#2327)
dependabot[bot] Jan 13, 2025
dcad58c
build(deps): Bump google.golang.org/api from 0.214.0 to 0.216.0 (#2328)
dependabot[bot] Jan 13, 2025
1e9cdae
chore: relax go directive to permit 1.22.x
dnwe Jan 9, 2025
88b5ce5
add changelog for v1.3.8 (#2331)
cpanato Jan 16, 2025
f875aa2
Support per-shard signing keys (#2330)
haydentherapper Jan 17, 2025
7036af5
build(deps): Bump golang from 1.23.4 to 1.23.5 in the all group
dependabot[bot] Jan 20, 2025
7f909de
build(deps): Bump the all group with 3 updates
dependabot[bot] Jan 20, 2025
a61e48c
build(deps): Bump google.golang.org/protobuf in the all group
dependabot[bot] Jan 20, 2025
bd0b8e6
build(deps): Bump go.step.sm/crypto from 0.56.0 to 0.57.0
dependabot[bot] Jan 20, 2025
15c696c
build(deps): Bump github.com/tink-crypto/tink-go/v2 from 2.2.0 to 2.3.0
dependabot[bot] Jan 20, 2025
b68f6bb
build(deps): Bump google.golang.org/api from 0.216.0 to 0.217.0
dependabot[bot] Jan 20, 2025
1cb78ca
build(deps): Bump google/cloud-sdk from 505.0.0 to 506.0.0
dependabot[bot] Jan 20, 2025
f3db95b
Cache checkpoint for inactive shards (#2332)
haydentherapper Jan 21, 2025
2f182a1
build(deps): Bump google.golang.org/protobuf in the all group
dependabot[bot] Jan 27, 2025
10e8115
build(deps): Bump the all group with 3 updates
dependabot[bot] Jan 27, 2025
ac42c19
build(deps): Bump google.golang.org/api from 0.217.0 to 0.218.0
dependabot[bot] Jan 27, 2025
2497b42
build(deps): Bump google/cloud-sdk from 506.0.0 to 507.0.0
dependabot[bot] Jan 27, 2025
40f29ba
build(deps): Bump golang from `51a6466` to `8c10f21`
dependabot[bot] Jan 27, 2025
b67ee82
build(deps): Bump google.golang.org/grpc from 1.69.4 to 1.70.0
dependabot[bot] Jan 27, 2025
1225418
Merge tag 'v1.3.9'
tommyd450 Mar 18, 2025
40af44c
build(deps): Bump golang.org/x/crypto from 0.33.0 to 0.36.0
dependabot[bot] Mar 10, 2025
19bae7d
build(deps): Bump golang.org/x/net from 0.35.0 to 0.37.0
dependabot[bot] Mar 10, 2025
26c32d9
run go mod tidy
JasonPowr Mar 21, 2025
71fd362
build(deps): Bump cloud.google.com/go/pubsub from 1.45.3 to 1.47.0 (#…
dependabot[bot] Feb 14, 2025
1d6072b
run go mod tidy
JasonPowr Mar 21, 2025
669b488
Fix 'Using config file:' log message
saschagrunert Jan 30, 2025
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
8 changes: 5 additions & 3 deletions .github/workflows/build.yml
Original file line number Diff line number Diff line change
Expand Up @@ -35,20 +35,22 @@ jobs:

steps:
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
with:
persist-credentials: false
- uses: sigstore/cosign-installer@dc72c7d5c4d10cd6bcb8cf6e3fd625a9e5e537da # v3.7.0

- name: Extract version of Go to use
run: echo "GOVERSION=$(cat Dockerfile|grep golang | awk ' { print $2 } ' | cut -d '@' -f 1 | cut -d ':' -f 2 | uniq)" >> $GITHUB_ENV
run: echo "GOVERSION=$(awk -F'[:@]' '/FROM golang/{print $2; exit}' Dockerfile)" >> $GITHUB_ENV

- uses: actions/setup-go@41dfa10bad2bb2ae585af6ee5bb4d7d973ad74ed # v5.1.0
- uses: actions/setup-go@f111f3307d8850f501ac008e886eec1fd1932a34 # v5.3.0
with:
go-version: ${{ env.GOVERSION }}
check-latest: true

- name: deps
run: sudo apt-get update && sudo apt-get install -yq libpcsclite-dev

- uses: ko-build/setup-ko@3aebd0597dc1e9d1a26bcfdb7cbeb19c131d3037 # v0.7
- uses: ko-build/setup-ko@d982fec422852203cfb2053a8ec6ad302280d04d # v0.8

- name: Set up Cloud SDK
uses: google-github-actions/auth@6fc4af4b145ae7821d527454aa9bd537d1f2dc5f # v2.1.7
Expand Down
19 changes: 10 additions & 9 deletions .github/workflows/codeql-analysis.yml
Original file line number Diff line number Diff line change
Expand Up @@ -27,14 +27,13 @@ on:
schedule:
- cron: '45 10 * * 1'

permissions:
contents: read
security-events: write

jobs:
analyze:
name: Analyze
runs-on: ubuntu-latest
permissions:
contents: read
security-events: write

strategy:
fail-fast: false
Expand All @@ -44,23 +43,25 @@ jobs:
steps:
- name: Checkout repository
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
with:
persist-credentials: false

- name: Extract version of Go to use
run: echo "GOVERSION=$(cat Dockerfile|grep golang | awk ' { print $2 } ' | cut -d '@' -f 1 | cut -d ':' -f 2 | uniq)" >> $GITHUB_ENV
run: echo "GOVERSION=$(awk -F'[:@]' '/FROM golang/{print $2; exit}' Dockerfile)" >> $GITHUB_ENV

- uses: actions/setup-go@41dfa10bad2bb2ae585af6ee5bb4d7d973ad74ed # v5.1.0
- uses: actions/setup-go@f111f3307d8850f501ac008e886eec1fd1932a34 # v5.3.0
with:
go-version: ${{ env.GOVERSION }}
check-latest: true

# Initializes the CodeQL tools for scanning.
- name: Initialize CodeQL
uses: github/codeql-action/init@65c74964a9ed8c44ed9f19d4bbc5757a6a8e9ab9 # v2.16.1
uses: github/codeql-action/init@f6091c0113d1dcf9b98e269ee48e8a7e51b7bdd4 # v3.28.5
with:
languages: ${{ matrix.language }}

- name: Autobuild
uses: github/codeql-action/autobuild@65c74964a9ed8c44ed9f19d4bbc5757a6a8e9ab9 # v2.16.1
uses: github/codeql-action/autobuild@f6091c0113d1dcf9b98e269ee48e8a7e51b7bdd4 # v3.28.5

- name: Perform CodeQL Analysis
uses: github/codeql-action/analyze@65c74964a9ed8c44ed9f19d4bbc5757a6a8e9ab9 # v2.16.1
uses: github/codeql-action/analyze@f6091c0113d1dcf9b98e269ee48e8a7e51b7bdd4 # v3.28.5
81 changes: 53 additions & 28 deletions .github/workflows/main.yml
Original file line number Diff line number Diff line change
@@ -1,4 +1,4 @@
#

# Copyright 2021 The Sigstore Authors.
#
# Licensed under the Apache License, Version 2.0 (the "License");
Expand Down Expand Up @@ -34,9 +34,11 @@ jobs:

steps:
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
with:
persist-credentials: false
- name: Extract version of Go to use
run: echo "GOVERSION=$(cat Dockerfile|grep golang | awk ' { print $2 } ' | cut -d '@' -f 1 | cut -d ':' -f 2 | uniq)" >> $GITHUB_ENV
- uses: actions/setup-go@41dfa10bad2bb2ae585af6ee5bb4d7d973ad74ed # v5.1.0
run: echo "GOVERSION=$(awk -F'[:@]' '/FROM golang/{print $2; exit}' Dockerfile)" >> $GITHUB_ENV
- uses: actions/setup-go@f111f3307d8850f501ac008e886eec1fd1932a34 # v5.3.0
with:
go-version: ${{ env.GOVERSION }}

Expand All @@ -47,7 +49,7 @@ jobs:
- name: Test
run: go test -v -coverprofile=coverage.txt -covermode=atomic ./...
- name: Upload Coverage Report
uses: codecov/codecov-action@5c47607acb93fed5485fdbf7232e8a31425f672a # v5.0.2
uses: codecov/codecov-action@13ce06bfc6bbe3ecf90edbbf1bc32fe5978ca1d3 # v5.3.1
with:
flags: unittests
- name: Ensure no files were modified as a result of the build
Expand All @@ -57,13 +59,15 @@ jobs:
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
with:
persist-credentials: false
- name: Extract version of Go to use
run: echo "GOVERSION=$(cat Dockerfile|grep golang | awk ' { print $2 } ' | cut -d '@' -f 1 | cut -d ':' -f 2 | uniq)" >> $GITHUB_ENV
- uses: actions/setup-go@41dfa10bad2bb2ae585af6ee5bb4d7d973ad74ed # v5.1.0
run: echo "GOVERSION=$(awk -F'[:@]' '/FROM golang/{print $2; exit}' Dockerfile)" >> $GITHUB_ENV
- uses: actions/setup-go@f111f3307d8850f501ac008e886eec1fd1932a34 # v5.3.0
with:
go-version: ${{ env.GOVERSION }}

- uses: ko-build/setup-ko@3aebd0597dc1e9d1a26bcfdb7cbeb19c131d3037 # v0.7
- uses: ko-build/setup-ko@d982fec422852203cfb2053a8ec6ad302280d04d # v0.8

- name: container
run: |
Expand All @@ -77,14 +81,18 @@ jobs:
needs: build

steps:
- name: Set up Homebrew
id: set-up-homebrew
uses: Homebrew/actions/setup-homebrew@40e9946c182a64b3db1bf51be0dcb915f7802aa9
- name: download minisign
# run: sudo add-apt-repository ppa:dysfunctionalprogramming/minisign && sudo apt-get update && sudo apt-get install minisign
run: sudo add-apt-repository ppa:savoury1/minisign && sudo apt-get update && sudo apt-get install minisign

run: |
brew install minisign
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
with:
persist-credentials: false
- name: Extract version of Go to use
run: echo "GOVERSION=$(cat Dockerfile|grep golang | awk ' { print $2 } ' | cut -d '@' -f 1 | cut -d ':' -f 2 | uniq)" >> $GITHUB_ENV
- uses: actions/setup-go@41dfa10bad2bb2ae585af6ee5bb4d7d973ad74ed # v5.1.0
run: echo "GOVERSION=$(awk -F'[:@]' '/FROM golang/{print $2; exit}' Dockerfile)" >> $GITHUB_ENV
- uses: actions/setup-go@f111f3307d8850f501ac008e886eec1fd1932a34 # v5.3.0
with:
go-version: ${{ env.GOVERSION }}
- name: install gocovmerge
Expand All @@ -107,13 +115,13 @@ jobs:
env:
INDEX_BACKEND: redis
- name: Upload logs if they exist
uses: actions/upload-artifact@b4b15b8c7c6ac21ea08fcf65892d2ee8f75cf882 # v4.4.3
uses: actions/upload-artifact@65c4c4a1ddee5b72f698fdd19549f0f0fb45cf08 # v4.6.0
if: failure()
with:
name: E2E Docker Compose logs
path: /tmp/docker-compose.log
- name: Upload Coverage Report
uses: codecov/codecov-action@5c47607acb93fed5485fdbf7232e8a31425f672a # v5.0.2
uses: codecov/codecov-action@13ce06bfc6bbe3ecf90edbbf1bc32fe5978ca1d3 # v5.3.1
with:
files: /tmp/rekor-merged.cov,/tmp/pkg-rekor-merged.cov
flags: e2etests
Expand All @@ -123,10 +131,18 @@ jobs:
needs: build

steps:
- name: Set up Homebrew
id: set-up-homebrew
uses: Homebrew/actions/setup-homebrew@40e9946c182a64b3db1bf51be0dcb915f7802aa9
- name: download minisign
run: |
brew install minisign
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
with:
persist-credentials: false
- name: Extract version of Go to use
run: echo "GOVERSION=$(cat Dockerfile|grep golang | awk ' { print $2 } ' | cut -d '@' -f 1 | cut -d ':' -f 2 | uniq)" >> $GITHUB_ENV
- uses: actions/setup-go@41dfa10bad2bb2ae585af6ee5bb4d7d973ad74ed # v5.1.0
run: echo "GOVERSION=$(awk -F'[:@]' '/FROM golang/{print $2; exit}' Dockerfile)" >> $GITHUB_ENV
- uses: actions/setup-go@f111f3307d8850f501ac008e886eec1fd1932a34 # v5.3.0
with:
go-version: ${{ env.GOVERSION }}
- name: Install backfill test dependencies
Expand All @@ -149,7 +165,7 @@ jobs:
- name: Copy index test
run: ./tests/copy-index-test.sh
- name: Upload logs if they exist
uses: actions/upload-artifact@b4b15b8c7c6ac21ea08fcf65892d2ee8f75cf882 # v4.4.3
uses: actions/upload-artifact@65c4c4a1ddee5b72f698fdd19549f0f0fb45cf08 # v4.6.0
if: failure()
with:
name: E2E Docker Compose logs
Expand All @@ -160,22 +176,27 @@ jobs:
needs: build

steps:
- name: Set up Homebrew
id: set-up-homebrew
uses: Homebrew/actions/setup-homebrew@40e9946c182a64b3db1bf51be0dcb915f7802aa9
- name: download minisign
# run: sudo add-apt-repository ppa:dysfunctionalprogramming/minisign && sudo apt-get update && sudo apt-get install minisign
run: sudo add-apt-repository ppa:savoury1/minisign && sudo apt-get update && sudo apt-get install minisign
run: |
brew install minisign
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
with:
persist-credentials: false
- name: Docker Build
run: docker compose build
- name: Extract version of Go to use
run: echo "GOVERSION=$(cat Dockerfile|grep golang | awk ' { print $2 } ' | cut -d '@' -f 1 | cut -d ':' -f 2 | uniq)" >> $GITHUB_ENV
- uses: actions/setup-go@41dfa10bad2bb2ae585af6ee5bb4d7d973ad74ed # v5.1.0
run: echo "GOVERSION=$(awk -F'[:@]' '/FROM golang/{print $2; exit}' Dockerfile)" >> $GITHUB_ENV
- uses: actions/setup-go@f111f3307d8850f501ac008e886eec1fd1932a34 # v5.3.0
with:
go-version: ${{ env.GOVERSION }}

- name: Sharding Test
run: ./tests/sharding-e2e-test.sh
- name: Upload logs if they exist
uses: actions/upload-artifact@b4b15b8c7c6ac21ea08fcf65892d2ee8f75cf882 # v4.4.3
uses: actions/upload-artifact@65c4c4a1ddee5b72f698fdd19549f0f0fb45cf08 # v4.6.0
if: failure()
with:
name: Sharding E2E Docker Compose logs
Expand All @@ -187,18 +208,20 @@ jobs:

steps:
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
with:
persist-credentials: false
- name: Docker Build
run: docker compose build
- name: Extract version of Go to use
run: echo "GOVERSION=$(cat Dockerfile|grep golang | awk ' { print $2 } ' | cut -d '@' -f 1 | cut -d ':' -f 2 | uniq)" >> $GITHUB_ENV
- uses: actions/setup-go@41dfa10bad2bb2ae585af6ee5bb4d7d973ad74ed # v5.1.0
run: echo "GOVERSION=$(awk -F'[:@]' '/FROM golang/{print $2; exit}' Dockerfile)" >> $GITHUB_ENV
- uses: actions/setup-go@f111f3307d8850f501ac008e886eec1fd1932a34 # v5.3.0
with:
go-version: ${{ env.GOVERSION }}

- name: Test for Attestation begin returned that was previously persisted in tlog
run: ./tests/issue-872-e2e-test.sh
- name: Upload logs if they exist
uses: actions/upload-artifact@b4b15b8c7c6ac21ea08fcf65892d2ee8f75cf882 # v4.4.3
uses: actions/upload-artifact@65c4c4a1ddee5b72f698fdd19549f0f0fb45cf08 # v4.6.0
if: failure()
with:
name: Docker Compose logs
Expand All @@ -209,14 +232,16 @@ jobs:
needs: build
steps:
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
with:
persist-credentials: false

- name: Create git branch
run: git switch -c harness-test-branch

- name: Extract version of Go to use
run: echo "GOVERSION=$(cat Dockerfile|grep golang | awk ' { print $2 } ' | cut -d '@' -f 1 | cut -d ':' -f 2 | uniq)" >> $GITHUB_ENV
run: echo "GOVERSION=$(awk -F'[:@]' '/FROM golang/{print $2; exit}' Dockerfile)" >> $GITHUB_ENV

- uses: actions/setup-go@41dfa10bad2bb2ae585af6ee5bb4d7d973ad74ed # v5.1.0
- uses: actions/setup-go@f111f3307d8850f501ac008e886eec1fd1932a34 # v5.3.0
with:
go-version: ${{ env.GOVERSION }}
check-latest: true
Expand All @@ -225,7 +250,7 @@ jobs:
run: ./tests/rekor-harness.sh

- name: Upload logs if they exist
uses: actions/upload-artifact@b4b15b8c7c6ac21ea08fcf65892d2ee8f75cf882 # v4.4.3
uses: actions/upload-artifact@65c4c4a1ddee5b72f698fdd19549f0f0fb45cf08 # v4.6.0
if: failure()
with:
name: E2E Docker Compose logs
Expand Down
54 changes: 0 additions & 54 deletions .github/workflows/milestone.yml

This file was deleted.

8 changes: 5 additions & 3 deletions .github/workflows/validate-release.yml
Original file line number Diff line number Diff line change
Expand Up @@ -33,9 +33,9 @@ jobs:
steps:
- name: Check Signature
run: |
cosign verify ghcr.io/gythialy/golang-cross:v1.23.2@sha256:85c8e52bccf05564aa6284affd4eb197507cb22606e0bb8a2deeab3c0b779d87 \
cosign verify ghcr.io/gythialy/golang-cross:v1.23.4-0@sha256:fac6f9675e3e3a4ccc2b8cdab87b907cabae3a9c4e046d16816b9876315005e4 \
--certificate-oidc-issuer https://token.actions.githubusercontent.com \
--certificate-identity "https://github.com/gythialy/golang-cross/.github/workflows/release-golang-cross.yml@refs/tags/v1.23.2"
--certificate-identity "https://github.com/gythialy/golang-cross/.github/workflows/release-golang-cross.yml@refs/tags/v1.23.4-0"
env:
TUF_ROOT: /tmp

Expand All @@ -44,10 +44,12 @@ jobs:
needs:
- check-signature
container:
image: ghcr.io/gythialy/golang-cross:v1.23.2@sha256:85c8e52bccf05564aa6284affd4eb197507cb22606e0bb8a2deeab3c0b779d87
image: ghcr.io/gythialy/golang-cross:v1.23.4-0@sha256:fac6f9675e3e3a4ccc2b8cdab87b907cabae3a9c4e046d16816b9876315005e4

steps:
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
with:
persist-credentials: false

# Error: fatal: detected dubious ownership in repository at '/__w/rekor/rekor'
# To add an exception for this directory, call:
Expand Down
17 changes: 10 additions & 7 deletions .github/workflows/verify.yml
Original file line number Diff line number Diff line change
Expand Up @@ -30,11 +30,13 @@ jobs:
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
with:
persist-credentials: false

- name: Extract version of Go to use
run: echo "GOVERSION=$(cat Dockerfile|grep golang | awk ' { print $2 } ' | cut -d '@' -f 1 | cut -d ':' -f 2 | uniq)" >> $GITHUB_ENV
run: echo "GOVERSION=$(awk -F'[:@]' '/FROM golang/{print $2; exit}' Dockerfile)" >> $GITHUB_ENV

- uses: actions/setup-go@41dfa10bad2bb2ae585af6ee5bb4d7d973ad74ed # v5.1.0
- uses: actions/setup-go@f111f3307d8850f501ac008e886eec1fd1932a34 # v5.3.0
with:
go-version: ${{ env.GOVERSION }}

Expand All @@ -52,16 +54,17 @@ jobs:
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
with:
persist-credentials: false

- name: Extract version of Go to use
run: echo "GOVERSION=$(cat Dockerfile|grep golang | awk ' { print $2 } ' | cut -d '@' -f 1 | cut -d ':' -f 2 | uniq)" >> $GITHUB_ENV
run: echo "GOVERSION=$(awk -F'[:@]' '/FROM golang/{print $2; exit}' Dockerfile)" >> $GITHUB_ENV

- uses: actions/setup-go@41dfa10bad2bb2ae585af6ee5bb4d7d973ad74ed # v5.1.0
- uses: actions/setup-go@f111f3307d8850f501ac008e886eec1fd1932a34 # v5.3.0
with:
go-version: ${{ env.GOVERSION }}

- name: golangci-lint
uses: golangci/golangci-lint-action@971e284b6050e8a5849b72094c50ab08da042db8 # v6.1.1
timeout-minutes: 10
uses: golangci/golangci-lint-action@ec5d18412c0aeab7936cb16880d708ba2a64e1ae # v6.2.0
with:
version: v1.61
version: v1.62
Loading
Loading