Bump actions/cache from 3 to 4 #483
Workflow file for this run
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
name: Build, Test, and Lint | |
on: | |
push: | |
branches: | |
- main | |
- 'release-*' | |
pull_request: | |
pull_request_target: | |
jobs: | |
build-container: | |
runs-on: ubuntu-latest | |
env: | |
EXPORT_RESULT: true | |
steps: | |
- run: echo "🎉 The job was automatically triggered by a ${{ github.event_name }} event." | |
- run: echo "🔎 The name of your branch is ${{ github.ref }} and your repository is ${{ github.repository }}." | |
- name: Checkout | |
uses: actions/checkout@v4 | |
- uses: actions/cache@v4 | |
with: | |
path: | | |
~/.cache/golangci-lint | |
~/.cache/go-build | |
~/go/pkg/mod | |
key: ${{ runner.os }}-go-${{ hashFiles('**/go.sum') }} | |
restore-keys: | | |
${{ runner.os }}-go- | |
- name: Install devbox | |
run: curl -fsSL https://get.jetpack.io/devbox | bash -s -- -f | |
- name: Install devbox deps | |
run: devbox install | |
- name: Test build | |
run: devbox run -- make build | |
- name: Run unit tests | |
run: devbox run -- make unit-test | |
# gocov-xml expects things to be properly placed under go path. | |
# GHA clones into /home/runner/work/repository so we create | |
# the directory under the right path and link it | |
- run: mkdir -p /home/runner/go/src/github.com/nutanix-cloud-native/ && ln -s /home/runner/work/cloud-provider-nutanix/cloud-provider-nutanix /home/runner/go/src/github.com/nutanix-cloud-native | |
- name: Run coverage report | |
run: devbox run -- make coverage | |
- name: Codecov | |
uses: codecov/[email protected] | |
env: | |
CODECOV_TOKEN: ${{ secrets.CODECOV_TOKEN }} | |
with: | |
file: ./coverage.xml # Replace with the path to your coverage report | |
fail_ci_if_error: true | |
- name: Run Trivy vulnerability scanner | |
uses: aquasecurity/[email protected] | |
with: | |
scan-type: "fs" | |
ignore-unfixed: true | |
format: "table" | |
exit-code: "1" | |
vuln-type: "os,library" | |
severity: "CRITICAL,HIGH" |