Skip to content

chore: 更新goharness依赖并注释掉本地replace替换 #80

chore: 更新goharness依赖并注释掉本地replace替换

chore: 更新goharness依赖并注释掉本地replace替换 #80

Triggered via push July 12, 2026 03:13
Status Success
Total duration 2m 23s
Artifacts 1

security.yml

on: push
Matrix: CodeQL Analysis
Dependency Review
0s
Dependency Review
Go Vulnerability Check
1m 9s
Go Vulnerability Check
Security Summary
2s
Security Summary
Fit to window
Zoom out
Zoom in

Annotations

7 errors and 3 warnings
Go Vulnerability Check
render.MarkdownWithWidth calls glamour.TermRenderer.Render, which eventually calls html.Renderer.renderLink
Go Vulnerability Check
render.MarkdownWithWidth calls glamour.TermRenderer.Render, which eventually calls html.Renderer.renderImage
Go Vulnerability Check
render.MarkdownWithWidth calls glamour.TermRenderer.Render, which eventually calls html.Renderer.renderAutoLink
Go Vulnerability Check
mcp.sseClient.Connect calls http.Client.Do, which eventually calls tls.Dialer.DialContext
Go Vulnerability Check
memoryconfig.main calls fmt.Fprintf, which calls tls.Conn.Write
Go Vulnerability Check
update.SHA256 calls io.Copy, which eventually calls tls.Conn.Read
Go Vulnerability Check
svc.Start calls http.Server.Serve, which eventually calls tls.Conn.HandshakeContext
Go Vulnerability Check
Node.js 20 is deprecated. The following actions target Node.js 20 but are being forced to run on Node.js 24: actions/checkout@v4, actions/upload-artifact@v4. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
CodeQL Analysis (go)
Node.js 20 is deprecated. The following actions target Node.js 20 but are being forced to run on Node.js 24: actions/checkout@v4. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
CodeQL Analysis (go)
Expected `which go` to return /home/runner/work/_temp/codeql-action-go-tracing/bin/go, but got /opt/hostedtoolcache/go/1.26.4/x64/bin/go: please ensure that the correct version of Go is installed before the `codeql-action/init` Action is used.

Artifacts

Produced during runtime
Name Size Digest
govulncheck-report Expired
880 Bytes
sha256:eb2fc19d9776e489d912c723311146a4f408f17ef1c32e91f2db6fa97918b78b