SHA256
1
0
forked from pool/gosec
gosec/gosec.spec
Jeff Kowalczyk 93582b55c9 - Update to version 2.22.1:
* Update cosign to v2.4.2 (#1303)
  * Add support for go 1.24 and phased out support for go 1.22 (#1302)
  * chore(deps): update all dependencies (#1300)
  * Update to go version 1.23.6 and 1.22.12 (#1299)
  * chore(deps): update module google.golang.org/api to v0.219.0 (#1296)
  * chore(deps): update module google.golang.org/api to v0.218.0 (#1294)
  * Add test to conver unit parssing for G115 rule (#1293)
  * Update to go version 1.23.5 and 1.22.11 (#1291)
  * chore(deps): update all dependencies (#1290)
  * Update gosec in github action to 2.22.0 (#1286)

OBS-URL: https://build.opensuse.org/package/show/devel:languages:go/gosec?expand=0&rev=41
2025-02-13 15:48:27 +00:00

62 lines
1.8 KiB
RPMSpec

#
# spec file for package gosec
#
# Copyright (c) 2025 SUSE LLC
#
# All modifications and additions to the file contributed by third parties
# remain the property of their copyright owners, unless otherwise agreed
# upon. The license for this file, and modifications and additions to the
# file, is the same license as for the pristine package itself (unless the
# license for the pristine package is not an Open Source License, in which
# case the license is the MIT License). An "Open Source License" is a
# license that conforms to the Open Source Definition (Version 1.9)
# published by the Open Source Initiative.
# Please submit bugfixes or comments via https://bugs.opensuse.org/
#
Name: gosec
Version: 2.22.1
Release: 0
Summary: CLI tool to scan the Go AST and SSA code representations for security problems
License: Apache-2.0
Group: Development/Languages/Go
URL: https://github.com/securego/gosec
Source: gosec-%{version}.tar.xz
Source1: vendor.tar.gz
BuildRequires: golang(API) >= 1.20
%description
CLI tool to inspect Go source code for security problems by scanning the
abstract syntax tree (AST) and static single-assignment (SSA) code
representations.
%prep
%autosetup -D -a 1
%build
# Native linux build includes version tags but currently works only on x86_64
%ifarch x86_64
GOFLAGS="-buildmode=pie" GIT_TAG="v%{version}" make build-linux
%else
GOFLAGS="-buildmode=pie" GIT_TAG="v%{version}" make build
%endif
%check
# check if binary is working
./gosec --version
make sec
# Not yet working because it wants to pull the latest ginkgo version from GitHub
#make test
%install
install -Dm 755 gosec %{buildroot}/%{_bindir}/gosec
%files
%license LICENSE.txt
%doc README.md
%{_bindir}/gosec
%changelog