• Home
  • Features
  • Pricing
  • Docs
  • Announcements
  • Sign In

go-pkgz / auth
86%
master: 86%

Build:
Build:
LAST BUILD BRANCH: feat/partitioned-cookies
DEFAULT BRANCH: master
Repo Added 26 Dec 2018 08:17AM UTC
Files 25
Badge
Embed ▾
README BADGES
x

If you need to use a raster PNG badge, change the '.svg' to '.png' in the link

Markdown

Textile

RDoc

HTML

Rst

LAST BUILD ON BRANCH deps-refresh
branch: deps-refresh
CHANGE BRANCH
x
Reset
  • deps-refresh
  • allowed-provider-check
  • apple-reponse-mode-fix
  • aud-secrets
  • ava-factory
  • avatar-errnotfound
  • chore/go-fix
  • ci/codeql-v2
  • ci/go-1.26-golangci-2.12
  • configurable-microsoft-tenant
  • cookie-domain
  • custom-dev-host
  • custom-dev-port
  • dependabot/go_modules/_example/github.com/go-chi/chi/v5-5.2.2
  • dependabot/go_modules/_example/golang.org/x/crypto-0.17.0
  • dependabot/go_modules/_example/golang.org/x/image-0.38.0
  • dependabot/go_modules/_example/golang.org/x/image-0.5.0
  • dependabot/go_modules/_example/golang.org/x/net-0.17.0
  • dependabot/go_modules/_example/golang.org/x/net-0.7.0
  • dependabot/go_modules/golang.org/x/crypto-0.31.0
  • dependabot/go_modules/golang.org/x/image-0.38.0
  • dependabot/go_modules/golang.org/x/image-0.41.0
  • dependabot/go_modules/v2/github.com/golang-jwt/jwt/v5-5.2.2
  • dependabot/go_modules/v2/golang.org/x/crypto-0.31.0
  • dependabot/go_modules/v2/golang.org/x/crypto-0.45.0
  • dependabot/go_modules/v2/golang.org/x/crypto-0.52.0
  • dependabot/go_modules/v2/golang.org/x/image-0.41.0
  • dependabot/go_modules/v2/golang.org/x/net-0.33.0
  • dependabot/go_modules/v2/golang.org/x/net-0.36.0
  • direct-custom-id
  • docs/comment-sweep
  • docs/microsoft-signin-audience
  • dverhoturov/telegram_fix
  • email-send-context
  • email-sender
  • feat/csrf-middleware
  • feat/github-numeric-id
  • feat/partitioned-cookies
  • feat/sender-helo-host
  • feat/telegram-api-url
  • feature/custom-error-handler
  • fix-anon
  • fix-content-type-header
  • fix-oauth-from-open-redirect
  • fix-oauth-sendjwtheader
  • fix-providers-names
  • fix/admin-passwd-log-leak
  • fix/apple-id-token-iss-aud
  • fix/apple-jwk-cache
  • fix/apple-log-redact-token-response
  • fix/auth-sensitive-logging
  • fix/avatar-content-type-spoofing-xss
  • fix/csp-consumer-note
  • fix/dev-custom-bind-localhost
  • fix/documented-auth-params
  • fix/email-sender-redact-body
  • fix/go127-image-assertions
  • fix/go127-test-assertions
  • fix/gridfs-concurrent-put
  • fix/gridfs-revisions
  • fix/nil-avatar-store
  • fix/panic-save-ava-nil
  • fix/see-other-redirect-after-auth
  • fix/telegram-redact-bot-token-in-avatar-url
  • fix/v1-from-redirect-validator
  • fix/verify-replay
  • fix/verify-replay-typed-nil-followup
  • followups/security-review
  • go1_20
  • jwt-header
  • master
  • microsoft
  • migrate-example-to-routegroup
  • no-ava
  • official-mongo-drvier
  • paskal/HttpOnly
  • paskal/add_common_processor
  • paskal/avatar_return_proper_content_type
  • paskal/bump_ci_go_version
  • paskal/bump_dep
  • paskal/bump_go_modules
  • paskal/bump_modules
  • paskal/double_close
  • paskal/email_module
  • paskal/facelift
  • paskal/fix_actions_test
  • paskal/fix_apple_key_panic
  • paskal/fix_custom_server
  • paskal/fix_error
  • paskal/fix_golangcilint
  • paskal/fix_lint_report
  • paskal/fix_send_jwt_header
  • paskal/google_auth_doc
  • paskal/improve_telegram
  • paskal/modules_bump
  • paskal/mongodb
  • paskal/moq
  • paskal/new_errors
  • paskal/plain_text
  • paskal/switch_to_v2
  • paskal/sync_v2
  • paskal/telegram_site_id
  • paskal/tg_username
  • paskal/token_generation_instructions
  • paskal/update-dependencies
  • paskal/update-modules
  • paskal/update_modules
  • paskal/update_pkcs8
  • paskal/v2
  • paskal/v2_golangcilint
  • paskal/v2_jwt5
  • ps/fix-example
  • rbac
  • refs/tags/v0.10.0
  • refs/tags/v0.10.1
  • refs/tags/v0.10.2
  • refs/tags/v0.11.0
  • refs/tags/v0.12.0
  • refs/tags/v0.12.1
  • refs/tags/v1.13.0
  • refs/tags/v1.13.1
  • refs/tags/v1.14.0
  • refs/tags/v1.15.0
  • refs/tags/v1.16.0
  • refs/tags/v1.17.0
  • refs/tags/v1.18.0
  • refs/tags/v1.19.0
  • refs/tags/v1.19.1
  • refs/tags/v1.20.0
  • refs/tags/v1.21.0
  • refs/tags/v1.22.0
  • refs/tags/v1.22.1
  • refs/tags/v1.23.0
  • refs/tags/v1.24.0
  • refs/tags/v1.24.1
  • refs/tags/v1.24.2
  • refs/tags/v1.25.1
  • refs/tags/v1.25.2
  • refs/tags/v1.25.3
  • refs/tags/v1.25.4
  • refs/tags/v1.25.5
  • refs/tags/v1.25.6
  • refs/tags/v1.25.7
  • refs/tags/v1.26.0
  • refs/tags/v1.5.1
  • refs/tags/v2.0.0
  • refs/tags/v2.1.0
  • refs/tags/v2.1.1
  • refs/tags/v2.1.2
  • refs/tags/v2.1.3
  • refs/tags/v2.1.4
  • refs/tags/v2.1.5
  • refs/tags/v2.1.6
  • refs/tags/v2.1.7
  • refs/tags/v2.2.0
  • remove-bluemonday
  • samesite
  • sanitize-verifyed
  • update-dependencies-2026-04
  • update-dependencies-dec2024
  • update-deps-and-golangci-v2
  • upgrade-repeater-v2
  • v0.8.0
  • v0.8.1
  • v0.8.2
  • v0.8.3
  • v0.9.0
  • verify-avatar

19 Aug 2026 07:01AM UTC coverage: 86.039% (-0.05%) from 86.086%
32225917248

Pull #312

github

paskal
Set explicit GITHUB_TOKEN permissions in workflows

CodeQL flagged all three workflows for leaving the GITHUB_TOKEN at the
repository default, which currently grants write access across contents,
issues, pull requests and more. Each workflow now declares contents: read
at the top level, with the jobs that need more widening it themselves.

The build jobs keep statuses: write because goveralls hands the token to
coveralls, which posts the coverage status back to the commit. The CodeQL
analyze job keeps security-events: write to upload its results and
actions: read to inspect the workflow run.
Pull Request #312: Bump dependencies in root, v2 and example modules

3180 of 3696 relevant lines covered (86.04%)

9.49 hits per line

Relevant lines Covered
Build:
Build:
3696 RELEVANT LINES 3180 COVERED LINES
9.49 HITS PER LINE
Source Files on deps-refresh
  • Tree
  • List 25
  • Changed 0
  • Source Changed 0
  • Coverage Changed 0
Coverage ∆ File Lines Relevant Covered Missed Hits/Line

Recent builds

Builds Branch Commit Type Ran Committer Via Coverage
32225917248 deps-refresh Set explicit GITHUB_TOKEN permissions in workflows CodeQL flagged all three workflows for leaving the GITHUB_TOKEN at the repository default, which currently grants write access across contents, issues, pull requests and more. Each workflow now d... Pull #312 19 Aug 2026 07:04AM UTC paskal github
86.04
32225917206 deps-refresh Set explicit GITHUB_TOKEN permissions in workflows CodeQL flagged all three workflows for leaving the GITHUB_TOKEN at the repository default, which currently grants write access across contents, issues, pull requests and more. Each workflow now d... Pull #312 19 Aug 2026 07:02AM UTC paskal github
86.09
32225919799 deps-refresh Set explicit GITHUB_TOKEN permissions in workflows CodeQL flagged all three workflows for leaving the GITHUB_TOKEN at the repository default, which currently grants write access across contents, issues, pull requests and more. Each workflow now d... Pull #312 19 Aug 2026 07:02AM UTC paskal github pending completion  
32225312278 deps-refresh Bump dependencies in root, v2 and example modules Updates every module that does not require a newer Go than the 1.25.0 directive already in place, so all three go.mod files keep their current directive. Notable bumps: go.etcd.io/bbolt to v1.5.0,... Pull #312 19 Aug 2026 06:56AM UTC paskal github
86.04
32225312269 deps-refresh Bump dependencies in root, v2 and example modules Updates every module that does not require a newer Go than the 1.25.0 directive already in place, so all three go.mod files keep their current directive. Notable bumps: go.etcd.io/bbolt to v1.5.0,... Pull #312 19 Aug 2026 06:55AM UTC paskal github
86.09
See All Builds (1235)
  • Repo on GitHub
STATUS · Troubleshooting · Open an Issue · Sales · Support · CAREERS · ENTERPRISE · START FREE TRIAL · SCHEDULE DEMO
ANNOUNCEMENTS · TWITTER · TOS & SLA · Supported CI Services · What's a CI service? · Automated Testing

© 2026 Coveralls, Inc