From 9840abe08db65ce24ede20f1ece1de3c2eded4e7 Mon Sep 17 00:00:00 2001 From: Alessandro Baccin Date: Mon, 28 Sep 2026 11:47:13 +0100 Subject: [PATCH] ci: drop setup-goproxy from lint workflow Every PR fails at job setup: "Unable to resolve action github/setup-goproxy, not found". github/setup-goproxy is private and gh-elm is public, so the workflow cannot resolve it. Not a bad pin; the SHA is still the current v1.1.0. goproxy exists to resolve private github.com/github/* modules. gh-elm has none -- every dependency is public OSS, which is why ci.yml builds and tests the same module graph without it. Drops id-token: write with it, since nothing else needs OIDC. Cherry-picked from 61da97d, stranded on an unmerged feature branch (#13). Co-authored-by: ismith <172694+ismith@users.noreply.github.com> Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: e558d009-3ea1-4455-b1fd-c2a180332509 --- .github/workflows/lint.yaml | 6 +----- 1 file changed, 1 insertion(+), 5 deletions(-) diff --git a/.github/workflows/lint.yaml b/.github/workflows/lint.yaml index 287e05f..073ffe0 100644 --- a/.github/workflows/lint.yaml +++ b/.github/workflows/lint.yaml @@ -10,7 +10,6 @@ on: merge_group: permissions: - id-token: write contents: read jobs: @@ -27,11 +26,8 @@ jobs: with: go-version-file: go.mod # setup-go caches by default; disable it here because this workflow - # also runs on tags and has id-token: write. + # also runs on tags. cache: false - - name: OIDC Setup for goproxy - uses: github/setup-goproxy@5e60e1074d42316dfe2949ebf9a92bf77b24645b # v1.1.0 - - name: Run Go linter run: make lint