Skip to content

Remove golangci-lint tool dependency - #61

Merged
andrew merged 1 commit into
mainfrom
remove-golangci-lint-tool-dep
Oct 1, 2026
Merged

andrew merged 1 commit into
mainfrom
remove-golangci-lint-tool-dep

Conversation

@andrew

@andrew andrew commented Oct 1, 2026 •

Copy link
Copy Markdown
Contributor

go.mod carried golangci-lint as a tool dependency, which puts the linter's own dependencies in the application module graph, so bumping the linter forces compatibility pins on requirements the application does not use. Upstream recommends installing release binaries instead of go tool.

CI now installs a pinned binary through golangci-lint-action at v2.14.0, and the lint job gets an explicit contents: read. Removing the directive and running go mod tidy drops the linter dependency tree from go.mod and go.sum.

The lint make target now calls the installed golangci-lint binary.

Tool dependencies share the application module graph, so bumping the
linter forced compatibility pins on its own dependencies. CI installs
the pinned release binary through golangci-lint-action instead.
@andrew
andrew merged commit 13c02de into main Oct 1, 2026
10 checks passed
@andrew
andrew deleted the remove-golangci-lint-tool-dep branch October 1, 2026 19:03
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant