Skip to content

feature: add snyk.io #5

feature: add snyk.io

feature: add snyk.io #5

Workflow file for this run

name: Snyk - Check Vulnerabilities
on:
pull_request:
push:
branches: [develop]
jobs:
dotnet:
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@master
- name: Setup .NET
uses: actions/setup-dotnet@v4
- name: Restore dependencies
run: dotnet restore ./CSETWebApi/CSETWeb_Api/CSETWeb_Api.sln
- name: Run Snyk to check for vulnerabilities
uses: snyk/actions/dotnet@master
env:
SNYK_TOKEN: ${{ secrets.SNYK_TOKEN }}
with:
args: |
--severity-threshold=high \
--all-projects
node:
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@master
- name: Upgrade npm
run: npm install -g npm
- name: Run Snyk to check for vulnerabilities
uses: snyk/actions/node@master
env:
SNYK_TOKEN: ${{ secrets.SNYK_TOKEN }}
with:
args: |
--severity-threshold=high \
--all-projects