Skip to content

Commit a25017e

Browse files
committed
Add snyk workflow to github actions
1 parent 17ef9c9 commit a25017e

File tree

1 file changed

+34
-0
lines changed

1 file changed

+34
-0
lines changed

.github/workflows/snyk.yaml

Lines changed: 34 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,34 @@
1+
name: Snyk test
2+
3+
on:
4+
- pull_request
5+
6+
jobs:
7+
security:
8+
runs-on: ubuntu-latest
9+
10+
steps:
11+
- uses: actions/checkout@v3
12+
- uses: snyk/actions/setup@master
13+
with:
14+
snyk-version: v1.1032.0
15+
16+
- uses: actions/setup-java@v3
17+
with:
18+
distribution: temurin
19+
java-version: 17
20+
21+
- name: Setup Gradle
22+
uses: gradle/gradle-build-action@v2
23+
24+
- name: Run Snyk to check for vulnerabilities
25+
env:
26+
SNYK_TOKEN: ${{ secrets.SNYK_TOKEN }}
27+
run: >
28+
snyk test
29+
--all-projects
30+
--configuration-matching="^runtimeClasspath$"
31+
--fail-on=upgradable
32+
--org=radar-base
33+
--policy-path=.snyk
34+
--severity-threshold=high

0 commit comments

Comments
 (0)