From 5cf91d2965582e4a0ba7f464f7e734a103205bc4 Mon Sep 17 00:00:00 2001 From: Aidan Gilbert Date: Fri, 27 Aug 2021 15:23:57 +0100 Subject: [PATCH 1/2] [#6] Create snyk pipeline. --- .github/workflows/snyk.yml | 19 +++++++++++++++++++ 1 file changed, 19 insertions(+) create mode 100644 .github/workflows/snyk.yml diff --git a/.github/workflows/snyk.yml b/.github/workflows/snyk.yml new file mode 100644 index 0000000..b410437 --- /dev/null +++ b/.github/workflows/snyk.yml @@ -0,0 +1,19 @@ +name: Snyk + +on: + push: + branches: [ master ] + pull_request: + branches: [ master ] + +jobs: + build: + + runs-on: ubuntu-latest + + steps: + - uses: actions/checkout@v2 + - name: Run Snyk to check for vulnerabilities + uses: snyk/actions/dotnet@master + env: + SNYK_TOKEN: ${{ secrets.SNYK_TOKEN }} From 5c851d692b9d416fc1cda75a01dbf503a4cdef8a Mon Sep 17 00:00:00 2001 From: Aidan Gilbert Date: Fri, 27 Aug 2021 16:21:42 +0100 Subject: [PATCH 2/2] [#6] Build project before running snyk. --- .github/workflows/snyk.yml | 10 +++++++++- 1 file changed, 9 insertions(+), 1 deletion(-) diff --git a/.github/workflows/snyk.yml b/.github/workflows/snyk.yml index b410437..6ef3756 100644 --- a/.github/workflows/snyk.yml +++ b/.github/workflows/snyk.yml @@ -7,12 +7,20 @@ on: branches: [ master ] jobs: - build: + security: runs-on: ubuntu-latest steps: - uses: actions/checkout@v2 + - name: Setup .NET + uses: actions/setup-dotnet@v1 + with: + dotnet-version: 5.0.x + - name: Restore dependencies + run: dotnet restore + - name: Build + run: dotnet build --no-restore - name: Run Snyk to check for vulnerabilities uses: snyk/actions/dotnet@master env: