Merge pull request #932 from idvoretskyi/idvoretskyi-snyk

Snyk GitHub Action added
This commit is contained in:
Hidde Beydals 2021-02-16 22:50:46 +01:00 committed by GitHub
commit b1d1d30cdb
No known key found for this signature in database
GPG key ID: 4AEE18F83AFDEB23

15
.github/workflows/snyk.yaml vendored Normal file
View file

@ -0,0 +1,15 @@
name: Snyk
on: [push]
jobs:
security:
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@master
- name: Run Snyk to check for vulnerabilities
uses: snyk/actions/golang@master
env:
SNYK_TOKEN: ${{ secrets.SNYK_TOKEN }}
- name: Upload result to GitHub Code Scanning
uses: github/codeql-action/upload-sarif@v1
with:
sarif_file: snyk.sarif