From 6ecaf214c1582fc0d064d2e075a4d1e239df27c0 Mon Sep 17 00:00:00 2001 From: Jeremy Mill Date: Wed, 23 Mar 2022 16:25:25 -0400 Subject: [PATCH] add snyk scanning --- .github/workflows/snyk.yml | 23 +++++++++++++++++++++++ 1 file changed, 23 insertions(+) create mode 100644 .github/workflows/snyk.yml diff --git a/.github/workflows/snyk.yml b/.github/workflows/snyk.yml new file mode 100644 index 0000000..300843a --- /dev/null +++ b/.github/workflows/snyk.yml @@ -0,0 +1,23 @@ +name: Snyk Scan +on: + workflow_dispatch: + push: + branches: + - main +jobs: + security: + runs-on: ubuntu-latest + steps: + - uses: actions/checkout@master + - name: setup ruby + uses: ruby/setup-ruby@v1 + with: + ruby-version: 2.7 + - name: create lock + run: bundle lock + - name: Run Snyk to check for vulnerabilities + uses: snyk/actions/ruby@master + env: + SNYK_TOKEN: ${{ secrets.SNYK_DIO_KEY }} + with: + command: monitor \ No newline at end of file