File tree Expand file tree Collapse file tree 1 file changed +11
-0
lines changed Expand file tree Collapse file tree 1 file changed +11
-0
lines changed Original file line number Diff line number Diff line change @@ -16,6 +16,10 @@ on: # yamllint disable-line rule:truthy
16
16
jobs :
17
17
security :
18
18
runs-on : ubuntu-latest
19
+ permissions :
20
+ actions : read
21
+ contents : read
22
+ security-events : write
19
23
steps :
20
24
- uses : actions/checkout@master
21
25
- uses : snyk/actions/setup@master
26
30
- name : Restore dependencies
27
31
run : dotnet restore algorithm-exercises-csharp.sln
28
32
- name : Run Snyk to check for vulnerabilities
33
+ continue-on-error : true # To make sure that SARIF upload gets called
29
34
run : >
30
35
snyk test
31
36
algorithm-exercises-csharp/
37
+ algorithm-exercises-csharp-base/
32
38
algorithm-exercises-csharp-test/
39
+ --sarif-file-output=snyk-code.sarif
33
40
env :
34
41
SNYK_TOKEN : ${{ secrets.SNYK_TOKEN }}
42
+ - name : Upload result to GitHub Code Scanning
43
+ uses : github/codeql-action/upload-sarif@v3
44
+ with :
45
+ sarif_file : snyk-code.sarif
You can’t perform that action at this time.
0 commit comments