Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Snyk PR demo #184

Open
wants to merge 47 commits into
base: master
Choose a base branch
from
Open
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
47 commits
Select commit Hold shift + click to select a range
00ccd6b
fix: package.json & package-lock.json to reduce vulnerabilities
snyk-bot Nov 29, 2023
94b6a68
Merge pull request #62 from wmporrassnyk/snyk-fix-a34ad352fde07302d00…
wmurphysnyk Nov 29, 2023
c673469
fix: package.json & package-lock.json to reduce vulnerabilities
snyk-bot Dec 6, 2023
955dc09
Merge pull request #73 from wmporrassnyk/snyk-fix-908f9cc197e35e1d490…
wmurphysnyk Dec 6, 2023
ea5d6d6
fix: package.json & package-lock.json to reduce vulnerabilities
snyk-bot Dec 7, 2023
166d6d5
Merge pull request #75 from wmporrassnyk/snyk-fix-763169909c8d77eb518…
wmurphysnyk Dec 7, 2023
414d579
fix: package.json & package-lock.json to reduce vulnerabilities
snyk-bot Dec 11, 2023
fc59cd8
Merge pull request #76 from wmporrassnyk/snyk-fix-a1f037c43fe17d2019b…
wmurphysnyk Dec 11, 2023
da9724f
fix: package.json & package-lock.json to reduce vulnerabilities
snyk-bot Dec 13, 2023
976607e
Merge pull request #77 from wmporrassnyk/snyk-fix-0d355dd5ff1007f779d…
wmurphysnyk Dec 13, 2023
12a1f19
fix: package.json & package-lock.json to reduce vulnerabilities
snyk-bot Jan 8, 2024
53c94ff
Merge pull request #87 from wmporrassnyk/snyk-fix-7e94e3e5f84d686a34a…
wmurphysnyk Jan 8, 2024
6ccf096
fix: package.json & package-lock.json to reduce vulnerabilities
snyk-bot Jan 9, 2024
fb0736b
Merge pull request #88 from wmporrassnyk/snyk-fix-015701b44d62efc7185…
wmurphysnyk Jan 9, 2024
c9c1939
fix: frontend/package.json & frontend/package-lock.json to reduce vul…
snyk-bot Jan 23, 2024
03dd985
Merge pull request #90 from wmporrassnyk/snyk-fix-ceedff3b40ea1851999…
wmurphysnyk Jan 23, 2024
dd143c0
fix: package.json & package-lock.json to reduce vulnerabilities
snyk-bot Jan 24, 2024
b587219
Merge pull request #92 from wmporrassnyk/snyk-fix-f74a965e305fce8f89c…
wmurphysnyk Jan 24, 2024
28fb49d
fix: Dockerfile to reduce vulnerabilities
snyk-bot Jan 24, 2024
41cda49
Merge pull request #95 from wmporrassnyk/snyk-fix-15e2602d9f059d5f143…
wmurphysnyk Jan 24, 2024
c19cb99
fix: package.json & package-lock.json to reduce vulnerabilities
snyk-bot Feb 23, 2024
9d8e8d4
Create main.yml
wmurphysnyk Feb 28, 2024
2e46010
Merge pull request #99 from wmporrassnyk/snyk-fix-e933255e03ded083283…
wmurphysnyk Mar 5, 2024
f7f5b5e
fix: package.json & package-lock.json to reduce vulnerabilities
snyk-bot Mar 5, 2024
adca606
Merge pull request #100 from wmporrassnyk/snyk-fix-49704ab5c2e276b74d…
wmurphysnyk Mar 5, 2024
5bfa509
fix: frontend/package.json to reduce vulnerabilities
snyk-bot Apr 5, 2024
e4bb85b
Merge pull request #104 from wmporrassnyk/snyk-fix-5353491209559f7a72…
wmurphysnyk Apr 11, 2024
ca349a9
fix: package.json & package-lock.json to reduce vulnerabilities
snyk-bot Apr 18, 2024
61b4626
Merge pull request #106 from wmporrassnyk/snyk-fix-724dc4105140c1895d…
wmurphysnyk Apr 18, 2024
5c8225b
fix: package.json & package-lock.json to reduce vulnerabilities
snyk-bot Apr 18, 2024
3339daa
Merge pull request #107 from wmporrassnyk/snyk-fix-3c400f3d9a0d1f9266…
wmurphysnyk Apr 18, 2024
45feabc
fix: package.json & package-lock.json to reduce vulnerabilities
snyk-bot Apr 24, 2024
8aa825b
Merge pull request #110 from wmporrassnyk/snyk-fix-ee1205932d29e49e89…
wmurphysnyk Apr 24, 2024
d9ebc8c
fix: upgrade semver from 7.3.5 to 7.6.0
snyk-bot Apr 26, 2024
40564a1
Merge pull request #115 from wmporrassnyk/snyk-upgrade-566e6ac3e65bb4…
wmurphysnyk May 2, 2024
846b570
fix: package.json & package-lock.json to reduce vulnerabilities
snyk-bot May 14, 2024
562c684
Merge pull request #119 from wmporrassnyk/snyk-fix-ee8b01f14fb25736c0…
wmurphysnyk May 14, 2024
e4aaadb
Create npm-grunt.yml
wmurphysnyk Aug 20, 2024
12a754c
Create Snyk build
wmurphysnyk Aug 20, 2024
db9bcba
Update npm-grunt.yml
wmurphysnyk Aug 20, 2024
d987cd5
Delete .github/workflows/Snyk build
wmurphysnyk Nov 13, 2024
14cb207
Delete .github/workflows/main.yml
wmurphysnyk Nov 13, 2024
88eb3cc
Create main.yml
wmurphysnyk Nov 13, 2024
b720913
Update npm-grunt.yml
wmurphysnyk Nov 13, 2024
fe082bb
Delete .github/workflows/npm-grunt.yml
wmurphysnyk Nov 13, 2024
94d4b82
Update main.yml
wmurphysnyk Nov 13, 2024
9bcbec0
Create .snyk
wmurphysnyk Jan 7, 2025
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
37 changes: 37 additions & 0 deletions .github/workflows/main.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,37 @@
name: Snyk SCA & Code CLI Monitor

on:
push:
branches: [main]
pull_request:
branches: [main]
workflow_dispatch:

jobs:
build:
runs-on: ubuntu-latest
steps:
- name: Checkout code
uses: actions/checkout@v4

- name: Setup Node.js
uses: actions/setup-node@v4
with:
node-version: 14.x
cache: 'npm'

- name: Install Snyk CLI and snyk-to-html
run: |
npm install snyk -g
npm install snyk-to-html -g

- name: Authenticate Snyk CLI
run: snyk auth ${{ secrets.SNYK_AUTH }}

- name: Snyk Open Source test and monitor
run: |
snyk test || true
snyk monitor

- name: Snyk Code test
run: snyk code test || true
7 changes: 7 additions & 0 deletions .snyk
Original file line number Diff line number Diff line change
@@ -0,0 +1,7 @@
# Snyk (https://snyk.io) policy file
exclude:
global:
- tests
- Tests
- examples
- Examples
2 changes: 1 addition & 1 deletion Dockerfile
Original file line number Diff line number Diff line change
@@ -1,4 +1,4 @@
FROM node:12.18.4-buster
FROM node:21.5.0-slim

RUN apt-get -y update && apt-get -y install ca-certificates apt-transport-https

Expand Down
Loading