From ac350340e8ccd41da6914b25139f1cae88bf1d85 Mon Sep 17 00:00:00 2001 From: Julien Poissonnier Date: Tue, 17 Dec 2024 12:35:31 +0100 Subject: [PATCH] upload results to github --- .github/workflows/snyk-scan.yml | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/.github/workflows/snyk-scan.yml b/.github/workflows/snyk-scan.yml index 0bb5910..6787254 100644 --- a/.github/workflows/snyk-scan.yml +++ b/.github/workflows/snyk-scan.yml @@ -36,6 +36,10 @@ jobs: with: image: ${{ env.DOCKER_ORG }}/${{ matrix.image }}:${{ env.PULUMI_VERSION }}${{ matrix.suffix }} --platform linux/amd64 args: --severity-threshold=high --file=docker/pulumi/Dockerfile + - name: Upload result to GitHub Code Scanning + uses: github/codeql-action/upload-sarif@v2 + with: + sarif_file: snyk.sarif base: name: Base image