diff --git a/.github/workflows/snyk-analysis.yml b/.github/workflows/snyk-analysis.yml index 88587b407b4..dda721bde11 100644 --- a/.github/workflows/snyk-analysis.yml +++ b/.github/workflows/snyk-analysis.yml @@ -1,8 +1,6 @@ name: Snyk -on: - schedule: - - cron: 0 0 * * * +on: workflow_dispatch: defaults: @@ -16,20 +14,20 @@ jobs: if: github.repository == 'keycloak/keycloak' steps: - uses: actions/checkout@v3 - + - name: Build Keycloak uses: ./.github/actions/build-keycloak - uses: snyk/actions/setup@master - name: Check for vulnerabilities in Quarkus - run: snyk test --policy-path=${GITHUB_WORKSPACE}/.github/snyk/.snyk --all-projects --prune-repeated-subdependencies --exclude=tests --sarif-file-output=quarkus-report.sarif quarkus + run: snyk test --policy-path=${GITHUB_WORKSPACE}/.github/snyk/.snyk --all-projects --prune-repeated-subdependencies --exclude=tests --sarif-file-output=quarkus-report.sarif quarkus/deployment continue-on-error: true env: SNYK_TOKEN: ${{ secrets.SNYK_TOKEN }} - name: Upload Quarkus scanner results to GitHub - uses: github/codeql-action/upload-sarif@v2.2.12 + uses: github/codeql-action/upload-sarif@v2.3.3 with: sarif_file: quarkus-report.sarif category: snyk-quarkus-report @@ -43,7 +41,7 @@ jobs: SNYK_TOKEN: ${{ secrets.SNYK_TOKEN }} - name: Upload Operator scanner results to GitHub - uses: github/codeql-action/upload-sarif@v2.2.12 + uses: github/codeql-action/upload-sarif@v2.3.3 with: sarif_file: operator-report.sarif category: snyk-operator-report