Pin Snyk action to latest commit hash

Closes #40380

Signed-off-by: Bruno Oliveira da Silva <bruno@abstractj.com>
This commit is contained in:
Bruno Oliveira da Silva 2025-06-10 10:36:12 -03:00
parent 2e09c31ac1
commit a8a455486d

View File

@ -26,7 +26,7 @@ jobs:
- name: Build Keycloak
uses: ./.github/actions/build-keycloak
- uses: snyk/actions/setup@master
- uses: snyk/actions/setup@cdb760004ba9ea4d525f2e043745dfe85bb9077e # master
- name: Check for vulnerabilities in Quarkus
run: snyk test --policy-path=${GITHUB_WORKSPACE}/.github/snyk/.snyk --all-projects --prune-repeated-subdependencies --exclude=tests --sarif-file-output=quarkus-report.sarif quarkus/deployment