From 888d8116b2036d53e45874cce08bbb08e964839a Mon Sep 17 00:00:00 2001 From: Stefan Prodan Date: Thu, 7 Mar 2024 23:46:32 +0200 Subject: [PATCH] ci: Include all go modules in snyk testing Signed-off-by: Stefan Prodan (cherry picked from commit bb4f27a070a472655a97b70efe4cf2c53a1729fc) --- .github/workflows/scan.yaml | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/.github/workflows/scan.yaml b/.github/workflows/scan.yaml index 28b1b840e4..d2aeb67c39 100644 --- a/.github/workflows/scan.yaml +++ b/.github/workflows/scan.yaml @@ -49,10 +49,11 @@ jobs: - name: Run Snyk to check for vulnerabilities continue-on-error: true run: | - snyk test --sarif-file-output=snyk.sarif + snyk test --all-projects --sarif-file-output=snyk.sarif env: SNYK_TOKEN: ${{ secrets.SNYK_TOKEN }} - name: Upload result to GitHub Code Scanning + continue-on-error: true uses: github/codeql-action/upload-sarif@cdcdbb579706841c47f7063dda365e292e5cad7a # v2.13.4 with: sarif_file: snyk.sarif