From 58b671586911549794906b6af45fb2c3f730cab3 Mon Sep 17 00:00:00 2001 From: Aravind Kumar Date: Mon, 20 Jan 2025 12:28:23 +0530 Subject: [PATCH 1/8] sast-scan.yml From cfcfc04788722df7de87521ced2c5204bbd0a7dd Mon Sep 17 00:00:00 2001 From: Aravind Kumar Date: Mon, 20 Jan 2025 12:28:25 +0530 Subject: [PATCH 2/8] codeql-analysis.yml From cfe2f38f1411ed896df0530540a700e323034b8e Mon Sep 17 00:00:00 2001 From: Aravind Kumar Date: Wed, 16 Apr 2025 10:55:41 +0530 Subject: [PATCH 3/8] codeql-analysis.yml From 3bfbec813c80709bbad89d37a5b75f6b37297a36 Mon Sep 17 00:00:00 2001 From: Aravind Kumar Date: Wed, 16 Apr 2025 10:55:44 +0530 Subject: [PATCH 4/8] Updated codeowners From 501e205f683629013d162be3a7c3d145c13dfd47 Mon Sep 17 00:00:00 2001 From: Aravind Kumar Date: Mon, 5 May 2025 22:16:20 +0530 Subject: [PATCH 5/8] policy-scan.yml From 764674b6d7394a3be1040c4874051259ef66fa41 Mon Sep 17 00:00:00 2001 From: Aravind Kumar Date: Mon, 5 May 2025 22:16:28 +0530 Subject: [PATCH 6/8] issues-jira.yml From 7b9e565153811f3e8c178272d7860d1af588b89d Mon Sep 17 00:00:00 2001 From: Aravind Kumar Date: Mon, 5 May 2025 22:16:32 +0530 Subject: [PATCH 7/8] Updated codeowners From 7cd49ae9b0c61bf5b4c40c477226a189199bdd31 Mon Sep 17 00:00:00 2001 From: raj pandey Date: Fri, 6 Jun 2025 18:38:12 +0530 Subject: [PATCH 8/8] Workflow Update --- .github/workflows/sca-scan.yml | 16 ++++++++++------ 1 file changed, 10 insertions(+), 6 deletions(-) diff --git a/.github/workflows/sca-scan.yml b/.github/workflows/sca-scan.yml index 4fa4560..485f1a5 100644 --- a/.github/workflows/sca-scan.yml +++ b/.github/workflows/sca-scan.yml @@ -3,13 +3,17 @@ on: pull_request: types: [opened, synchronize, reopened] jobs: - security-sca: + security: runs-on: ubuntu-latest steps: - - uses: actions/checkout@master + - name: Checkout repository + uses: actions/checkout@master + - uses: snyk/actions/setup@master + - name: Setup .NET + uses: actions/setup-dotnet@v3.0.3 + - name: Restore dependencies + run: dotnet restore ./Contentstack.Utils.sln - name: Run Snyk to check for vulnerabilities - uses: snyk/actions/dotnet@master + run: cd Contentstack.Utils && snyk test --fail-on=all env: - SNYK_TOKEN: ${{ secrets.SNYK_TOKEN }} - with: - args: --fail-on=all + SNYK_TOKEN: ${{ secrets.SNYK_TOKEN }} \ No newline at end of file