diff --git a/.github/workflows/snyk.yml b/.github/workflows/snyk.yml index 8ef6a72..92650b0 100644 --- a/.github/workflows/snyk.yml +++ b/.github/workflows/snyk.yml @@ -1,11 +1,22 @@ name: Snyk Security Check -on: [push,pull_request] +on: + push: + pull_request: + jobs: security: runs-on: ubuntu-latest steps: - - uses: actions/checkout@main + - uses: actions/checkout@v3 + - name: Set up Node.js + uses: actions/setup-node@v3 + with: + node-version: '20' + - name: Install pnpm + run: npm install -g pnpm + - name: Install dependencies with pnpm + run: pnpm install - name: Run Snyk to check for vulnerabilities - uses: snyk/actions/node@master + uses: snyk/actions/node@v1.8.0 env: SNYK_TOKEN: ${{ secrets.SNYK_TOKEN }}