Skip to content

chore: add Snyk security scan workflow - #31

Merged
cnoble-may merged 2 commits into
masterfrom
chore/add-snyk-security-workflow
Sep 2, 2026
Merged

chore: add Snyk security scan workflow#31
cnoble-may merged 2 commits into
masterfrom
chore/add-snyk-security-workflow

Conversation

@linz-security-automation

Copy link
Copy Markdown
Contributor

This pull request is opened automatically by linz/security-gha-scan to add a Snyk Security Scan workflow to this repository, so dependency vulnerabilities are scanned on every push and pull request to master.

Before merging, please make sure a SNYK_TOKEN secret is configured in both of these locations (they are separate secret stores):

  • Settings → Secrets and variables → Actions → Repository secrets
  • Settings → Secrets and variables → Dependabot → Repository secrets

If needed, configure the ci role input (aws-github-role-arn) so Gradle can pull dependencies from AWS CodeArtifact — please confirm the ci role repository/organization variable is set to the correct AWS role ARN for this repo, or update its name/value if needed.

Check out https://github.com/linz/github-action-shared-library/blob/master/docs/snyk.md for other optional inputs for the Snyk workflow.

Please review and merge it as soon as possible, contact #team-step-security or #team-step-enablement if you have any questions.

@linz-security-automation
linz-security-automation Bot requested a review from a team as a code owner September 2, 2026 05:36
@cnoble-may
cnoble-may merged commit 728fb72 into master Sep 2, 2026
5 checks passed
@cnoble-may
cnoble-may deleted the chore/add-snyk-security-workflow branch September 2, 2026 06:14
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants