diff --git a/.github/workflows/snyk.yml b/.github/workflows/snyk.yml index a7a1fd45..7858dd1a 100644 --- a/.github/workflows/snyk.yml +++ b/.github/workflows/snyk.yml @@ -9,15 +9,34 @@ env: SNYK_ORG: rstudio-connect jobs: - snyk-monitor: + python: runs-on: ubuntu-latest steps: - uses: actions/checkout@v3 with: fetch-depth: 0 + - name: Install pipenv + run: | + python -m pip install --upgrade pipenv + + - name: Install Pipfile dependencies (as required by Snyk) + run: pipenv install + - name: Run Snyk uses: snyk/actions/python@master with: command: monitor - args: --file=Pipfile --org=${{ env.SNYK_ORG }} + args: --file=Pipfile --project-name=python --org=${{ env.SNYK_ORG }} + ui: + runs-on: ubuntu-latest + steps: + - uses: actions/checkout@v3 + with: + fetch-depth: 0 + + - name: Run Snyk + uses: snyk/actions/node@master + with: + command: monitor + args: --file=yarn.lock --project-name=ui --org=${{ env.SNYK_ORG }}