From 44b35f70664b2bfdadfa61f939bd2478eed37aca Mon Sep 17 00:00:00 2001 From: Luke Tainton Date: Sat, 31 May 2025 11:30:44 +0100 Subject: [PATCH] fix(ci): Snyk environment fix --- .gitea/workflows/ci.yml | 11 +++++++++-- 1 file changed, 9 insertions(+), 2 deletions(-) diff --git a/.gitea/workflows/ci.yml b/.gitea/workflows/ci.yml index 70e8133..76e5b25 100644 --- a/.gitea/workflows/ci.yml +++ b/.gitea/workflows/ci.yml @@ -64,9 +64,11 @@ jobs: # SONAR_HOST_URL: ${{ secrets.SONARQUBE_HOST_URL }} # SONAR_TOKEN: ${{ secrets.SONARQUBE_TOKEN }} - - name: Create requirements.txt for Snyk + - name: Set up environment for Snyk run: | uv pip freeze > requirements.txt + mv pyproject.toml pyproject.toml.bak + mv uv.lock uv.lock.bak - name: Snyk SAST Scan uses: snyk/actions/python@master @@ -84,6 +86,12 @@ jobs: with: command: test args: --all-projects --exclude=.archive + + - name: Reverse set up environment for Snyk + run: | + rm -f requirements.txt + mv pyproject.toml.bak pyproject.toml + mv uv.lock.bak uv.lock # - name: Trivy Setup # uses: aquasecurity/setup-trivy@v0.2.0 @@ -113,4 +121,3 @@ jobs: # ignore-unfixed: true # vuln-type: 'os,library' # severity: "CRITICAL,HIGH,MEDIUM" -