Skip to content

Remove snyk-container-scan from CI workflow#86

Merged
JonJagger merged 1 commit intomainfrom
remove-snyk-container-scan
Feb 13, 2026
Merged

Remove snyk-container-scan from CI workflow#86
JonJagger merged 1 commit intomainfrom
remove-snyk-container-scan

Conversation

@JonJagger
Copy link
Member

@JonJagger JonJagger commented Feb 13, 2026

Currently, the snyk-container-scan produces no terminal output, does not create the requested sarif file, and exits with a status code of zero. How rubbish is that! So I am taking the opportunity to move to a new snyk process design inspired by Tore's work. The snyk-scans will now happen only in a dedicated process with its own cron workflow. And I will work towards implementing a policy of making a failed snyk attestation only become non-compliant if it is not fixed in 7 days.

@JonJagger JonJagger merged commit 59cd03b into main Feb 13, 2026
7 checks passed
@JonJagger JonJagger deleted the remove-snyk-container-scan branch February 13, 2026 13:03
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant