diff --git a/.github/workflows/sync_snyk-github-issues.yml b/.github/workflows/sync_snyk-github-issues.yml index cb5eaa1737..079c473e23 100644 --- a/.github/workflows/sync_snyk-github-issues.yml +++ b/.github/workflows/sync_snyk-github-issues.yml @@ -29,7 +29,7 @@ jobs: cache-prefix: ${{ runner.os }}-v18.x - name: Create Snyk report - uses: snyk/actions/node@8349f9043a8b7f0f3ee8885bf28f0b388d2446e8 # master + uses: snyk/actions/node@d406fd286b663eb8c6f8adcced4f7bcd199c0a3f # master continue-on-error: true # Snyk CLI exits with error when vulnerabilities are found with: args: > diff --git a/.github/workflows/sync_snyk-monitor.yml b/.github/workflows/sync_snyk-monitor.yml index 4678c36907..60cb633e17 100644 --- a/.github/workflows/sync_snyk-monitor.yml +++ b/.github/workflows/sync_snyk-monitor.yml @@ -31,7 +31,7 @@ jobs: - uses: actions/checkout@a5ac7e51b41094c92402da3b24376905380afc29 # v4.1.6 - name: Monitor and Synchronize Snyk Policies - uses: snyk/actions/node@8349f9043a8b7f0f3ee8885bf28f0b388d2446e8 # master + uses: snyk/actions/node@d406fd286b663eb8c6f8adcced4f7bcd199c0a3f # master with: command: monitor args: > @@ -46,7 +46,7 @@ jobs: # Above we run the `monitor` command, this runs the `test` command which is # the one that generates the SARIF report that we can upload to GitHub. - name: Create Snyk report - uses: snyk/actions/node@8349f9043a8b7f0f3ee8885bf28f0b388d2446e8 # master + uses: snyk/actions/node@d406fd286b663eb8c6f8adcced4f7bcd199c0a3f # master continue-on-error: true # To make sure that SARIF upload gets called with: args: >