diff --git a/.github/workflows/cd.yml b/.github/workflows/cd.yml index 01cdef6e..a56a87df 100644 --- a/.github/workflows/cd.yml +++ b/.github/workflows/cd.yml @@ -67,39 +67,6 @@ jobs: - name: Run e2e tests run: make e2e-test - - name: Snyk Setup - uses: snyk/actions/setup@master - - - name: Run Snyk to check for vulnerabilities in main Docker image - run: snyk container test snowplow/snowbridge:${{ github.ref_name }} --severity-threshold=high - env: - SNYK_TOKEN: ${{ secrets.SNYK_TOKEN }} - - - name: Run Snyk to check for vulnerabilities in aws-only Docker image - run: snyk container test snowplow/snowbridge:${{ github.ref_name }}-aws-only --severity-threshold=high - env: - SNYK_TOKEN: ${{ secrets.SNYK_TOKEN }} - - - name: Run Snyk to monitor for vulnerabilities in main Docker image - uses: snyk/actions/docker@master - if: ${{ contains(github.ref, 'rc') }} - with: - image: "snowplow/snowbridge:${{ github.ref_name }}" - args: "--app-vulns --org=data-processing-new --project-name=snowbridge-main" - command: monitor - env: - SNYK_TOKEN: ${{ secrets.SNYK_TOKEN }} - - - name: Run Snyk to monitor for vulnerabilities in aws-only Docker image - uses: snyk/actions/docker@master - if: ${{ contains(github.ref, 'rc') }} - with: - image: "snowplow/snowbridge:${{ github.ref_name }}-aws-only" - args: "--app-vulns --org=data-processing-new --project-name=snowbridge-aws-only" - command: monitor - env: - SNYK_TOKEN: ${{ secrets.SNYK_TOKEN }} - - name: Create Release uses: actions/create-release@v1 env: