-
Notifications
You must be signed in to change notification settings - Fork 9
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Install snyk cli for local vulnerabilty testing #429
Comments
I can look at this. |
Hello @tony-nyagah, You're more than welcome to pick up this issue :) If you have any questions, don't hesitate to ask them. You can reach out to us here, or on our discord channel Thank you |
I want to look at this issue. |
Hi @OriloyeEmerald, Thanks for your interest in picking up this issue. Just a couple of hours ago @tony-nyagah also showed interest in this ticket. Maybe you can work together on this issue? If you have any questions, don't hesitate to ask them. You can reach out to us here, or on our discrod channel |
@basmasking When I try to run |
@tony-nyagah the package From the error message it seems you're using |
I tried with npm but was getting some errors. I think my internet was acting up. npm install works now. |
@tony-nyagah do you need any help with the issue? |
I'm sorry about my unavailability, I had issues with my computer. I have installed the snyk tool and configured it for local vulnerability testing. What is the next step please? |
@OriloyeEmerald seems to have resolved the issue so I'm going to leave this issue with him. |
@tony-nyagah, that's great then. Are you on discord so I can connect with you? |
@OriloyeEmerald the description in this issue has been a bit sparse. After the CLI is installed locally (added as a devDependency in the package.json), it should be possible to run the cli with a snyk account and use environment variables to set the tokens and account details into the cli configuration. Ideally, we have another script in the package.json to run the cli and get the vulnerabilites from the snyk api by typing |
I am on Discord. I go by osteerich on there. |
Snyk is enabled in the CI pipeline. To make it easier for ourselves to execute the scans locally, we should add the cli tool from snyk.
The text was updated successfully, but these errors were encountered: