1.0.3 • Published 4 years ago

snyk-prevent v1.0.3

Weekly downloads
-
License
Apache-2.0
Repository
github
Last release
4 years ago

Snyk logo


CircleCI

Snyk snyk-prevent

Prevent feature for CLI tests Essentially provides the ability to get the delta between 2 Snyk snapshots.\ Particularly useful when running CLI-based scans, like in your local environment, git hooks, etc.\

Compares snapshots to give details about:

  • New vulnerabilities not found in the baseline snapshot
  • New license issues not found in the baseline snapshot
  • Dependency delta between the 2 snaphots
    • Direct Dependencies added and removed
    • Indirect Dependencies added and removed
    • Flag path(s) carrying new vulnerabilities

Installation

Grab a binary of your choice from the release page

Usage

2 mode of operations

  • Inline

    • snyk test --json --print-deps | snyk-prevent

    • Possibly point to a specific snapshot by specifying org+project coordinates\ snyk test --json --print-deps | snyk-prevent --baselineOrg xxx --baselineProject xxx

  • Standalone

    • `snyk-prevent --baselineOrg xxx --baselineProject xxx --currentOrg xxx --currentProject xxx\

Note:\ BaselineProject value is expected to be a UUID, not simply a name\ Check your Snyk Web UI or API to retrieve those UUIDs.