reference info: https://confluence.puppetlabs.com/pages/viewpage.action?spaceKey=SRE&title=%5BDraft%5D+Code+Review+Standard+Operating+Procedure
—
create a new workflow using https://github.com/snyk/actions
`snyk monitor` should be triggered on commits on main branch while `snyk test` can be triggered with PRs checks