ENGINEERING

Weekly dependency blast-radius trend report from Snowflake

On a weekly schedule, aggregates every dependency-bump risk score logged that week from Snowflake, computes trend deltas by repo and severity.

CategoryEngineering
Enginesim
Difficultyintermediate
Triggerschedule
Steps4
Setup~15 min

How it runs

The automated pipeline, trigger to output.

  • TriggerWeekly schedule fires
  • ActionQuery trailing two weeks of risk scoresSnowflakeSnowflake
  • LogicRoll up by repo/severity and compute deltas
  • OutputPost trend digest to leadership SlackSlack

What it does

Turns per-PR risk scores into a weekly trend. It reads the score history your gate has been logging into Snowflake, rolls it up by repository and severity band, compares against the prior week, and delivers a readable digest with the biggest movers.

When to use it

Use it when leadership wants to know if supply-chain risk is trending up across the org, not just whether a single PR was safe. Good for weekly eng reviews and security reporting.

How it works

  1. 1A weekly schedule triggers the run.
  2. 2The flow queries Snowflake for all bump risk scores logged in the trailing seven days plus the prior week for comparison.
  3. 3An aggregation step groups by repo and severity band and computes week-over-week deltas.
  4. 4A logic step flags repos whose blast-radius score rose past a set jump.
  5. 5It formats a digest highlighting top risers, new critical exposures, and resolved ones.
  6. 6It posts the digest to the leadership Slack channel.

Set it up

What you configure once, before turning it on.

  1. 1
    Connect SnowflakeWarehouses, queries, shares.
  2. 2
    Connect SlackChannels, DMs, threads, mentions.
  3. 3
    Set each agent's modelWe leave models unset so you pick the tier — fast + cheap, or top-quality.
  4. 4
    Tune it to your dataEdit the prompts, filters, and field mappings so it matches how your team works.
  5. 5
    Test, then turn it onRun once against a sample, confirm the output, then enable the trigger.

Run this workflow in your colony.

14-day trial. No DevOps. No Sales call. Provisioned in under a minute.