abhiyoheswaran1/ProjScan

Run projscan health check and upload results to GitHub Code Scanning as SARIF.

View on GitHub

Trust Signals

Scorecard Score
not yet scored
Maintenance Recency
Activelast commit Jul 6, 2026
License
MIT

Pinned Snippet

workflow.ymlSHA-pinned
uses: abhiyoheswaran1/projscan@e345f55a2b5803162a0dda3a01016f3932862dc5 # v5.0.0

tags can be moved; commit SHAs can't. why a SHA?

namedescriptionrequireddefault
min-scoreMinimum passing score (0-100). Fails the job if below.no70
changed-onlyOnly gate on issues in files changed vs base-ref.nofalse
base-refGit base ref for --changed-only (default: origin/<default-branch>).no""
configPath to a .projscanrc config file.no""
sarif-fileOutput path for the SARIF file.noprojscan.sarif
upload-sarifUpload the SARIF file to GitHub Code Scanning.notrue
working-directoryDirectory to run projscan in.no.
versionVersion of projscan to install (e.g. "0.3.0" or "latest").nolatest
namedescription
scoreHealth score reported by projscan ci.
gradeLetter grade reported by projscan ci.