accuknox/AccuKnox SAST

Run SonarQube-based SAST scan and upload results to AccuKnox Panel.

View on GitHub

Trust Signals

Scorecard Score
not yet scored
Maintenance Recency
Activelast commit Apr 30, 2026
License
Apache 2.0

Pinned Snippet

workflow.ymlSHA-pinned
uses: accuknox/sast-scan-action@05b14e2609d648c3028cfd5beaa047a37b13c0d3 # v1.0.6

tags can be moved; commit SHAs can't. why a SHA?

namedescriptionrequireddefault
skip_sonar_scanWhether to skip the SonarQube scan.nofalse
sonar_project_keySonarQube project keyyes
sonar_org_idSonarQube organisation ID (cloud only)no
sonar_tokenSonarQube authentication tokenyes
sonar_host_urlSonarQube host URLyes
soft_failDo not fail the pipeline if scan finds issuesnofalse
accuknox_endpointAccuKnox CSPM panel endpoint URLyes
accuknox_tokenAccuKnox authentication tokenyes
accuknox_labelLabel for associating scan results in AccuKnoxyes

no outputs