actions-marketplace-validations/DevDox AI sonar

Run devdox-sonar code quality analysis on your Python project

View on GitHub

Trust Signals

Scorecard Score
not yet scored
Maintenance Recency
Activelast commit Mar 7, 2026
License
Apache 2.0

Pinned Snippet

workflow.ymlSHA-pinned
uses: actions-marketplace-validations/montymobile1_devdox-ai-sonar@5079a7e62c7c464f2ac4e5c4ea1cacabf1c410bc # no releases — HEAD as of 2026-07-10

tags can be moved; commit SHAs can't. why a SHA?

namedescriptionrequireddefault
commandCommand to run (e.g., 'fix_multiple')yesfix_multiple
sonar-tokenSonarCloud authentication token (SONAR_TOKEN)yes
sonar-orgSonarCloud organization key (SONAR_ORG)yes
sonar-projectSonarCloud project key (SONAR_PROJ)yes
project-pathLocal path to the project. Defaults to GITHUB_WORKSPACE if not set.yes/github/workspace
pull-requestPull request numberno
llm-providerLLM API key for LLM integrationyes
llm-api-keyLLM API key for LLM integrationyes
llm-default-modelDefault LLM model to useyes
max-fixesMax Issues to fixno10
applyApply fixes automaticallyno1

no outputs