bhargav1815/PRISM Security Scanner

Multi-engine security scanner — AST, Secrets, SCA, Taint. Privacy-first. No code sent to third-party servers.

View on GitHub

Trust Signals

Scorecard Score
not yet scored
Maintenance Recency
Stale
License
None
namedescriptionrequireddefault
targetPath to the directory to scan (relative to repo root)no.
fail-on-severityFail the workflow if findings at or above this severity are found. Options: LOW, MEDIUM, HIGH, CRITICALnoHIGH
report-formatOutput report format. Options: docx, html, bothnoboth
azure-openai-keyAzure OpenAI API key for Premium AI features (false positive filtering, fix suggestions, risk scoring)no""
azure-openai-endpointAzure OpenAI endpoint URLno""
azure-openai-deploymentAzure OpenAI deployment name (model)nogpt-4o
custom-rulesPath to a custom YAML rules fileno""
enable-container-scanEnable container/IaC scanning via Trivy (requires Trivy to be available on the runner)nofalse
dry-run-aiPrint the AI prompt to console without sending it (for auditing what is sent to AI)nofalse
github-tokenGitHub token used to post a findings summary comment on pull requests. Pass secrets.GITHUB_TOKEN.no""
namedescription
findings-countTotal number of findings
critical-countNumber of CRITICAL severity findings
high-countNumber of HIGH severity findings
report-pathPath to the generated report file(s)