boostsecurityio/Scanner Registry Test Action

Run scanner tests when changes are made to the scanner registry

View on GitHub

Trust Signals

Scorecard Score
not yet scored
Maintenance Recency
Activelast commit Feb 5, 2026
License
None

Pinned Snippet

workflow.ymlSHA-pinned
uses: boostsecurityio/scan-test-action@05297ee358226347a9f4989716ffeb7ba1dedc4f # no releases — HEAD as of 2026-07-11

tags can be moved; commit SHAs can't. why a SHA?

namedescriptionrequireddefault
providerCI/CD provider to use (github-actions, gitlab-ci, azure-devops, bitbucket)yes
provider-configJSON configuration for the selected provider. See README for schema per provider.yes
registry-pathPath to scanner registry repositoryyes.
registry-repoRegistry repository identifier (org/repo format). For fork PRs, use the fork repo.yes
registry-refGit ref of the registry (commit SHA). For fork PRs, use the fork SHA.yes
base-refBase git reference to compare against. For fork PRs, use the base SHA.yesorigin/main
fallback-scannersComma-separated scanner IDs to test when workflow files change but no scanner files changedno""
allowed-env-prefixesComma-separated list of allowed environment variable prefixes for testsno""
namedescription
resultsJSON-formatted test results