mizcausevic-dev/Evidence Bundle Fleet Summary

Walk evidence-bundle manifests, surface governance gaps, post summary on PR, fail on high-severity findings.

View on GitHub

Trust Signals

Scorecard Score
not yet scored
Maintenance Recency
Stale
License
None
namedescriptionrequireddefault
bundles-dirDirectory containing evidence-bundle manifest.json files.yes
comment-on-prPost the Markdown summary as a PR comment. 'auto' (default) posts only on pull_request events; 'true' / 'false' force the behavior.noauto
fail-on-highFail the run when any high-severity finding is present (default 'true').notrue
oversized-mbBundles larger than this many megabytes trigger the oversized-bundle finding (default 100).no
github-tokenToken used to post the PR comment (defaults to GITHUB_TOKEN).no${{ github.token }}
namedescription
total-bundlesNumber of bundles analyzed.
high-findingsCount of high-severity findings.
signed-bundlesNumber of bundles with a signature block.
expired-bundlesNumber of bundles past their expires_at.