momenbasel/VulnHawk Security Scan

AI-powered code security scanner that finds vulnerabilities Semgrep and CodeQL miss

View on GitHub

Trust Signals

Scorecard Score
not yet scored
Maintenance Recency
Stale
License
None
namedescriptionrequireddefault
targetPath to scan (file or directory)no.
backendLLM backend (claude, claude-code, openai, codex, ollama)noclaude
modelSpecific model nameno
modeScan mode (full, auth, injection, secrets, config, crypto)nofull
severityMinimum severity to report (critical, high, medium, low, info)nomedium
api-keyAPI key for the LLM backend. Not required for claude-code backend.no""
claude-code-oauth-tokenOAuth token for Claude Code CLI backend (free for Claude Code subscribers)no""
sarif-inputPath to SARIF file from other SAST tools (Semgrep, CodeQL) to enrich VulnHawk analysisno""
fail-on-findingsFail the workflow if critical/high findings are detectednotrue
sarif-filePath to write SARIF output for GitHub Code Scanningnovulnhawk-results.sarif
namedescription
findings-countTotal number of findings
critical-countNumber of critical findings
sarif-filePath to SARIF results file