pollychrome/Canary Dependency Scan

Parse lockfiles (npm, PyPI, Go, Maven, RubyGems, NuGet, Cargo, Composer) and submit dependency inventory to Canary Worker

View on GitHub

Trust Signals

Scorecard Score
not yet scored
Maintenance Recency
Stale
License
None
namedescriptionrequireddefault
worker_urlCanary Worker URL (e.g., https://canary.your-domain.workers.dev)yes
auth_tokenAuthentication token for Canary Worker APIyes
project_idProject identifier for grouping scansyes
include_devInclude development dependencies in scannotrue
working_directoryDirectory to scan for lockfiles (defaults to repository root)no.
fail_on_errorFail the job if submission to Worker failsnotrue
namedescription
packages_countNumber of packages discovered
statusSubmission status (success/failed/partial)
lockfiles_foundList of lockfiles discovered