rdx644/ZeroPatch CI

Statically scan GitHub Actions workflows and produce a review-only security report.

View on GitHub

Trust Signals

Scorecard Score
not yet scored
Maintenance Recency
Stale
License
None
namedescriptionrequireddefault
workflow-pathA workflow YAML file or directory to scan, relative to the repository workspace.no.github/workflows
report-pathJSON report path, relative to the repository workspace.no.zeropatch/zeropatch-report.json
fail-onMinimum severity that fails the step: never, critical, high, medium, or low.nocritical
namedescription
report-pathRelative path to the generated JSON report.
finding-countNumber of findings across all scanned workflows.
blocking-findingsNumber of findings at or above the selected fail-on severity.