realnits/Ansible Security Scan

Scan Ansible playbooks for security issues

View on GitHub

Trust Signals

Scorecard Score
not yet scored
Maintenance Recency
Maintainedlast commit Nov 13, 2025
License
MIT

Pinned Snippet

workflow.ymlSHA-pinned
uses: realnits/ansiblesec@ca11b95c7e8c3ee7362e3080c12dea2c9725d2d5 # v0.1.0

tags can be moved; commit SHAs can't. why a SHA?

namedescriptionrequireddefault
pathPath to scan (playbook or directory)no.
rulesPath to custom rules fileno
outputOutput file pathnoansiblesec-report.json
formatOutput format (text, json, sarif)nosarif
fail-on-findingsFail the action if findings are detectednotrue
versionansiblesec version to usenolatest
namedescription
findings-countTotal number of findings
critical-countNumber of critical findings