sandhipveera/aibom — AI-BOM scan

Scan the repository for AI agents, models, tools, and MCP servers; produce an AI-BOM with OWASP-LLM-mapped findings; optionally upload to the ScopeSafe platform and gate the build on new critical/high findings.

View on GitHub

Trust Signals

Scorecard Score
not yet scored
Maintenance Recency
Stale
License
None
namedescriptionrequireddefault
api-tokenScopeSafe workspace API token (aibom_...). If unset, the scan runs locally without upload.no""
api-urlScopeSafe platform API base URL.no""
projectPlatform project name.no${{ github.repository }}
pathDirectory to scan.no.
commentPost a sticky AI-BOM summary comment on the pull request. Requires the workflow to grant `permissions: pull-requests: write`. No-op off a PR.notrue

no outputs