saragorule13/Semvi Push Scanner
Scans repositories on push for memory exposures, risky code patterns, and dependency CVEs.
View on GitHubTrust Signals
- Scorecard Score
- not yet scored
- Maintenance Recency
- Stale
- License
- None
Inputs
| name | description | required | default |
|---|---|---|---|
| config | Path to the Semvi config file | no | .semvi.yml |
| github-token | GitHub token used for issue notifications | no | "" |
| webhook-url | Optional webhook URL for external notifications | no | "" |
| severity-threshold | Minimum severity to fail the action | no | high |
Outputs
| name | description |
|---|---|
| report-path | Generated markdown report path |
| summary-json | Generated JSON summary path |