shivaylamba/trawly
Scan dependency lockfiles and SBOMs with trawly.
View on GitHubTrust Signals
- Scorecard Score
- not yet scored
- Maintenance Recency
- Stale
- License
- None
Inputs
| name | description | required | default |
|---|---|---|---|
| path | Project directory to scan. | no | . |
| fail-on | Severity threshold for failing the job. | no | high |
| config | Optional trawly.toml path. | no | "" |
| baseline | Optional trawly baseline file. | no | "" |
| sarif-output | SARIF output path. | no | trawly.sarif |
| markdown-output | Markdown output path. | no | trawly.md |
| upload-sarif | Upload SARIF to GitHub code scanning. | no | true |
Outputs
no outputs