spark1security/Spark 1 n0s1

Scan Project Management platforms (e.g. Jira, Linear) for secret leaks with n0s1

View on GitHub

Trust Signals

Scorecard Score
not yet scored
Maintenance Recency
Stale
License
None
namedescriptionrequireddefault
scan-targetScan target platform to use for scanning secret leaksyesjira_scan
user-emailUser email for target platform loginno""
password-keyUser password or API keyno""
platform-urlYour Jira instance URLno""
post-commentAdd a comment alerting about the leak to the ticket with the sensitive datano""
skip-commentDo not search for sensitive data at the tickets commentno""
regex-filePath to a custom regex configuration fileno""
config-filePath to a custom scanning configuration fileno""
report-filePath to output fileno""
secret-managerSecret manager tool name to be suggested when leaks are foundno""
contact-helpContact information for assistance when leaks are detectedno""
labelUnique identifier for n0s1 bot commentsno""
show-matched-secret-on-logsWrite actual leaked secret to reports and logsno""
ai-analysisSend scan results to an AI agent to validate leaked credentialsno""
privatePrivate mode disables all interaction with the n0s1 backend serviceno""
debugDebug mode. Warning it may further expose sensitive datano""
report-formatOutput report format. Supported formats: n0s1, SARIF, gitlabno""
timeoutHTTP request timeout in secondsno""
limitThe limit of the number of pages to return per HTTP requestno""
insecureInsecure mode. Ignore SSL certificate verificationno""
mapEnable mapping mode and define how many levels for the mappingno""
map-filePath to map file (e.g. n0s1_map.json)no""
scopeDefine a chunk of the map file to be scanned. Ex: 3/4no""
n0s1-api-keyn0s1 API key for Professional mode. Visit n0s1.spark1.us to issue a new token.no""
report-uuidUUID to assign to the scan report. When set, overrides the auto-generated UUID written to the report JSON. Also used with scan-target: analyze to identify a previously uploaded report.no""
waitMinutes to poll the backend before giving up. Can be used alongside --ai-analysis for all scan targets, or with scan-target: analyze. Exit 0 on complete, 1 on error/timeout, 2 if still pending.no""
allow-secret-uploadAllow encrypted secrets to be uploaded to the n0s1 backend during AI analysis (default: false)no""
ownerGitHub owner (e.g. user or organization)no""
repoGitHub repository to be scannedno""
branchGitHub/GitLab repository branch to be scannedno""

no outputs