stackradar/StackRadar

Upload dependency evidence to StackRadar from GitHub Actions

View on GitHub

Trust Signals

Scorecard Score
not yet scored
Maintenance Recency
Stale
License
None
namedescriptionrequireddefault
cli-versionStackRadar CLI version to download. Use latest or a tag such as v0.1.0.nolatest
modeOperation to run. Supported values are bundle-and-upload, bundle, and upload.nobundle-and-upload
pathRepository path to scan when bundling.no.
api-urlStackRadar app/API base URL.nohttps://stackradar.com
oidc-audienceGitHub Actions OIDC audience expected by StackRadar.nostackradar.com
tokenUpload token override. Prefer GitHub OIDC for GitHub Actions.no
bundle-pathBundle output path for bundle modes, or existing bundle path for upload mode.no
dry-runCall stackradar upload --dry-run instead of uploading.nofalse
fail-on-errorFail the workflow on bundle or upload errors.notrue
verifyCLI verification mode. Supported values are strict, checksum, and false.nostrict
excludeNewline-separated glob patterns to exclude from CLI discovery.no
namedescription
cli-versionResolved StackRadar CLI version.
cli-pathInstalled StackRadar CLI path.
bundle-pathCreated or uploaded bundle path.
bundle-sha256SHA-256 digest of the bundle.
upload-idStackRadar upload/run ID, when uploaded.
artifact-idStackRadar upload artifact ID, when uploaded.
statusFinal action status.