synopsys-sig-community/Black Duck Scan

Black Duck Scanning NEW VERSION for GitHub CI/CD Workflows

View on GitHub

Trust Signals

Scorecard Score
not yet scored
Maintenance Recency
Stale
License
None
Runtime
Deprecated runtime
namedescriptionrequireddefault
debugDebuggingno0
urlBlack Duck URLyes
tokenBlack Duck API Tokenyes
trustcertTrust Black Duck server certificatenofalse
projectProject name in the Black Duck serverno
versionProject version name in the Black Duck serverno
modeScanning mode, intelligent or rapidnorapid
outputDirectory in which to save the rapid scan outputnoblackduck-output
fix_prGenerate a Fix PR for each insecure componentnofalse
comment_on_prComment on a pull requestnofalse
sarifOutput file for SARIFnoblackduck-sarif.json
incremental_resultsIncremental analysisnofalse
upgrade_majorRecommend upgrade guidance to major, not just minor, versionsnotrue
nocheckSkip check of GH commit/PR for changed package manager config filesnofalse
detect_optsPassthrough options to Detect, comma delimited, exclude leading hyphensno
tool_versionVersion of external tool to useyes
github_tokenGitHub Tokenyes

no outputs