wbraynen/Utensil Scan

Scan a repository for dependencies, vulnerabilities, security, compliance, and AI governance.

View on GitHub

Trust Signals

Scorecard Score
not yet scored
Maintenance Recency
Stale
License
None
namedescriptionrequireddefault
license-tokenUtensil license token (UTENSIL_LICENSE_TOKEN)yes
pathRepository path to scanno.
fail-onFail if findings at or above severity (critical/high/medium/low)no
github-commentPost findings as PR commentnotrue
github-tokenGitHub token for PR commentsno${{ github.token }}
fullRun all network-dependent checks (stale deps, license audit)nofalse
uploadUpload results to Utensil API for dashboardnofalse
upload-urlIngest endpoint URLnohttps://api.utensil.tools/api/ingest
cli-versionCLI version to use (tag name or "latest")nolatest
argsAdditional CLI arguments (pass-through)no
namedescription
exit-codeCLI exit code (0 = pass, 2 = threshold exceeded)
report-jsonPath to the JSON report file
vuln-countTotal vulnerability count
finding-countTotal security finding count