xkobxx/DevSecOps Trust Gate

Run Bandit, Semgrep, pip-audit, Trivy and Gitleaks against any repo, aggregate findings into one gate and dashboard.

View on GitHub

Trust Signals

Scorecard Score
not yet scored
Maintenance Recency
Stale
License
None
namedescriptionrequireddefault
targetPath to scan, relative to the repo rootno.
fail-onMinimum severity that fails the gate: critical | high | medium | low | nonenohigh
license-keyPaid license key. Unlocks confidence scoring (empirical precision per finding, ranked "act on these first" triage). Free tier runs fine without one.no""
namedescription
findings-pathPath to the unified findings.json produced by this run