Skip to content

promptfoo/code-scan-action

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

7 Commits
 
 
 
 
 
 
 
 

Repository files navigation

Promptfoo Code Scan GitHub Action

Scan pull requests for LLM security vulnerabilities using AI-powered analysis.

Usage

name: Promptfoo Code Scan

on:
  pull_request:
    types: [opened]

permissions:
  id-token: write
  contents: read
  pull-requests: write

jobs:
  scan:
    runs-on: ubuntu-latest
    steps:
      - uses: actions/checkout@v4
        with:
          fetch-depth: 0

      - uses: promptfoo/code-scan-action@v0
        with:
          minimum-severity: medium

Inputs

Input Description Default
minimum-severity Minimum severity to report: low, medium, high, critical high
server-url Code scan server URL https://api.promptfoo.dev

License

MIT

About

Github Action for Promptfoo Code Scanner - security scanning for LLM apps

Resources

Stars

Watchers

Forks

Packages

No packages published