feat(mcp+cli): project-root auto-discovery + ListRoots integration (#… #225
security.yml
on: push
OSV-Scanner (SCA)
6s
Trivy (filesystem + container scan)
18s
Semgrep (SAST)
24s
Gitleaks (secret scan)
13s
jscpd (duplication < 3% on touched code)
19s
SBOM (SPDX + CycloneDX)
17s
Artifacts
Produced during runtime
| Name | Size | Digest | |
|---|---|---|---|
|
sbom
|
13.1 KB |
sha256:fda6832f0c211ccd99fa7296f360101f594d4d5010f02fff588136d1de937cb3
|
|