post_security_repo_risk_report_standard
SBOM inventory plus real OSV.dev dependency-vulnerability matches and dependency-freshness signals for a public Git repository. One-shot alternative to a per-seat secret-scanning subscription.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| ref | No | Optional branch/tag to analyze. Defaults to the repository's default branch. | |
| repo_url | Yes | Public https://github.com/... or https://gitlab.com/... repository URL. |