analyze
Runs the open-source hefesto-ai engine (hefesto analyze --no-config, free tier) on the files you send and returns its findings: rule id, severity, file, line, message and the SARIF hefestoFingerprint/v1 fingerprint (format "sarif" adds the full SARIF 2.1.0 log). Covers Python, COBOL, the DevOps/IaC formats hefesto analyze routes, and TypeScript, JavaScript, Java, Go, Rust and C# through the multilang tree-sitter grammars (the first such request on a fresh server instance downloads the grammars and can take a few seconds longer). Limits: 20 files, 100 KB per file, 256 KB in total, 20 seconds. No .hefesto.yaml is read. Files are deleted after the run; nothing is stored.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| code | No | A single snippet, used when files is not given (written as e.g. snippet.py for language python). | |
| files | No | Files to analyze. path: relative POSIX path (letters, digits, '_', '.', '-'; no '..', no absolute paths); content: UTF-8 text. | |
| format | No | json (default): findings only; sarif: also the full SARIF 2.1.0 log. | |
| language | No | Language of code: python (default), cobol, yaml, dockerfile, terraform, shell, sql, javascript, typescript, java, go, rust, csharp. | |
| severity | No | Minimum severity to report (default LOW). |