scan_directory
Scan local project directories for security vulnerabilities in AI-generated code. Returns A-F security scores, detailed findings, and audit metadata. Compare with baseline scans to track new and resolved issues across 300+ security rules.
Instructions
Scan an entire project directory for security vulnerabilities. Reads files directly from the filesystem — no need to pass file contents. Returns a security score (A-F) and detailed findings. Includes scan metadata (ID, timestamp, duration, file hashes) for audit trails. Use baseline to compare with a previous scan.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| path | Yes | Directory path to scan (e.g. './src', '.') | |
| recursive | No | Scan subdirectories | |
| exclude | No | Additional directories to exclude | |
| format | No | Output format: markdown (human) or json (machine-readable for agents) | markdown |
| baseline | No | Path to a previous scan JSON output file for baseline comparison (new/fixed/unchanged findings) |