code_security_scan
Scan a target repository for vulnerabilities and exposed secrets using operator-installed Semgrep and Gitleaks from a disposable copy, with fallbacks when tools are not configured.
Instructions
Run operator-installed Semgrep (SAST) and Gitleaks (secret detection) against the target repository from a disposable copy; each is independently optional and reports an honest fallback when not configured.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| timeout | No | ||
| repo_path | Yes |