Hello! You are here because you are concerned about the security of your code, right? Cool, you are in the right place. Insider-action is the key that permits you protect your repository with Insider, free, easy to integrate and frictionless. It is the most easy way to protect your code directly on your repository.
We currently support the following technologies: Java (Maven and Android), Kotlin (Android), Swift (iOS), .NET Full Framework, C#, and Javascript (Node.js).
name: insider
on:
pull_request:
push:
jobs:
insider:
runs-on: ubuntu-latest
steps:
- name: Checkout
uses: actions/checkout@v2
with:
fetch-depth: 0
- name: Run Insider
uses: insidersec/insider-action@v0
with:
technology: javascript
# Relative path under $GITHUB_WORKSPACE to use as a target
# In this example, will use $GITHUB_WORKSPACE/src as a target
target: src
Following inputs can be used as steps.with
keys
Name | Type | Default | Description |
---|---|---|---|
version |
String | latest |
Insider version |
technology |
String | Specify which technology ruleset to load | |
target |
String | . |
Relative path under $GITHUB_WORKSPACE to use as a target |
security |
String | Set the Security level, values between 0 and 100 | |
noHtml |
Bool | Skips the report generation in the HTML format | |
noJson |
Bool | Skips the report generation in the JSON format | |
noBanner |
Bool | Skips the banner printing |