CtrlK
BlogDocsLog inGet started
Tessl Logo

nitinjain999/platform-skills

Production-grade platform engineering handbook — Kubernetes, Terraform, Flux CD, GitHub Actions, AWS, and more.

67

Quality

84%

Does it follow best practices?

Impact

No eval scenarios have been run

SecuritybySnyk

Passed

No known issues

Overview
Quality
Evals
Security
Files

CHANGELOG.mdexamples/github-actions/composite-actions/security-scan/

Changelog

All notable changes to the security-scan composite action.

[Unreleased]

[1.0.0] - 2026-05-23

Added

  • Initial release
  • Trivy image, fs, and repo scan modes
  • Severity enum validation with ::error:: fail-fast
  • registry_password masked immediately with ::add-mask::
  • ::error:: annotations for CRITICAL findings, ::warning:: for HIGH findings
  • SARIF output mode (output_format: sarif) for GitHub Code Scanning upload
  • fail_on_findings gate with separate evaluate step
  • Full scan output in job summary collapsible block
  • Outputs: vulnerability_count, scan_result, sarif_path

examples

BEFORE_AFTER.md

CHANGELOG.md

CODE_OF_CONDUCT.md

COMMANDS.md

CONTRIBUTING.md

EDITOR_INTEGRATIONS.md

GETTING_STARTED.md

HOW_IT_WORKS.md

install.sh

INSTALLATION.md

LAUNCH.md

PROMPTS.md

QUICKSTART.md

README.md

renovate.json

SECURITY.md

SKILL.md

tessl.json

tile.json