Commit Graph
6 Commits
Author SHA1 Message Date
SquidSec Bot 4903b50515 sample(swift): intentional vulnerabilities for SquidGate demo
Demo only — hardcoded secret + injection / dangerous API patterns.
See examples/README.md
2026-07-28 16:09:02 -04:00
SquidSec Bot ee7d42ee22 docs: add language sample gallery (20 languages) 2026-07-28 16:07:24 -04:00
SquidSec Bot a0082ac8f1 release: rebrand as SquidGate and prepare for open source
- Product name SquidGate (check run, action, package, docs)
- Config path .github/squidgate.yml
- MIT © SquidSec; production README and docs
- CONTRIBUTING, SECURITY, CHANGELOG
- CI verifies dist/ is current
2026-07-28 16:06:15 -04:00
SquidSec Bot 9776fbcfbe chore: activate security-scan with xAI Grok (grok-build-0.1) using provided key via secret 2026-07-28 15:57:48 -04:00
SquidSec Bot e956f5bc43 ci: add test workflow (users can switch to self-hosted runners) 2026-07-28 15:54:33 -04:00
SquidSec Bot 26635182de feat: initial security-scan GitHub Action with full unit tests
- Refactored into testable modules (config, prompts, llm, checks)
- Comprehensive unit tests for config loading/merging/overrides,
  severity blocking, prompt construction (OWASP/CWE enforcement),
  LLM JSON extraction (noisy output handling),
  check run annotations, PR comments, filtering
- All claims from spec validated (21 tests)
- Dist bundle included for action consumption
- Private repo under SquidSec for self-hosted runner support
2026-07-28 15:54:21 -04:00