Scan workflows
Audit GitHub Actions, Bitbucket Pipelines, GitLab CI, Travis CI, Drone CI, CircleCI, Azure Pipelines, Jenkins, Buildkite, n8n, MCP configs, Activepieces, Dify, Flowise, Langflow, Zapier Zaps, Make, Pipedream, Node-RED, Airflow, and browser automation traces.
Emit CI evidence
Output Markdown, JSON, and SARIF reports. Upload SARIF to GitHub Code Scanning and keep suppression reasons visible.
Guide remediation
Use dry-run fix plans, patch previews, low-risk permission fixes, MCP filesystem read-only scoping, CI dry-run defaults, approval snippets, and structured fix reports for PR bots and agent loops.
Ship agent skills
Install Claude, Codex, Cursor, Copilot, Gemini, OpenClaw, Hermes, AGENTS.md, and MCP resource pack context files.