-
-
Notifications
You must be signed in to change notification settings - Fork 5
Expand file tree
/
Copy pathaxguard.yml.example
More file actions
52 lines (44 loc) · 1.19 KB
/
Copy pathaxguard.yml.example
File metadata and controls
52 lines (44 loc) · 1.19 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
# AXGuard project config (optional)
# Docs: docs/github/config.md
# Copy to repo root as .axguard.yml — never commit secrets.
github:
# Env var *names* only — never put secrets in this file
app_id_env: AXGUARD_GITHUB_APP_ID
private_key_path_env: AXGUARD_GITHUB_PRIVATE_KEY_PATH
private_key_env: AXGUARD_GITHUB_PRIVATE_KEY
webhook_secret_env: AXGUARD_GITHUB_WEBHOOK_SECRET
webhook_host: 127.0.0.1
webhook_port: 8787
review:
enabled: true
on_pull_request: true
on_push: false
check_name: "AXGuard Security Review"
include_footer: true
preship:
enabled: true
check_name: "AXGuard Pre-Ship"
watch:
enabled: false
on_push: true
on_release: true
check_name: "AXGuard Watch"
policy:
fail_on: [critical, high]
review_on: [likely]
fail_on_analysis_error: false
fail_on_unverified: false
medium_fail: false
analysis:
mode: balanced # fast | balanced | deep
max_changed_files: 200
max_annotations: 50
ai:
provider: none # none | local | openai | anthropic | openrouter | ollama
mode: no-llm # no-llm | local | user_key
model: null
api_key_env: AXGUARD_AI_API_KEY
base_url_env: AXGUARD_AI_BASE_URL
privacy:
retain_source: false
log_source: false