Skip to content

ci: add optional MCP Trust Kit scan - #2

Open
aak204 wants to merge 1 commit into
do-community:mainfrom
aak204:codex/add-optional-mcp-trust-scan
Open

ci: add optional MCP Trust Kit scan#2
aak204 wants to merge 1 commit into
do-community:mainfrom
aak204:codex/add-optional-mcp-trust-scan

Conversation

@aak204

@aak204 aak204 commented Mar 30, 2026

Copy link
Copy Markdown

This adds a small optional GitHub Actions workflow example using MCP Trust Kit.

What changed:

  • added .github/workflows/mcp-trust.yml
  • added a short README note pointing to the workflow

Why this is useful:

  • gives repos created from this template a copy-paste-friendly surface-risk check
  • scans the local local-domain-checker.py entrypoint and uploads SARIF to GitHub code scanning
  • stays workflow_dispatch-only by default, so it does not add a required CI gate

Project link:

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant