Skip to main content

Security Compliance Platform CLI - Secure your code from the terminal.

Project description

Security Scanners

The platform integrates four industry-standard security scanners:

  1. Semgrep - Multi-language static analysis

    • Supports 18+ languages: Python, JavaScript, TypeScript, Java, Go, Ruby, PHP, C/C++, C#, Rust, Kotlin, Scala, Swift
    • Uses Semgrep Registry community rules
    • OWASP Top 10 and CWE coverage
  2. Bandit - Python static security analysis

    • Detects hard-coded secrets, SQL injection, shell injection, insecure crypto
    • 68+ built-in security checks
    • Severity-based risk scoring
  3. Checkov - Infrastructure as Code security

    • Scans Terraform, Dockerfile, Kubernetes, CloudFormation
    • 1000+ built-in policies (CIS, PCI-DSS, HIPAA compliance)
    • Identifies misconfigurations before deployment
  4. pip-audit - Python dependency vulnerability scanning

    • Checks for known CVEs in dependencies
    • Uses PyPI Advisory Database
    • Provides upgrade recommendations

Scanner Workflow

  1. Repository is cloned to temporary directory
  2. All applicable scanners run in parallel
  3. Findings are aggregated and stored in database
  4. Risk score calculated based on severity (0-10 scale)
  5. Temporary files cleaned up

The platform includes a powerful CLI script to trigger scans and resolutions directly from your terminal.

1. Installation

Recommended: Using uv (Isolated)

uv tool install scp-cli

Using pip

pip install scp-cli --upgrade

Ensure you have the dependencies installed:

pip install typer[all] rich requests

2. Usage

Get your API key from the dashboard

Running the CLI tool

# Showing the help menu
scp-cli --help

# Authenticate (Set your API key)
scp-cli auth --key <YOUR_API_KEY>

# Start a scan
scp-cli scan https://github.com/owner/repo

# Check scan status
scp-cli status <scan_id>

# Resolve findings (Bulk fix for a scan)
scp-cli resolve <scan_id>

# Check all successfully resolved findings
scp-cli resolved

# Get the PR URL for a specific resolved finding
scp-cli pr <finding_id>

# Check your quota
scp-cli usage

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

scp_cli-0.1.8.tar.gz (71.4 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

scp_cli-0.1.8-py3-none-any.whl (69.0 kB view details)

Uploaded Python 3

File details

Details for the file scp_cli-0.1.8.tar.gz.

File metadata

  • Download URL: scp_cli-0.1.8.tar.gz
  • Upload date:
  • Size: 71.4 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.0.1 CPython/3.11.12

File hashes

Hashes for scp_cli-0.1.8.tar.gz
Algorithm Hash digest
SHA256 bb927cf8981b3cbe1394d04a323f3f23001a4237677f7fd78dfcd58484799430
MD5 3ea55ad600574c477c8db6f4707f7159
BLAKE2b-256 49727fd19bc87018176db4c6fbcb66d6c02f8a7c16f1e73a695f629f8b2a3b96

See more details on using hashes here.

File details

Details for the file scp_cli-0.1.8-py3-none-any.whl.

File metadata

  • Download URL: scp_cli-0.1.8-py3-none-any.whl
  • Upload date:
  • Size: 69.0 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.0.1 CPython/3.11.12

File hashes

Hashes for scp_cli-0.1.8-py3-none-any.whl
Algorithm Hash digest
SHA256 9e43ad057e7aa98ea46be4dfac6336345f5098d405bae68cde79c11bbfb3a57d
MD5 e1f4e105690b7d7da06bcf41c001433d
BLAKE2b-256 4ef4d1a5d276e55416d72391810b65bc9b09741c56bb20026b80430b9e4e93fa

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page