Security review workflows from local scan to merge gate.

Choose the workflow for AI-generated code, private repositories, coding agents, pre-commit checks, or pull-request enforcement without duplicating evidence.

Use Security review workflows from local scan to merge gate. as a decision directory.

Choose the workflow for AI-generated code, private repositories, coding agents, pre-commit checks, or pull-request enforcement without duplicating evidence. Open the page that matches the concrete decision in front of you, verify its evidence and limits, then continue to the relevant implementation or proof page.

  • Scope: Choose the workflow for AI-generated code, private repositories, coding agents, pre-commit checks, or pull-request enforcement without duplicating evidence.
  • Evidence: Verify who runs the scan, which command starts it, what evidence reaches the reviewer, which threshold blocks a change, and how the team rescans after a fix.
  • Boundary: A workflow can make review repeatable, but it should not turn every warning into an automatic rejection or remove accountable human review.

Continue with implementation evidence.

For Security review workflows from local scan to merge gate., use these routes to inspect a real artifact, confirm the product boundary, or implement the workflow described in this directory.

Validate the workflow on your own code.

Start with one local scan, inspect the evidence, and expand to reports, agents, or CI only when the signal is useful.