publish-to-ghazdo

Official

Publish finalized SARIF to GHAzDO securely

Authormicrosoft
Version1.0.0
Installs0

System Documentation

What problem does it solve?

This Skill automates the secure submission of finalized SARIF files to GitHub Advanced Security for Azure DevOps (GHAzDO) via the Sarif.Multitool publish-to-ghazdo verb.

Core Features & Use Cases

  • Automates publishing finalized SARIF to GHAzDO, ensuring provenance requirements are met.
  • Supports dry-run and live publish flows with environment-variable secret handling.
  • Validates provenance offline to prevent misconfigured or unfinalized SARIF from being ingested.

Quick Start

Run Sarif.Multitool publish-to-ghazdo against your finalized SARIF file and supply the secret via an environment variable (default GHAZDO_TOKEN) after confirming the target org/project/repo.

Dependency Matrix

Required Modules

None required

Components

Standard package

💻 Claude Code Installation

Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.

Please help me install this Skill:
Name: publish-to-ghazdo
Download link: https://github.com/microsoft/sarif-sdk/archive/main.zip#publish-to-ghazdo

Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
View Source Repository

Agent Skills Search Helper

Install a tiny helper to your Agent, search and equip skill from 510,000+ vetted skills library on demand.