analysis
Manage analyses.
create
Create a root analysis for the configured code version.
bevor analysis create [OPTIONS]
Arguments:
--nametextOptional analysis name.
--collisionchoicesurfaceWhat Bevor should do if analysis already exists for the given code
--yesbooleanSkip confirmation of action.
--jsonbooleanJSON output
--forcebooleanSkip checks. Not recommended.
use
Update the configured analysis.
bevor analysis use [OPTIONS]
Arguments:
analysis_idtextrequiredAnalysis container id.
set
Move the analysis HEAD to version_id. This will change which analysis versions you act on.
bevor analysis set [OPTIONS]
Arguments:
version_idtextrequiredAnalysis version id to set as HEAD.
get
Print details for the configured analysis head (or --version). Can be used similarly to bevor analysis current.
bevor analysis get [OPTIONS]
Arguments:
--versiontextAct on this analysis version id instead of the configured analysis head.
--jsonbooleanJSON output
recent
Retrieve the most recent active analysis for the user
bevor analysis recent [OPTIONS]
Arguments:
--jsonbooleanJSON output
current
Get details of currently configured analysis
bevor analysis current [OPTIONS]
Arguments:
--jsonbooleanJSON output
list
List analyses for the configured project, or use the --project flag to list for a specific project, or pass the --all flag to list analyses across all projects in the configured team.
bevor analysis list [OPTIONS]
Arguments:
--pageintegerPage number to use for resource that supports pagination
--page-sizeintegerPage size to use for resource that supports pagination
--orderchoiceHow to order results when a resource supports pagination
--order-bychoiceWhat field to order results by when a resource supports pagination
--projecttextProject ID (defaults to .bevor config).
--usertextAnalysis creator to filter by
--is-ownerbooleanAnalysis filter by owner only
--jsonbooleanJSON output
--allbooleanList analyses for all projects in current team
run
Start a run of Bevor Security pipeline for the configured analysis head (or --version).
bevor analysis run [OPTIONS]
Arguments:
--versiontextVersion id to run (default: configured analysis head).
--no-waitbooleanReturn immediately without waiting for the event stream to complete.
--silentbooleanSuppress intermediate output logs.
retry
Retry failed segments of a Bevor Security pipeline run for the configured analysis head (or --version). See bevor analysis run.
bevor analysis retry [OPTIONS]
Arguments:
--versiontextVersion id to retry (default: configured analysis head).
--no-waitbooleanReturn immediately without waiting for the event stream to complete.
--silentbooleanSuppress intermediate output logs.
diff
Show finding diffs for the configured analysis head (or --version). --staged flag will show
the diff of the staged commits. Excluding it, it'll show the diff of committed findings between the analysis
and its parent.
bevor analysis diff [OPTIONS]
Arguments:
--versiontextVersion id to diff (default: configured analysis head).
--stagedbooleanShow staged drafts instead of version-vs-parent diffs.
--jsonbooleanJSON output
commit
Commit staged findings for an analysis. This will update the HEAD of the configured analysis, or of the analysis associated to the --version.
bevor analysis commit [OPTIONS]
Arguments:
--versiontextVersion id to commit (default: configured analysis head).
child
Create a child analysis version using the configured code. If there is no currently configured
analysis (bevor context or bevor analysis current), you can pass a --version, or you can link an analysis
using bevor analysis use. Bevor will check whether an analysis
exists for the given code version or not, and early return if so. Use the --collision argument to bypass this,
but it's advised not to.
bevor analysis child [OPTIONS]
Arguments:
--versiontextParent version id (default: configured analysis head).
--collisionchoicesurfaceWhat Bevor should do if analysis already exists for the given code
fork
Fork an analysis version and set the new analysis as configured.
bevor analysis fork [OPTIONS]
Arguments:
--versiontextVersion id to fork (default: configured analysis head).
merge
Merge one analysis into another. --from is required, but --to defaults to your active analysis's HEAD. This will create a child analysis version of the --to, and update its HEAD.
bevor analysis merge [OPTIONS]
Arguments:
from_analysistextrequiredSource analysis container id.
--totextDestination analysis container id.
findings
List findings on the configured analysis, or --version. Including a --sarif path will output
the findings into a SARIF format. --interactive will open an interactive terminal to explore further.
bevor analysis findings [OPTIONS]
Arguments:
--versiontextVersion id to list findings for (default: configured analysis head).
--interactivebooleanBrowse findings and expand the focused row.
--jsonbooleanJSON output
--sarifpathWrite SARIF for the configured analysis to this path.
entrypoints
List entrypoints for the configured analysis head (or --version).
bevor analysis entrypoints [OPTIONS]
Arguments:
--versiontextVersion id (default: configured analysis head).
--jsonbooleanJSON output
remediations
List remediated findings for the configured analysis head (or --version). By default it'll list remediations
for your currently configured analysis, but you can override this with --version, or you can pass --project which will
list remediations across an entire project instead.
bevor analysis remediations [OPTIONS]
Arguments:
--pageintegerPage number to use for resource that supports pagination
--page-sizeintegerPage size to use for resource that supports pagination
--orderchoiceHow to order results when a resource supports pagination
--order-bychoiceWhat field to order results by when a resource supports pagination
--projecttextProject to filter by. Defaults to current configuration
--versiontextVersion id (default: configured analysis head).
--jsonbooleanJSON output
delete
Delete an analysis container or version.
full
Delete the entire currently configured analysis container
bevor analysis delete full [OPTIONS]
version
Delete a single analysis version (leaf).
bevor analysis delete version [OPTIONS]
Arguments:
versiontextVersion id to delete (default: configured analysis head).

