code
- Source code security analysisiac
- Infrastructure as Code analysis (in development)--location <URL>
--location <DIRECTORY>
--globs <PATTERN_LIST>
*.py
, *.js
, *.ts
, *.java
, *.cpp
, *.c
, *.go
, *.rb
, *.php
, *.swift
, *.rs
, *.kt
, *.scala
*.tf
, *.yml
, *.yaml
, *.json
(Terraform, Kubernetes, etc.)--limit <NUMBER>
--model <MODEL_NAME>
gemini/gemini-2.5-flash
Examples:
--chunk-size <NUMBER>
500
Examples:
--max-iterations <NUMBER>
50
Examples:
--confidence <NUMBER>
7
Examples:
--output <PATH>
fraim_output/
in the project directory
Examples:
fraim_report_[repo]_[timestamp].sarif
- SARIF JSON reportfraim_report_[repo]_[timestamp].html
- HTML report--observability <BACKEND_LIST>
langfuse
- Langfuse observability platformLANGFUSE_PUBLIC_KEY
, LANGFUSE_SECRET_KEY
, and LANGFUSE_HOST
environment variables--debug
.env
file:
--limit
to test on a subset of files first--chunk-size
based on your system capabilities--chunk-size
for accuracy, larger for speed--confidence
to reduce processing time