First Scan Tutorial

  1. Create a runner in the application.
  2. Copy the one-time rda_... runner API key.
  3. Run the agent with API_URL=https://app.exposurex.io.
  4. Start with a small repository and one scanner.
  5. Review created assets and findings in the UI.
docker run --rm \
  -v $(pwd):/scan \
  -e API_URL=https://app.exposurex.io \
  -e API_KEY=rda_xxxxxxxxxxxxxxxxxx \
  exposurex-runner:latest \
  -tools semgrep,gitleaks,trivy -target /scan -push -verbose