vg policy — Context-policy pins and patch verify
Show the production context-policy pin used by VG Code, and verify a signed context-policy patch file before any release that would bump it.
Advanced-level help articles for the Vibgrate CLI.
Get reliable scans on big codebases. Learn how to exclude heavy directories, scope to changed files, and control caching so large-repo scans stay fast and accurate.
Working in a monorepo? Learn strategies for producing Software Bills of Materials at the right granularity — per package or for the whole workspace — using Vibgrate CLI.
Understand how Vibgrate's source-level SBOM fits projects that ship as container images, what it covers, and how to combine it with image-layer SBOM tooling for full coverage.
Bring SBOMs, dependency-risk findings, security posture, and drift scoring together into a repeatable check that tells you whether your software supply chain is in good shape.
Vibgrate AI Context runs fully offline after a one-time model download, making it suitable for air-gapped and disconnected environments. Learn how to prepare and run it without network access.
Import Vibgrate's core TypeScript types for programmatic use — build custom tools, dashboards, and integrations on top of the scan artifact schema.
A comprehensive guide to all extended scanners in the Vibgrate CLI — platform matrix, dependency risk, security posture, architecture layers, code quality, and more.
Run Vibgrate drift scanning as a step in an Argo Workflows template on Kubernetes. Learn how to source the repository, gate the run, and capture the report.
Define a Tekton Task that runs Vibgrate drift scanning on a cloned workspace. Learn how to gate the pipeline run and emit the report.
Run parallel Vibgrate scans across a monorepo by fanning out a CI matrix over packages. Learn how to scope each scan and aggregate the DriftScores.