Skip to main content
The IronBee Action can run the verification in two places:
  • Platform mode: on IronBee. The console calls this On IronBee.
  • Local mode: on your GitHub runner. The console calls this On your GitHub runner.
Everything after the verification is the same in both modes: the verdict, the fix, the commit and the report. The verification_mode input picks the mode: auto (the default), platform or local.

Compare the two modes


How auto decides

With verification_mode: auto, the action decides from two things it can check without calling IronBee: whether the repository is private, and whether an Anthropic credential is set. The first line of the run’s log names the mode and the reason.
If your repository is private and the IronBee GitHub App covers it, set verification_mode: platform explicitly. Otherwise auto runs on your runner whenever an Anthropic credential is set.
A private repository without the GitHub App can still be verified on IronBee: set ironbee_bind_repository: false to verify the running application without a checkout of the repository.

Inputs that apply to one mode

The action warns in the log when you set an input that doesn’t apply to the mode it runs in. Platform mode only Local mode only claude_code_cli_version and the Anthropic credential also apply to the fix step in platform mode. See Configuration for every input.

What’s next?

How it works

The run from the plan to the report.

GitHub App

Give IronBee access to private repositories.