GitOps-ready Output
The export command writes a ZIP archive built from the namespace scan result.
scrubctl export my-app -o ./out
Archive contents are grouped by classification:
| Path | Contents |
|---|---|
manifests/include/ | Sanitized resources ready to use as desired state |
manifests/cleanup/ | Sanitized resources that need cleanup before they should be applied |
manifests/review/ | Sanitized resources that need a human decision |
README.md | Summary of the scan and export |
WARNINGS.md | Export warnings, when present |
Use the generated output as a starting point for a GitOps repository, not as a replacement for review. The classification folders make that review explicit.
Argo CD Application Generation
generate argocd creates an Argo CD Application manifest for the path where the sanitized manifests will live.
scrubctl generate argocd my-app \
--repo-url https://github.com/example/repo.git \
--revision main \
--path manifests/overlays/install