<?xml version="1.0" encoding="UTF-8"?><oembed><type>video</type><version>1.0</version><html>&lt;iframe src=&quot;https://www.loom.com/embed/d4435a0bd65a4929adfd43b7951b1107&quot; frameborder=&quot;0&quot; width=&quot;1920&quot; height=&quot;1440&quot; webkitallowfullscreen mozallowfullscreen allowfullscreen&gt;&lt;/iframe&gt;</html><height>1440</height><width>1920</width><provider_name>Loom</provider_name><provider_url>https://www.loom.com</provider_url><thumbnail_height>1440</thumbnail_height><thumbnail_width>1920</thumbnail_width><thumbnail_url>https://cdn.loom.com/sessions/thumbnails/d4435a0bd65a4929adfd43b7951b1107-a186bf048cc94ef9.gif</thumbnail_url><duration>298.576</duration><title>Poolside with GitHub Actions</title><description>This guide Loom demonstrates setting up Poolside automated code reviews and scheduled security scans with GitHub Actions. It shows generating a Poolside API key on platform.poolside.ai, adding it to GitHub repository secrets, and creating an Actions workflow that triggers on new pull requests. The workflow installs the Poolside agent CLI, runs a pool exec review against the origin branch using the Laguna model, and posts the resulting markdown review as a PR comment, then commits and tests the flow with a simulated PR containing backend changes. It then updates the workflow to run nightly via a Cron schedule and manually for the demo, scans the entire repository for vulnerabilities, outputs results to a JSON artifact, and explains how to download and triage the findings.</description></oembed>