-
Notifications
You must be signed in to change notification settings - Fork 2.6k
community community Code-security Discussions
Pinned Discussions
🤖 Code Security Discussions
Conversations related to Code Security. Build security into your GitHub workflow with features to keep secrets and vulnerabilities out of your codebase, and to maintain your software supply chain.
Pinned to Code Security
-
You must be logged in to vote 🤖 Copilot (previously code scanning) Autofix: Preview Feedback and Resources
👂 Feedback WantedGitHub is asking for your feedback Code ScanningCode scanning: our code analysis features, powered by the CodeQL engine Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure ChangelogA discussion post associated with a Changelog post -
You must be logged in to vote 🤖 Secret scanning: on-demand revocation for GitHub personal access tokens - feedback
👂 Feedback WantedGitHub is asking for your feedback 📣 ANNOUNCEMENTAnnouncements from the GitHub Community team Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Question -
You must be logged in to vote 🤖 Secret scanning: public leak locations and alert de-duplication across an organization or enterprise - feedback
👂 Feedback WantedGitHub is asking for your feedback 📣 ANNOUNCEMENTAnnouncements from the GitHub Community team Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product Feedback -
You must be logged in to vote 🤖 [Public Preview] Security Campaigns w/ Copilot Autofix 🧑💻
👂 Feedback WantedGitHub is asking for your feedback 📣 ANNOUNCEMENTAnnouncements from the GitHub Community team Code ScanningCode scanning: our code analysis features, powered by the CodeQL engine Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure CopilotCode accurately and faster with your AI powered pair-programmer. ChangelogA discussion post associated with a Changelog post Universe 2024githubuniverse.com Oct. 29-30 -
You must be logged in to vote 🤖 Behind the Firewall: Checking into the Code Security Community 🤖🪐
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Show & Tell Community Check-InUpdates & News from GitHub Community Managers
Discussions
-
You must be logged in to vote 🤖 Dependency graph does not support pnpm v9
BugSomething isn't working correctly Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 Erroneous GitHub warning messages about Multi-Factor Authentication
BugSomething isn't working correctly Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 Dependency graph does not find NuGet package versions when using Central Package Management
BugSomething isn't working correctly Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 Dependabot alerts should support conventional major version tags with GitHub Actions
BugSomething isn't working correctly Dependabot Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 Dependabot grouped security PR not working as configured
BugSomething isn't working correctly Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 Push protection false positive, push declined (and it's not even enabled)
BugSomething isn't working correctly Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 [dependency graph][poetry] Support for Poetry's +1.2 new grouped dependencies syntax.
BugSomething isn't working correctly Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 Additional push in a Dependabot PR does not trigger actions
BugSomething isn't working correctly Dependabot Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 About security issues when submitting code
BugSomething isn't working correctly Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 "Dependabot updates are paused" because "you haven't used Dependabot in a while"
BugSomething isn't working correctly Dependabot Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 Dependabot cannot run CodeQL with error: 1 configuration not found
BugSomething isn't working correctly Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 In my private repo, i see commits by another USER!!
BugSomething isn't working correctly Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 Github should not elide simple secret values like "1", "0" or "yes", "no" etc. (and maybe it shouldn't do it at all for short strings!)
BugSomething isn't working correctly ActionsBuild, test, and automate your deployment pipeline with world-class CI/CD Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 dependabot on monorepo for organization
BugSomething isn't working correctly Dependabot Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 Can't enable dependabot for version updates
BugSomething isn't working correctly Dependabot Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 Dependency Graph and Security Alerts for npm lock file version 3
BugSomething isn't working correctly Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 Dependabot go.mod is not tidy
BugSomething isn't working correctly Dependabot Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 Students logging into personal github accounts from Azure Labs VMs getting "secondary rate limit exceeded" on login.
BugSomething isn't working correctly Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 The property '#/registries' of type string did not match the following type: object
BugSomething isn't working correctly Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 Dependabot alerts aren't updated when the Github Security Advisory changes
BugSomething isn't working correctly Dependabot Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 Prevent direct pushes, but allow merging?
BugSomething isn't working correctly Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 Dependabot says it created some PRs but it doesn't
BugSomething isn't working correctly Dependabot Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 Securing accounts
BugSomething isn't working correctly Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 Security topic
BugSomething isn't working correctly Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 Why new issues doesn't appear on Pull Request after SARIF upload
BugSomething isn't working correctly Code ScanningCode scanning: our code analysis features, powered by the CodeQL engine Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure