-
Notifications
You must be signed in to change notification settings - Fork 2.7k
community community Code-security Discussions
Pinned Discussions
🤖 Code Security Discussions
Conversations related to Code Security. Build security into your GitHub workflow with features to keep secrets and vulnerabilities out of your codebase, and to maintain your software supply chain.
Pinned to Code Security
-
You must be logged in to vote 🤖 [Public Preview] Security Campaigns w/ Copilot Autofix 🧑💻
👂 Feedback WantedGitHub is asking for your feedback 📣 ANNOUNCEMENTAnnouncements from the GitHub Community team Code ScanningCode scanning: our code analysis features, powered by the CodeQL engine Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure CopilotCode accurately and faster with your AI powered pair-programmer. ChangelogA discussion post associated with a Changelog post Universe 2024githubuniverse.com Oct. 29-30 -
You must be logged in to vote 🤖 [Deprecation] Dependabot will no longer support npm v6
Dependabot Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure ChangelogA discussion post associated with a Changelog post -
You must be logged in to vote 🤖 The Security Sync: What’s New in Code Security 🤖
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Show & Tell -
You must be logged in to vote 🤖 [GA] Dependabot now supports pnpm workspace catalogs! 🎉
📣 ANNOUNCEMENTAnnouncements from the GitHub Community team Dependabot Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure
Discussions
-
You must be logged in to vote 🤖 Secret scanning: on-demand revocation for GitHub personal access tokens - feedback
👂 Feedback WantedGitHub is asking for your feedback 📣 ANNOUNCEMENTAnnouncements from the GitHub Community team Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Question -
You must be logged in to vote 🤖 Secret scanning: public leak locations and alert de-duplication across an organization or enterprise - feedback
👂 Feedback WantedGitHub is asking for your feedback 📣 ANNOUNCEMENTAnnouncements from the GitHub Community team Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product Feedback -
You must be logged in to vote 🤖 Behind the Firewall: Checking into the Code Security Community 🤖🪐
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Show & Tell Community Check-InUpdates & News from GitHub Community Managers -
You must be logged in to vote 🤖 CodeQL: Adopt IaC
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product Feedback -
You must be logged in to vote 🤖 How to Secure JWT Authentication in a Node.js API?
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Show & Tell -
You must be logged in to vote 🤖 Grouping Dependabot Security Updates NPM
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Question -
You must be logged in to vote 🤖 Secret Scanning & Security Dashboard Updates 📢
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure General ChangelogA discussion post associated with a Changelog post -
You must be logged in to vote 🤖 someone stole my code
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Question -
You must be logged in to vote 🤖 CodeQL: Outdated version of cppcheck?
BugSomething isn't working correctly Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 can you add 'affected branches' to the secret scanning alert notices
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product Feedback -
You must be logged in to vote 🤖 Campaigns - Filtering
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product Feedback -
You must be logged in to vote 🤖 What are the cost of Dependabot for individuals?
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Question -
You must be logged in to vote 🤖 Please make all code scanning alerts visible in pull-requests
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product Feedback -
You must be logged in to vote 🤖 Fixing the server
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure General -
You must be logged in to vote 🤖 Docker Hub security incident 2024.09.24
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure General -
You must be logged in to vote 🤖 What is the process to getting dependency graph support for a new package manager? (deno)
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product Feedback -
You must be logged in to vote 🤖 Delete the checked in file permanently from repo and commits.
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Question -
You must be logged in to vote 🤖 2 key authentications
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Question -
You must be logged in to vote 🤖 GHAS - Visualizing Code Scanning results of a pull request requires GHAS license ?
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure GHASDiscussions related to GitHub Advanced Security Question -
You must be logged in to vote 🤖 Regarding exporting SBOM file for specific tag/branch
RepositoriesThe core of version-controlled code storage Question -
You must be logged in to vote 🤖 See Dependabot alerts for whole organization
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product Feedback -
You must be logged in to vote 🤖 Request: Please provide an option to disable permission to dismiss/reopen code scanning alerts
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product Feedback -
You must be logged in to vote 🤖 I have changed my passkey on windows and cant use the same name, is it a bug or potential a risk?
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Question inactiveThis discussion has been automatically marked as inactive. This was formerly labeled stale. -
You must be logged in to vote 🤖 GitHub keys signed commits shouldn't be treated the same as personally signed ones, nor shown as committed by the author
BugSomething isn't working correctly Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure