-
Notifications
You must be signed in to change notification settings - Fork 2.6k
community community Code-security Discussions
Pinned Discussions
🤖 Code Security Discussions
Conversations related to Code Security. Build security into your GitHub workflow with features to keep secrets and vulnerabilities out of your codebase, and to maintain your software supply chain.
Pinned to Code Security
-
You must be logged in to vote 🤖 Copilot (previously code scanning) Autofix: Preview Feedback and Resources
👂 Feedback WantedGitHub is asking for your feedback Code ScanningCode scanning: our code analysis features, powered by the CodeQL engine Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure ChangelogA discussion post associated with a Changelog post -
You must be logged in to vote 🤖 Secret scanning: on-demand revocation for GitHub personal access tokens - feedback
👂 Feedback WantedGitHub is asking for your feedback 📣 ANNOUNCEMENTAnnouncements from the GitHub Community team Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Question -
You must be logged in to vote 🤖 Secret scanning: public leak locations and alert de-duplication across an organization or enterprise - feedback
👂 Feedback WantedGitHub is asking for your feedback 📣 ANNOUNCEMENTAnnouncements from the GitHub Community team Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product Feedback -
You must be logged in to vote 🤖 [Public Preview] Security Campaigns w/ Copilot Autofix 🧑💻
👂 Feedback WantedGitHub is asking for your feedback 📣 ANNOUNCEMENTAnnouncements from the GitHub Community team Code ScanningCode scanning: our code analysis features, powered by the CodeQL engine Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure CopilotCode accurately and faster with your AI powered pair-programmer. ChangelogA discussion post associated with a Changelog post Universe 2024githubuniverse.com Oct. 29-30 -
You must be logged in to vote 🤖 Behind the Firewall: Checking into the Code Security Community 🤖🪐
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Show & Tell Community Check-InUpdates & News from GitHub Community Managers
Discussions
-
You must be logged in to vote 🤖 -
You must be logged in to vote 🤖 Erroneous GitHub warning messages about Multi-Factor Authentication
BugSomething isn't working correctly Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 🆕 Dependency Review Action (Beta) Feedback - [Update: Released]
👂 Feedback WantedGitHub is asking for your feedback 📣 ANNOUNCEMENTAnnouncements from the GitHub Community team BetaA feature that's in testing Dependabot Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product Feedback -
You must be logged in to vote 🤖 Dependabot alerts should support conventional major version tags with GitHub Actions
BugSomething isn't working correctly Dependabot Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 Suggestion/Feature Request: Code Scanning for Groovy
Code ScanningCode scanning: our code analysis features, powered by the CodeQL engine Product Feedback -
You must be logged in to vote 🤖 Dependency graph support for Gradle
Dependabot Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product Feedback -
You must be logged in to vote 🤖 Respect granularity of SemVer tag previously used
Dependabot Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product Feedback -
You must be logged in to vote 🤖 Why GitHub sends my hardcoded secrets to the providers when Secret Scanning is disabled?
Secret Scanning Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Question -
You must be logged in to vote 🤖 Re-Opening Security Alerts with Comments
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product Feedback -
You must be logged in to vote 🤖 2FA is the last nail in the coffin
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product Feedback -
You must be logged in to vote 🤖 Workshop: GitHub DevSecOps Fundamentals [SEC2745W]
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure DevOpsBring teams together to deliver better software, faster. Universe 2023All things related to our global developer conference, Universe 2023 SpeakerAuthored by GitHub Universe speakers: Ask questions or provide feedback on the session/workshop -
You must be logged in to vote 🤖 GitHub Action needed: GitHub Personal Access Token found in gist, any app using this secret may be affected
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Question -
You must be logged in to vote 🤖 Do gradle dependencies submitted via dependency submission API receive Dependabot security alerts?
Dependabot Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Question -
You must be logged in to vote 🤖 Make dependabot less noizy
Dependabot Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product Feedback -
You must be logged in to vote 🤖 Security overview - Security Managers
Dependabot Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Security Manager Product Feedback -
You must be logged in to vote 🤖 Push protection false positive, push declined (and it's not even enabled)
BugSomething isn't working correctly Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 Dependabot on Actions
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product Feedback ChangelogA discussion post associated with a Changelog post -
You must be logged in to vote 🤖 "Security Risk" overview: inclusion of archived repositories
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product Feedback -
You must be logged in to vote 🤖 What is external code execution in the
Dependabot Code Securityinsecure-external-code-execution
option on Dependabot?Build security into your GitHub workflow with features to keep your codebase secure Question -
You must be logged in to vote 🤖 -
You must be logged in to vote 🤖 Is a deleted branch on GitHub guaranteed to not leak data?
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Question -
You must be logged in to vote 🤖 CodeQL - UI Based Configuration
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product Feedback -
You must be logged in to vote 🤖 Dependabot creates PRs for non-security updates
Dependabot Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Question -
You must be logged in to vote 🤖 Additional push in a Dependabot PR does not trigger actions
BugSomething isn't working correctly Dependabot Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 Binary code in Github
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Question