-
Notifications
You must be signed in to change notification settings - Fork 2.7k
community community Code-security Discussions
Pinned Discussions
🤖 Code Security Discussions
Conversations related to Code Security. Build security into your GitHub workflow with features to keep secrets and vulnerabilities out of your codebase, and to maintain your software supply chain.
Pinned to Code Security
-
You must be logged in to vote 🤖 [Public Preview] Security Campaigns w/ Copilot Autofix 🧑💻
👂 Feedback WantedGitHub is asking for your feedback 📣 ANNOUNCEMENTAnnouncements from the GitHub Community team Code ScanningCode scanning: our code analysis features, powered by the CodeQL engine Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure CopilotCode accurately and faster with your AI powered pair-programmer. ChangelogA discussion post associated with a Changelog post Universe 2024githubuniverse.com Oct. 29-30 -
You must be logged in to vote 🤖 [Deprecation] Dependabot will no longer support npm v6
Dependabot Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure ChangelogA discussion post associated with a Changelog post -
You must be logged in to vote 🤖 The Security Sync: What’s New in Code Security 🤖
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Show & Tell -
You must be logged in to vote 🤖 [GA] Dependabot now supports pnpm workspace catalogs! 🎉
📣 ANNOUNCEMENTAnnouncements from the GitHub Community team Dependabot Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure
Discussions
-
You must be logged in to vote 🤖 -
You must be logged in to vote 🤖 Erroneous GitHub warning messages about Multi-Factor Authentication
BugSomething isn't working correctly Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 🆕 Dependency Review Action (Beta) Feedback - [Update: Released]
👂 Feedback WantedGitHub is asking for your feedback 📣 ANNOUNCEMENTAnnouncements from the GitHub Community team BetaA feature that's in testing Dependabot Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product Feedback -
You must be logged in to vote 🤖 Dependabot alerts should support conventional major version tags with GitHub Actions
BugSomething isn't working correctly Dependabot Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 Suggestion/Feature Request: Code Scanning for Groovy
Code ScanningCode scanning: our code analysis features, powered by the CodeQL engine Product Feedback -
You must be logged in to vote 🤖 Dependency graph support for Gradle
Dependabot Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product Feedback -
You must be logged in to vote 🤖 Respect granularity of SemVer tag previously used
Dependabot Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product Feedback -
You must be logged in to vote 🤖 Re-Opening Security Alerts with Comments
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product Feedback -
You must be logged in to vote 🤖 Why GitHub sends my hardcoded secrets to the providers when Secret Scanning is disabled?
Secret Scanning Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Question -
You must be logged in to vote 🤖 2FA is the last nail in the coffin
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product Feedback -
You must be logged in to vote 🤖 Workshop: GitHub DevSecOps Fundamentals [SEC2745W]
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure DevOpsBring teams together to deliver better software, faster. Universe 2023All things related to our global developer conference, Universe 2023 SpeakerAuthored by GitHub Universe speakers: Ask questions or provide feedback on the session/workshop -
You must be logged in to vote 🤖 Dependabot cannot run CodeQL with error: 1 configuration not found
BugSomething isn't working correctly Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 GitHub Action needed: GitHub Personal Access Token found in gist, any app using this secret may be affected
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Question -
You must be logged in to vote 🤖 Do gradle dependencies submitted via dependency submission API receive Dependabot security alerts?
Dependabot Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Question -
You must be logged in to vote 🤖 Make dependabot less noizy
Dependabot Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product Feedback -
You must be logged in to vote 🤖 Dependabot on Actions
Build security into your GitHub workflow with features to keep your codebase secure Product Feedback ChangelogA discussion post associated with a Changelog post -
You must be logged in to vote 🤖 In my private repo, i see commits by another USER!!
BugSomething isn't working correctly Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 Security overview - Security Managers
Dependabot Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Security Manager Product Feedback -
You must be logged in to vote 🤖 What is external code execution in the
Dependabot Code Securityinsecure-external-code-execution
option on Dependabot?Build security into your GitHub workflow with features to keep your codebase secure Question -
You must be logged in to vote 🤖 Push protection false positive, push declined (and it's not even enabled)
BugSomething isn't working correctly Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure -
You must be logged in to vote 🤖 "Security Risk" overview: inclusion of archived repositories
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product Feedback -
You must be logged in to vote 🤖 -
You must be logged in to vote 🤖 Is a deleted branch on GitHub guaranteed to not leak data?
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Question -
You must be logged in to vote 🤖 Content of CVE text, and propagation of updates
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Question inactiveThis discussion has been automatically marked as inactive. This was formerly labeled stale. -
You must be logged in to vote 🤖 CodeQL - UI Based Configuration
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product Feedback