community community Code-security Discussions
Pinned Discussions
-
-
Announcement & FAQ: Changes to GitHub Copilot Individual Plans
💭 Copilot Conversations · GitHub Community Admin -
GitHub Copilot is moving to usage-based billing
🗞️ Copilot News and Announcements · GitHub Community Admin -
Sort by:
Latest activity
Categories
🤖 Code Security Discussions
Conversations related to Code Security. Build security into your GitHub workflow with features to keep secrets and vulnerabilities out of your codebase, and to maintain your software supply chain.
Pinned to Code Security
-
You must be logged in to vote 🤖 ❗[START HERE] Welcome to the Code Security Community! 🔐
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Show & TellDiscussions where community members share their projects, experiments, or accomplishments Community Check-InUpdates & News from GitHub Community Managers -
You must be logged in to vote 🤖 [GHAS 101] Stop Secrets From Reaching Your Codebase: Secret Scanning & Push Protection
Secret ScanningDetect and prevent the exposure of sensitive information in your code Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure GHASDiscussions related to GitHub Advanced Security Best PracticesBest practices, tips & tricks, and articles from GitHub and its users Show & TellDiscussions where community members share their projects, experiments, or accomplishments Secret ManagementSecret mgmt: store/use/rotate secrets safely (scope, OIDC, vaults). -
You must be logged in to vote 🤖 Code scanning alerts link to GitHub Issues to facilitate collaboration and work management [Public Preview]
🚀 ShippedA feature has been released 📣 ANNOUNCEMENTAnnouncements from the GitHub Community team Code ScanningCode scanning: our code analysis features, powered by the CodeQL engine ChangelogA discussion post associated with a Changelog post -
You must be logged in to vote 🤖 🔐 Strengthen your Security Posture with these GitHub Advanced Security Resources
Code ScanningCode scanning: our code analysis features, powered by the CodeQL engine Secret ScanningDetect and prevent the exposure of sensitive information in your code Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure GHASDiscussions related to GitHub Advanced Security Secret ManagementSecret mgmt: store/use/rotate secrets safely (scope, OIDC, vaults). source:uiDiscussions created via Community GitHub templates Secret ProtectionSecret Protection prevents exposures, protects credentials, and allows you to ship securely -
You must be logged in to vote 🤖 [GHAS CodeQL Series] - Your Complete Guide to Organization-Wide Code Security
Security and PrivacyProtect your repositories and data with GitHub's security and privacy features Code ScanningCode scanning: our code analysis features, powered by the CodeQL engine Secret ScanningDetect and prevent the exposure of sensitive information in your code Security OverviewSummary of your repository's security status including vulnerabilities and security advisories Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Security ManagerManage and oversee your repository's security settings and alerts EnterpriseDiscussions related to GitHub Enterprise Cloud, Enterprise Server and Organizations GHASDiscussions related to GitHub Advanced Security Best PracticesBest practices, tips & tricks, and articles from GitHub and its users DevOpsBring teams together to deliver better software, faster. Enterprise AdminTopics specifically related to GitHub Enterprise administration Secret ManagementSecret mgmt: store/use/rotate secrets safely (scope, OIDC, vaults). source:uiDiscussions created via Community GitHub templates Secret ProtectionSecret Protection prevents exposures, protects credentials, and allows you to ship securely
Discussions
-
You must be logged in to vote 🤖 [GA] Dependabot now supports pnpm workspace catalogs! 🎉
📣 ANNOUNCEMENTAnnouncements from the GitHub Community team DependabotAutomatically update dependencies to keep your project secure and up to date Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure ChangelogA discussion post associated with a Changelog post -
You must be logged in to vote 🤖 Secrets Management Best Practices
BugGitHub or a GitHub feature is not working as intended Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure source:uiDiscussions created via Community GitHub templates -
You must be logged in to vote 🤖 all
BugGitHub or a GitHub feature is not working as intended Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Welcome 🎉Used to greet and highlight first-time discussion participants. Welcome to the community! source:uiDiscussions created via Community GitHub templates -
You must be logged in to vote 🤖 Jobayer
BugGitHub or a GitHub feature is not working as intended Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Welcome 🎉Used to greet and highlight first-time discussion participants. Welcome to the community! source:uiDiscussions created via Community GitHub templates -
You must be logged in to vote 🤖 Request to dismiss a secret-scanning alert should allow "cancel request" to be consistent with the "reopen alert" option for direct dismissals
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product FeedbackShare your thoughts and suggestions on GitHub features and improvements source:uiDiscussions created via Community GitHub templates -
You must be logged in to vote 🤖 [Feature Request] Show which release version fixes the security issue
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product FeedbackShare your thoughts and suggestions on GitHub features and improvements Welcome 🎉Used to greet and highlight first-time discussion participants. Welcome to the community! source:uiDiscussions created via Community GitHub templates -
You must be logged in to vote 🤖 [CVE-2026-24842] CVE node-tar package for v2.331.0 Latest
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure QuestionAsk and answer questions about GitHub features and usage inactiveThis discussion has been automatically marked as inactive. This was formerly labeled stale. -
You must be logged in to vote 🤖 Need help with hackers on here hacking my phone th
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure QuestionAsk and answer questions about GitHub features and usage -
You must be logged in to vote 🤖 Dependabot fixes not clearing
BugGitHub or a GitHub feature is not working as intended Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Welcome 🎉Used to greet and highlight first-time discussion participants. Welcome to the community! source:uiDiscussions created via Community GitHub templates -
You must be logged in to vote 🤖 GitHub Secret Scanning not detecting hardcoded API keys in Java String constants
BugGitHub or a GitHub feature is not working as intended Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Welcome 🎉Used to greet and highlight first-time discussion participants. Welcome to the community! source:uiDiscussions created via Community GitHub templates -
You must be logged in to vote 🤖 Misunderstanding
BugGitHub or a GitHub feature is not working as intended Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Welcome 🎉Used to greet and highlight first-time discussion participants. Welcome to the community! source:uiDiscussions created via Community GitHub templates -
You must be logged in to vote 🤖 Security advisory credit badge not appearing on profile
BugGitHub or a GitHub feature is not working as intended Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Welcome 🎉Used to greet and highlight first-time discussion participants. Welcome to the community! source:uiDiscussions created via Community GitHub templates -
You must be logged in to vote 🤖 How to protect repo against unwanted deletion?
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure QuestionAsk and answer questions about GitHub features and usage inactiveThis discussion has been automatically marked as inactive. This was formerly labeled stale. -
You must be logged in to vote 🤖 New to GitHub? Secure Your Account in Minutes 🔐
New To GitHub 👋New To GitHub Community Check-InUpdates & News from GitHub Community Managers -
You must be logged in to vote 🤖 Action Disablement with Required Advanced Security Options
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product FeedbackShare your thoughts and suggestions on GitHub features and improvements Welcome 🎉Used to greet and highlight first-time discussion participants. Welcome to the community! source:uiDiscussions created via Community GitHub templates -
You must be logged in to vote 🤖 Are source maps intentionally exposed on github.githubassets.com?
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure QuestionAsk and answer questions about GitHub features and usage Welcome 🎉Used to greet and highlight first-time discussion participants. Welcome to the community! source:uiDiscussions created via Community GitHub templates -
You must be logged in to vote 🤖 Github copilot adding viruses to code
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure QuestionAsk and answer questions about GitHub features and usage -
You must be logged in to vote 🤖 My email is hacked, I cannot recover , how can I change my GitHub email to my new email?
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure QuestionAsk and answer questions about GitHub features and usage -
You must be logged in to vote 🤖 Insanity of copilot integration.
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product FeedbackShare your thoughts and suggestions on GitHub features and improvements Welcome 🎉Used to greet and highlight first-time discussion participants. Welcome to the community! source:uiDiscussions created via Community GitHub templates -
You must be logged in to vote 🤖 見知らぬIssues が大量に表示されている
Welcome 🎉Used to greet and highlight first-time discussion participants. Welcome to the community! source:otherDiscussions created outside of Community GitHub template -
You must be logged in to vote 🤖 false positive for 'gocardless' tokens
BugGitHub or a GitHub feature is not working as intended Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Welcome 🎉Used to greet and highlight first-time discussion participants. Welcome to the community! source:uiDiscussions created via Community GitHub templates -
You must be logged in to vote 🤖 Dependabot API no longer returning all alerts
BugGitHub or a GitHub feature is not working as intended Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Welcome 🎉Used to greet and highlight first-time discussion participants. Welcome to the community! source:uiDiscussions created via Community GitHub templates -
You must be logged in to vote 🤖 Filter out forked repositories
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product FeedbackShare your thoughts and suggestions on GitHub features and improvements source:uiDiscussions created via Community GitHub templates -
You must be logged in to vote 🤖 Add API for management of access to security alerts
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product FeedbackShare your thoughts and suggestions on GitHub features and improvements -
You must be logged in to vote 🤖 How seriously is your team actually treating code security in the testing phase, or is it all just shifted to DevSecOps?
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure QuestionAsk and answer questions about GitHub features and usage