GitHub Advanced Security
Home of Advanced Security solutions that we can share with the world
United States of America
Pinned Repositories
advanced-security-material
codeql-bundle-action
Action to retrofit a CodeQL bundle with additional queries, libraries, and customizations
codeql-coding-standards-bundle-releases
CodeQL bundles containing the CodeQL Coding Standards queries
codeql-extractor-iac
CodeQL Extractor, Library, and Queries for Infrastructure as Code
codeql-queries
[Deprecated] GitHub's Field Team's CodeQL Custom Queries, Suites, and Configurations. See GitHubSecurityLab/CodeQL-Community-Packs instead
gh-sbom
Generate SBOMs with gh CLI
GSSAR
GitHub Secret Scanning Auto Remediator (GSSAR)
maven-dependency-submission-action
GitHub Action for submitting Maven dependencies
policy-as-code
GitHub Advanced Security Policy as Code
secret-scanning-custom-patterns
Examples of Custom Secret Scanning Patterns
GitHub Advanced Security's Repositories
advanced-security/secret-scanning-custom-patterns
Examples of Custom Secret Scanning Patterns
advanced-security/policy-as-code
GitHub Advanced Security Policy as Code
advanced-security/codeql-extractor-iac
CodeQL Extractor, Library, and Queries for Infrastructure as Code
advanced-security/ghas-reviewer-app
GitHub Advanced Security Pull Request Security Team required review GitHub App
advanced-security/awesome-codeql
A curated list of awesome CodeQL resources.
advanced-security/probot-security-alerts
Sample GitHub App which monitors and enforces rules for code scanning, Dependabot, and secret scanning alerts
advanced-security/sample-codeql-pipeline-config
Integrate CodeQL into CI/CD pipelines, using the CodeQL CLI Bundle for Automated Code Scanning
advanced-security/generate-sbom-action
An Action to wrap creating an SBOM via REST API
advanced-security/component-detection-dependency-submission-action
advanced-security/sbom-generator-action
advanced-security/secret-scanning-review-action
Action to detect if a secret is initially detected in a pull request
advanced-security/ghas-license-utilization
Optimize the utilization of GHAS licenses in an enterprise (or organization)
advanced-security/spdx-dependency-submission-action
upload an SPDX 2.2 formatted SBOM to GitHub's dependency submission API
advanced-security/monorepo-filtering-workaround
A monorepo filtering workaround for GitHub Advanced Security Code Scanning using renaming of the scanning tool in an Actions workflow
advanced-security/codeql-bundle
CLI to build a custom CodeQL bundle
advanced-security/ghas-bootcamp
advanced-security/monorepo-code-scanning-action
Focus SAST scans (with CodeQL) on just the changed parts of your monorepo, split up as you define
advanced-security/SARIF-viewer
JetBrains IDE plugin for displaying SARIF from GHAS or from a local file
advanced-security/codeql-development-toolkit
The CodeQL Development toolkit is a tool for making common CodeQL development workflows easier.
advanced-security/ghas-workshop
advanced-security/codeql-summarize
CodeQL Summary Generator
advanced-security/ghe-cross-instance-committers
A script which will return the total number of unique de-deuped active committers across multiple GHES instances
advanced-security/codeql-sap-js
CodeQL models for SAP JavaScript frameworks CAP, UI5 and XSJS
advanced-security/reusable-workflows
Advanced Security Reusable GitHub Actions Workflows
advanced-security/gh-ghas-audit
GitHub CLI extension to audit GHAS and code scanning setup for one or more organizations and repositories.
advanced-security/codeql_container_example
This repository serves as an exemplary resource demonstrating how to set up CodeQL to scan containerized applications for vulnerabilities. Its primary objective is to showcase the implementation of CodeQL in the code scanning process.
advanced-security/ghas-seat-projection
GitHub Action to get information of assess how many seats enablement of GHAS will consume when enabled on a repository
advanced-security/python-lint-code-scanning-action
Lint and type check Python with your choice of popular linters, and upload results to GitHub Code Scanning
advanced-security/conda-dependency-submission-action
advanced-security/sample-javascript-monorepo