GitHub Advanced Security
Home of Advanced Security solutions that we can share with the world
United States of America
Pinned Repositories
advanced-security-material
awesome-codeql
A curated list of awesome CodeQL resources.
awesome-dependabot
A curated list of awesome Dependabot (and related software supply chain) resources.
awesome-secret-scanning
A curated list of awesome GitHub Advanced Security secret scanning resources.
codeql-extractor-iac
CodeQL Extractor, Library, and Queries for Infrastructure as Code
codeql-queries
[Deprecated] GitHub's Field Team's CodeQL Custom Queries, Suites, and Configurations. See GitHubSecurityLab/CodeQL-Community-Packs instead
gh-sbom
Generate SBOMs with gh CLI
maven-dependency-submission-action
GitHub Action for submitting Maven dependencies
policy-as-code
GitHub Advanced Security Policy as Code
secret-scanning-custom-patterns
Examples of Custom Secret Scanning Patterns
GitHub Advanced Security's Repositories
advanced-security/gh-sbom
Generate SBOMs with gh CLI
advanced-security/secret-scanning-custom-patterns
Examples of Custom Secret Scanning Patterns
advanced-security/codeql-queries
[Deprecated] GitHub's Field Team's CodeQL Custom Queries, Suites, and Configurations. See GitHubSecurityLab/CodeQL-Community-Packs instead
advanced-security/maven-dependency-submission-action
GitHub Action for submitting Maven dependencies
advanced-security/filter-sarif
GitHub Action for filtering Code Scanning alerts by path and id
advanced-security/codeql-bundle-action
Action to retrofit a CodeQL bundle with additional queries, libraries, and customizations
advanced-security/enterprise-security-team
Manage a uniform team of security managers for every organization in your enterprise
advanced-security/gh-codeql-scan
GH CLI CodeQL Scan Extension
advanced-security/generate-sbom-action
An Action to wrap creating an SBOM via REST API
advanced-security/sample-codeql-pipeline-config
Integrate CodeQL into CI/CD pipelines, using the CodeQL CLI Bundle for Automated Code Scanning
advanced-security/demo-csharp
GitHub Advanced Security C# Demo Application
advanced-security/cbom-action
Create a Crypto Bill of Materials using CodeQL
advanced-security/codeql-workshops-staging
Original workshops and staging area for new ones
advanced-security/awesome-secret-scanning
A curated list of awesome GitHub Advanced Security secret scanning resources.
advanced-security/demo-python
GitHub Advanced Security Python Demo Application
advanced-security/monorepo-filtering-workaround
A monorepo filtering workaround for GitHub Advanced Security Code Scanning using renaming of the scanning tool in an Actions workflow
advanced-security/codeql-bundle
CLI to build a custom CodeQL bundle
advanced-security/grab_ql
Grab some/all of CodeQL CLI binary, QL library, VSCode starter workspace, VSCode and VSCode QL extension
advanced-security/codeql-development-toolkit
The CodeQL Development toolkit is a tool for making common CodeQL development workflows easier.
advanced-security/demo-java
GitHub Advanced Security scanning tutorial repository for Java
advanced-security/secret-scanning-tools
Testing Suite for GitHub Secret Scanning Custom Patterns
advanced-security/dependabot-epss-action
Action to detect if any open :dependabot: Dependabot alert CVEs exceed an EPSS threshold and fail the workflow.
advanced-security/ghe-cross-instance-committers
A script which will return the total number of unique de-deuped active committers across multiple GHES instances
advanced-security/github-app-auth
Utility to generate tokens to interact with the GitHub API via GitHub App integration
advanced-security/sarif-toolkit
All things SARIF, as an Action
advanced-security/adjust-cvss
advanced-security/demo-golang
advanced-security/codeql_container_example
This repository serves as an exemplary resource demonstrating how to set up CodeQL to scan containerized applications for vulnerabilities. Its primary objective is to showcase the implementation of CodeQL in the code scanning process.
advanced-security/ghas-mttr
GitHub Advanced Security Mean Time to Remediate (MTTR)
advanced-security/secret-scanning-notifications
A GitHub Action that sends email notifications to security manager team for any new or resolved secret scanning alerts based on a set frequency