community community Code-security Discussions
Pinned Discussions
-
-
All GitHub Copilot plans are now on usage-based billing
🗞️ Copilot News and Announcements · GitHub Community Admin -
-
Sort by:
Latest activity
Categories
🤖 Code Security Discussions
Conversations related to Code Security. Build security into your GitHub workflow with features to keep secrets and vulnerabilities out of your codebase, and to maintain your software supply chain.
Pinned to Code Security
-
You must be logged in to vote 🤖 ❗[START HERE] Welcome to the Code Security Community! 🔐
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Show & TellDiscussions where community members share their projects, experiments, or accomplishments Community Check-InUpdates & News from GitHub Community Managers -
You must be logged in to vote 🤖 [GHAS 101] Stop Secrets From Reaching Your Codebase: Secret Scanning & Push Protection
Secret ScanningDetect and prevent the exposure of sensitive information in your code Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure GHASDiscussions related to GitHub Advanced Security Best PracticesBest practices, tips & tricks, and articles from GitHub and its users Show & TellDiscussions where community members share their projects, experiments, or accomplishments Secret ManagementSecret mgmt: store/use/rotate secrets safely (scope, OIDC, vaults). -
You must be logged in to vote 🤖 🔐 Strengthen your Security Posture with these GitHub Advanced Security Resources
Code ScanningCode scanning: our code analysis features, powered by the CodeQL engine Secret ScanningDetect and prevent the exposure of sensitive information in your code Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure GHASDiscussions related to GitHub Advanced Security Secret ManagementSecret mgmt: store/use/rotate secrets safely (scope, OIDC, vaults). source:uiDiscussions created via Community GitHub templates Secret ProtectionSecret Protection prevents exposures, protects credentials, and allows you to ship securely -
You must be logged in to vote 🤖 [GHAS CodeQL Series] - Your Complete Guide to Organization-Wide Code Security
Security and PrivacyProtect your repositories and data with GitHub's security and privacy features Code ScanningCode scanning: our code analysis features, powered by the CodeQL engine Secret ScanningDetect and prevent the exposure of sensitive information in your code Security OverviewSummary of your repository's security status including vulnerabilities and security advisories Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Security ManagerManage and oversee your repository's security settings and alerts EnterpriseDiscussions related to GitHub Enterprise Cloud, Enterprise Server and Organizations GHASDiscussions related to GitHub Advanced Security Best PracticesBest practices, tips & tricks, and articles from GitHub and its users DevOpsBring teams together to deliver better software, faster. Enterprise AdminTopics specifically related to GitHub Enterprise administration Secret ManagementSecret mgmt: store/use/rotate secrets safely (scope, OIDC, vaults). source:uiDiscussions created via Community GitHub templates Secret ProtectionSecret Protection prevents exposures, protects credentials, and allows you to ship securely
Discussions
-
You must be logged in to vote 🤖 How are teams auditing MCP servers before connecting them to AI agents?
Code ScanningCode scanning: our code analysis features, powered by the CodeQL engine Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure QuestionAsk and answer questions about GitHub features and usage Welcome 🎉Used to greet and highlight first-time discussion participants. Welcome to the community! source:uiDiscussions created via Community GitHub templates -
You must be logged in to vote 🤖 Mapbox Public tokens wrongly identified as Secret tokens in Secret Scanning
BugGitHub or a GitHub feature is not working as intended Secret ScanningDetect and prevent the exposure of sensitive information in your code Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Welcome 🎉Used to greet and highlight first-time discussion participants. Welcome to the community! source:uiDiscussions created via Community GitHub templates -
You must be logged in to vote 🤖 Being charged for GHAS Secret Protection and Code Security licenses even though I removed every committer and repository
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure QuestionAsk and answer questions about GitHub features and usage -
You must be logged in to vote 🤖 Being charged for Secret Protection while I don't have it enabled
BugGitHub or a GitHub feature is not working as intended Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Welcome 🎉Used to greet and highlight first-time discussion participants. Welcome to the community! source:uiDiscussions created via Community GitHub templates -
You must be logged in to vote 🤖 Verification of Commits is not happening
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure otherGeneral topics and discussions that don't fit into other categories, but are related to GitHub QuestionAsk and answer questions about GitHub features and usage Welcome 🎉Used to greet and highlight first-time discussion participants. Welcome to the community! source:uiDiscussions created via Community GitHub templates -
You must be logged in to vote 🤖 Tool filter shows
Bug(0)but the results view shows 6GitHub or a GitHub feature is not working as intended Code ScanningCode scanning: our code analysis features, powered by the CodeQL engine Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure source:uiDiscussions created via Community GitHub templates -
You must be logged in to vote 🤖 Need help with hackers on here hacking my phone th
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure QuestionAsk and answer questions about GitHub features and usage -
You must be logged in to vote 🤖 J
BugGitHub or a GitHub feature is not working as intended Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Welcome 🎉Used to greet and highlight first-time discussion participants. Welcome to the community! source:uiDiscussions created via Community GitHub templates Code QualityCode Quality helps users improve code reliability, maintainability, and overall project health -
You must be logged in to vote 🤖 Dependency Graph includes dependencies from arbitrary root-level .txt files
BugGitHub or a GitHub feature is not working as intended DependabotAutomatically update dependencies to keep your project secure and up to date Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Welcome 🎉Used to greet and highlight first-time discussion participants. Welcome to the community! source:uiDiscussions created via Community GitHub templates -
You must be logged in to vote 🤖 https://github.com/freq-trades/polymarket-trading-bot-v2
BugGitHub or a GitHub feature is not working as intended Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Welcome 🎉Used to greet and highlight first-time discussion participants. Welcome to the community! source:uiDiscussions created via Community GitHub templates Code QualityCode Quality helps users improve code reliability, maintainability, and overall project health -
You must be logged in to vote 🤖 CyberScan
BugGitHub or a GitHub feature is not working as intended Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Welcome 🎉Used to greet and highlight first-time discussion participants. Welcome to the community! source:uiDiscussions created via Community GitHub templates Code QualityCode Quality helps users improve code reliability, maintainability, and overall project health -
You must be logged in to vote 🤖 Native API deprecation tracking — beyond CVE-based Dependabot alerts
DependabotAutomatically update dependencies to keep your project secure and up to date Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Product FeedbackShare your thoughts and suggestions on GitHub features and improvements Welcome 🎉Used to greet and highlight first-time discussion participants. Welcome to the community! source:uiDiscussions created via Community GitHub templates -
You must be logged in to vote 🤖 📌 Security Releases Bulletin – June 2025 Edition
🚀 ShippedA feature has been released Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Show & TellDiscussions where community members share their projects, experiments, or accomplishments Community Check-InUpdates & News from GitHub Community Managers -
You must be logged in to vote 🤖 All of my repositories (including new ones) are suddenly flagged as ‘danger’, even though they weren’t before.
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure QuestionAsk and answer questions about GitHub features and usage inactiveThis discussion has been automatically marked as inactive. This was formerly labeled stale. Account RelatedTopics related to account, and GitHub support tickets Account AccessTopics on account restrictions, suspensions, access permissions, enforcement, reinstatement. -
You must be logged in to vote 🤖 How to safely store API keys in a GitHub project?
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure QuestionAsk and answer questions about GitHub features and usage Welcome 🎉Used to greet and highlight first-time discussion participants. Welcome to the community! -
You must be logged in to vote 🤖 What security headaches has AI introduced in your projects lately? (2026 edition)
BugGitHub or a GitHub feature is not working as intended Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure source:uiDiscussions created via Community GitHub templates Code QualityCode Quality helps users improve code reliability, maintainability, and overall project health -
You must be logged in to vote 🤖 🚀 Immutable Releases Are Now Generally Available!
🚀 ShippedA feature has been released Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure Show & TellDiscussions where community members share their projects, experiments, or accomplishments ChangelogA discussion post associated with a Changelog post -
You must be logged in to vote 🤖 @AaPndAG9gywRJe
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure QuestionAsk and answer questions about GitHub features and usage Welcome 🎉Used to greet and highlight first-time discussion participants. Welcome to the community! source:uiDiscussions created via Community GitHub templates Supply chain securityDiscussions on Supply chain security -
You must be logged in to vote 🤖
Bugsecret risk assessmentlists orgs that aren't applicableGitHub or a GitHub feature is not working as intended Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure source:uiDiscussions created via Community GitHub templates Supply chain securityDiscussions on Supply chain security -
You must be logged in to vote 🤖 URGENT: Targeted malware in our repositories altering tailwind.config.js and .gitignore via force-push. Has anyone seen this?
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure QuestionAsk and answer questions about GitHub features and usage Welcome 🎉Used to greet and highlight first-time discussion participants. Welcome to the community! source:uiDiscussions created via Community GitHub templates Supply chain securityDiscussions on Supply chain security -
You must be logged in to vote 🤖 Laporkan bug
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure QuestionAsk and answer questions about GitHub features and usage Welcome 🎉Used to greet and highlight first-time discussion participants. Welcome to the community! source:uiDiscussions created via Community GitHub templates Supply chain securityDiscussions on Supply chain security -
You must be logged in to vote 🤖 Obfuscated code suddenly appearing in next.config.js / postcss.config.js without direct file changes
Code SecurityBuild security into your GitHub workflow with features to keep your codebase secure otherGeneral topics and discussions that don't fit into other categories, but are related to GitHub Welcome 🎉Used to greet and highlight first-time discussion participants. Welcome to the community! -
You must be logged in to vote 🤖 Code scanning alerts link to GitHub Issues to facilitate collaboration and work management [Public Preview]
🚀 ShippedA feature has been released 📣 ANNOUNCEMENTAnnouncements from the GitHub Community team Code ScanningCode scanning: our code analysis features, powered by the CodeQL engine ChangelogA discussion post associated with a Changelog post