Skip to content
Navigation Menu
Sign in
Appearance settings
Platform
AI CODE CREATION
GitHub Copilot
Write better code with AI
GitHub Copilot app
Direct agents from issue to merge
MCP Registry
Integrate external tools
DEVELOPER WORKFLOWS
Actions
Automate any workflow
Codespaces
Instant dev environments
Issues
Plan and track work
Code Review
Manage code changes
Code Quality
Enforce quality at merge
APPLICATION SECURITY
GitHub Advanced Security
Find and fix vulnerabilities
Code security
Secure your code as you build
Secret protection
Stop leaks before they start
EXPLORE
Why GitHub
Documentation
Blog
Changelog
Marketplace
View all features
Solutions
BY COMPANY SIZE
Enterprises
Small and medium teams
Startups
Nonprofits
BY USE CASE
App Modernization
DevSecOps
DevOps
CI/CD
View all use cases
BY INDUSTRY
Healthcare
Financial services
Manufacturing
Government
View all industries
View all solutions
Resources
EXPLORE BY TOPIC
AI
Software Development
DevOps
Security
View all topics
EXPLORE BY TYPE
Customer stories
Events & webinars
Ebooks & reports
Business insights
GitHub Skills
SUPPORT & SERVICES
Documentation
Customer support
Community forum
Trust center
Partners
View all resources
Open Source
COMMUNITY
GitHub Sponsors
Fund open source developers
PROGRAMS
Security Lab
Maintainer Community
Accelerator
GitHub Stars
Archive Program
REPOSITORIES
Topics
Trending
Collections
Enterprise
ENTERPRISE SOLUTIONS
Enterprise platform
AI-powered developer platform
AVAILABLE ADD-ONS
GitHub Advanced Security
Enterprise-grade security features
Copilot for Business
Enterprise-grade AI features
Premium Support
Enterprise-grade 24/7 support
Pricing
Search
/
Sign in
Sign up
Appearance settings
You signed in with another tab or window.
Reload
to refresh your session.
You signed out in another tab or window.
Reload
to refresh your session.
You switched accounts on another tab or window.
Reload
to refresh your session.
Dismiss alert
{{ message }}
Uh oh!
There was an error while loading.
Please reload this page
.
githubabcs-devops
/
gh-advsec-devsecops
Public
Notifications
You must be signed in to change notification settings
Fork
10
Star
22
Code
Issues
14
Pull requests
35
Actions
Security and quality
0
Insights
Additional navigation options
Code
Issues
Pull requests
Actions
Security and quality
Insights
Actions: githubabcs-devops/gh-advsec-devsecops
Actions
All workflows
Workflows
SAST - Code Scanning - CodeQL Advanced
SAST - Code Scanning - CodeQL Advanced
CI
CI
CI/CD for Azure Web App
CI/CD for Azure Web App
CIS - Anchore Grype Vulnerability Scan (Container Image Scanning)
CIS - Anchore Grype Vulnerability Scan (Container Image Scanning)
CIS - Trivy Container Image Scanning
CIS - Trivy Container Image Scanning
CodeQL
CodeQL
Copilot code review
Copilot code review
Copilot coding agent
Copilot coding agent
DAST - Zed Attack Proxy (ZAP) Full Scan
DAST - Zed Attack Proxy (ZAP) Full Scan
Dependabot Updates
Dependabot Updates
Dependency Review
Dependency Review
Show more workflows...
Management
Caches
Deployments
SAST - Code Scanning - CodeQL Advanced
SAST - Code Scanning - CodeQL Advanced
Actions
Loading...
Loading
Sorry, something went wrong.
Uh oh!
There was an error while loading.
Please reload this page
.
will be ignored since log searching is not yet available
Show workflow options
Create status badge
Create status badge
Loading
Uh oh!
There was an error while loading.
Please reload this page
.
SAST-GitHubAdvancedSecurity-CodeQL.yml
will be ignored since log searching is not yet available
152 workflow runs
152 workflow runs
Event
Filter by Event
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching events.
Status
Filter by Status
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching statuses.
Branch
Filter by Branch
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching branches.
Actor
Filter by Actor
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching users.
SAST - Code Scanning - CodeQL Advanced
SAST - Code Scanning - CodeQL Advanced
#266:
Scheduled
1m 53s
main
main
1m 53s
View workflow file
Bump Azure.Identity from 1.13.2 to 1.18.0
SAST - Code Scanning - CodeQL Advanced
#265:
Pull request
#146
opened by
dependabot
Bot
3m 8s
dependabot/nuget/src/webapp01/Azure.Identity-1.18.0
dependabot/nuget/src/webapp01/Azure.Identity-1.18.0
3m 8s
View #146
View workflow file
SAST - Code Scanning - CodeQL Advanced
SAST - Code Scanning - CodeQL Advanced
#264:
Scheduled
1m 39s
main
main
1m 39s
View workflow file
Bump aquasecurity/trivy-action from 0.32.0 to 0.34.0 in /.github/workflows in the github_actions group across 1 directory
SAST - Code Scanning - CodeQL Advanced
#263:
Pull request
#145
opened by
dependabot
Bot
2m 1s
dependabot/github_actions/dot-github/workflows/github_actions-9bddd90c58
dependabot/github_actions/dot-github/workflows/github_actions-9bddd90c58
2m 1s
View #145
View workflow file
SAST - Code Scanning - CodeQL Advanced
SAST - Code Scanning - CodeQL Advanced
#262:
Scheduled
1m 33s
main
main
1m 33s
View workflow file
Bump System.Text.Json from 9.0.11 to 10.0.3
SAST - Code Scanning - CodeQL Advanced
#261:
Pull request
#144
opened by
dependabot
Bot
1m 48s
dependabot/nuget/src/webapp01/System.Text.Json-10.0.3
dependabot/nuget/src/webapp01/System.Text.Json-10.0.3
1m 48s
View #144
View workflow file
Add demo files with intentional security vulnerabilities for GitHub A…
SAST - Code Scanning - CodeQL Advanced
#258:
Pull request
#142
opened by
CalinL
2m 0s
feature/devsecops-demo-code04
feature/devsecops-demo-code04
2m 0s
View #142
View workflow file
SAST - Code Scanning - CodeQL Advanced
SAST - Code Scanning - CodeQL Advanced
#254:
Scheduled
1m 42s
main
main
1m 42s
View workflow file
Demo-Code02 - Add demo files with intentional security vulnerabilities for GitHub A…
SAST - Code Scanning - CodeQL Advanced
#253:
Pull request
#138
opened by
CalinL
1m 37s
feature/devsecops-demo-code02
feature/devsecops-demo-code02
1m 37s
View #138
View workflow file
feat: Add DevSecOps-7809 demo page with intentional vulnerabilities for GHAS demonstration
SAST - Code Scanning - CodeQL Advanced
#252:
Pull request
#137
synchronize by
Copilot
AI
2m 20s
copilot/featuredevsecops-demo-4823
copilot/featuredevsecops-demo-4823
2m 20s
View #137
View workflow file
Demo-Code-Complete - Add initial implementation of Dockerfile, Pipfile.lock, and Terraform…
SAST - Code Scanning - CodeQL Advanced
#250:
Pull request
#136
opened by
CalinL
1m 50s
feature/devsecops-demo-code
feature/devsecops-demo-code
1m 50s
View #136
View workflow file
Merge pull request #135 from githubabcs-devops/feature/update-home-page
SAST - Code Scanning - CodeQL Advanced
#249:
Commit
e9ad8a9
pushed by
CalinL
1m 38s
main
main
1m 38s
View workflow file
Update home page title and version to reflect Agentic DevSecOps v8
SAST - Code Scanning - CodeQL Advanced
#248:
Pull request
#135
opened by
CalinL
1m 46s
feature/update-home-page
feature/update-home-page
1m 46s
View #135
View workflow file
DevSecOps Demo 7492: GHAS Features Showcase
SAST - Code Scanning - CodeQL Advanced
#247:
Pull request
#133
opened by
CalinL
1m 37s
feature/devsecops-demo-7492
feature/devsecops-demo-7492
1m 37s
View #133
View workflow file
Demo-Code-Complete Add DevSecOps-4837 demo page with intentional GHAS vulnerabilities
SAST - Code Scanning - CodeQL Advanced
#246:
Pull request
#132
synchronize by
Copilot
AI
1m 54s
copilot/featuredevsecops-demo-12345-again
copilot/featuredevsecops-demo-12345-again
1m 54s
View #132
View workflow file
Refine content in devsecops-new-feature-demo.md for clarity
SAST - Code Scanning - CodeQL Advanced
#244:
Commit
159aae1
pushed by
CalinL
1m 52s
main
main
1m 52s
View workflow file
Reformat devsecops-new-feature-demo.md for clarity and consistency
SAST - Code Scanning - CodeQL Advanced
#243:
Commit
0164dcb
pushed by
CalinL
1m 31s
main
main
1m 31s
View workflow file
Add CUSTOM_TEST token to appsettings.json
SAST - Code Scanning - CodeQL Advanced
#242:
Commit
24c2d0e
pushed by
CalinL
1m 51s
main
main
1m 51s
View workflow file
Update README to emphasize the role of Agentic DevSecOps in building …
SAST - Code Scanning - CodeQL Advanced
#241:
Commit
e8cef65
pushed by
CalinL
1m 42s
main
main
1m 42s
View workflow file
Add security plan creator agent and template for generating comprehen…
SAST - Code Scanning - CodeQL Advanced
#237:
Commit
aef203c
pushed by
CalinL
1m 44s
main
main
1m 44s
View workflow file
Bump System.Text.Json from 8.0.4 to 10.0.2
SAST - Code Scanning - CodeQL Advanced
#236:
Pull request
#130
opened by
dependabot
Bot
1m 54s
dependabot/nuget/src/webapp01/System.Text.Json-10.0.2
dependabot/nuget/src/webapp01/System.Text.Json-10.0.2
1m 54s
View #130
View workflow file
Bump Newtonsoft.Json from 13.0.1 to 13.0.4
SAST - Code Scanning - CodeQL Advanced
#235:
Pull request
#129
opened by
dependabot
Bot
1m 43s
dependabot/nuget/src/webapp01/Newtonsoft.Json-13.0.4
dependabot/nuget/src/webapp01/Newtonsoft.Json-13.0.4
1m 43s
View #129
View workflow file
Bump Microsoft.VisualStudio.Azure.Containers.Tools.Targets from 1.21.0 to 1.23.0
SAST - Code Scanning - CodeQL Advanced
#234:
Pull request
#128
opened by
dependabot
Bot
1m 43s
dependabot/nuget/src/webapp01/Microsoft.VisualStudio.Azure.Containers.Tools.Targets-1.23.0
dependabot/nuget/src/webapp01/Microsoft.VisualStudio.Azure.Containers.Tools.Targets-1.23.0
1m 43s
View #128
View workflow file
Bump checkmarx/kics-github-action from 2.1.13 to 2.1.19
SAST - Code Scanning - CodeQL Advanced
#233:
Pull request
#127
opened by
dependabot
Bot
1m 44s
dependabot/github_actions/checkmarx/kics-github-action-2.1.19
dependabot/github_actions/checkmarx/kics-github-action-2.1.19
1m 44s
View #127
View workflow file
Bump Azure.Identity and Microsoft.Data.SqlClient
SAST - Code Scanning - CodeQL Advanced
#232:
Pull request
#126
opened by
dependabot
Bot
1m 45s
dependabot/nuget/src/webapp01/multi-24ad35a639
dependabot/nuget/src/webapp01/multi-24ad35a639
1m 45s
View #126
View workflow file
Previous
1
2
3
4
5
6
7
Next
You can’t perform that action at this time.