Skip to content
Navigation Menu
Toggle navigation
Sign in
Appearance settings
Platform
GitHub Copilot
Write better code with AI
GitHub Spark
New
Build and deploy intelligent apps
GitHub Models
New
Manage and compare prompts
GitHub Advanced Security
Find and fix vulnerabilities
Actions
Automate any workflow
Codespaces
Instant dev environments
Issues
Plan and track work
Code Review
Manage code changes
Discussions
Collaborate outside of code
Code Search
Find more, search less
Explore
Why GitHub
Documentation
GitHub Skills
Blog
Integrations
GitHub Marketplace
MCP Registry
View all features
Solutions
By company size
Enterprises
Small and medium teams
Startups
Nonprofits
By use case
App Modernization
DevSecOps
DevOps
CI/CD
View all use cases
By industry
Healthcare
Financial services
Manufacturing
Government
View all industries
View all solutions
Resources
Topics
AI
DevOps
Security
Software Development
View all
Explore
Learning Pathways
Events & Webinars
Ebooks & Whitepapers
Customer Stories
Partners
Executive Insights
Open Source
GitHub Sponsors
Fund open source developers
The ReadME Project
GitHub community articles
Repositories
Topics
Trending
Collections
Enterprise
Enterprise platform
AI-powered developer platform
Available add-ons
GitHub Advanced Security
Enterprise-grade security features
Copilot for business
Enterprise-grade AI features
Premium Support
Enterprise-grade 24/7 support
Pricing
Search or jump to...
Search code, repositories, users, issues, pull requests...
Search syntax tips
Provide feedback
Saved searches
Use saved searches to filter your results more quickly
Sign in
Sign up
Appearance settings
Resetting focus
You signed in with another tab or window.
Reload
to refresh your session.
You signed out in another tab or window.
Reload
to refresh your session.
You switched accounts on another tab or window.
Reload
to refresh your session.
Dismiss alert
{{ message }}
coder
/
code-marketplace
Public
Notifications
You must be signed in to change notification settings
Fork
36
Star
313
Code
Issues
16
Pull requests
3
Discussions
Actions
Projects
0
Wiki
Security
Uh oh!
There was an error while loading.
Please reload this page
.
Insights
Additional navigation options
Code
Issues
Pull requests
Discussions
Actions
Projects
Wiki
Security
Insights
Code
Add automated security scanning workflows
#124
Code
Open
ausbru87
wants to merge 15 commits into
main
coder/code-marketplace:main
from
123-add-security-scanning
coder/code-marketplace:123-add-security-scanning
Copy head branch name to clipboard
Conversation
Commits
15
(15)
Checks
Files changed
Open
Add automated security scanning workflows
#124
ausbru87
wants to merge 15 commits into
main
coder/code-marketplace:main
from
123-add-security-scanning
coder/code-marketplace:123-add-security-scanning
Copy head branch name to clipboard
Commits
Commits on Oct 12, 2025
ci: add security scanning workflows (#123)
ausbru87
committed
9b0ab3a
Copy full SHA for 9b0ab3a
ci: scan for all CVE severity levels and remove Docker image scan
Show description for 351ea5c
ausbru87
committed
351ea5c
Copy full SHA for 351ea5c
ci: add explicit scanners to Trivy configuration
Show description for 980a039
ausbru87
committed
980a039
Copy full SHA for 980a039
ci: build and scan Docker image like coder/coder
Show description for 9f26520
ausbru87
committed
9f26520
Copy full SHA for 9f26520
ci: add table output and artifact upload for scan visibility
Show description for 9e22e3a
ausbru87
committed
9e22e3a
Copy full SHA for 9e22e3a
ci: add workflow_dispatch trigger to scorecard for manual testing
ausbru87
committed
9c091a9
Copy full SHA for 9c091a9
revert: remove workflow_dispatch from scorecard
ausbru87
committed
d3b966a
Copy full SHA for d3b966a
Commits on Oct 14, 2025
removed changes from changelog.md
ausbru87
committed
949cdba
Copy full SHA for 949cdba
updated Make for multiple targets and updated security.yaml to use make and bake.
ausbru87
committed
6b8d181
Copy full SHA for 6b8d181
added sha pinning
ausbru87
committed
c3339da
Copy full SHA for c3339da
Commits on Oct 15, 2025
Updated SHAs
Show description for 2a40050
ausbru87
committed
2a40050
Copy full SHA for 2a40050
Commits on Oct 16, 2025
added explicit build targets for each arch
Show description for 4769896
ausbru87
committed
4769896
Copy full SHA for 4769896
added explicit make build command instead of alias to security workflow
ausbru87
committed
ad4db42
Copy full SHA for ad4db42
removed prefixes due to changelog.md being manually curated
Show description for 0f66771
ausbru87
committed
0f66771
Copy full SHA for 0f66771
reduce potential of credential leak by removing credential persistence
ausbru87
committed
4bac609
Copy full SHA for 4bac609
You can’t perform that action at this time.