Skip to content
Navigation Menu
Toggle navigation
Sign in
Appearance settings
Platform
AI CODE CREATION
GitHub Copilot
Write better code with AI
GitHub Spark
Build and deploy intelligent apps
GitHub Models
Manage and compare prompts
MCP Registry
New
Integrate external tools
DEVELOPER WORKFLOWS
Actions
Automate any workflow
Codespaces
Instant dev environments
Issues
Plan and track work
Code Review
Manage code changes
APPLICATION SECURITY
GitHub Advanced Security
Find and fix vulnerabilities
Code security
Secure your code as you build
Secret protection
Stop leaks before they start
EXPLORE
Why GitHub
Documentation
Blog
Changelog
Marketplace
View all features
Solutions
BY COMPANY SIZE
Enterprises
Small and medium teams
Startups
Nonprofits
BY USE CASE
App Modernization
DevSecOps
DevOps
CI/CD
View all use cases
BY INDUSTRY
Healthcare
Financial services
Manufacturing
Government
View all industries
View all solutions
Resources
EXPLORE BY TOPIC
AI
Software Development
DevOps
Security
View all topics
EXPLORE BY TYPE
Customer stories
Events & webinars
Ebooks & reports
Business insights
GitHub Skills
SUPPORT & SERVICES
Documentation
Customer support
Community forum
Trust center
Partners
Open Source
COMMUNITY
GitHub Sponsors
Fund open source developers
PROGRAMS
Security Lab
Maintainer Community
Accelerator
Archive Program
REPOSITORIES
Topics
Trending
Collections
Enterprise
ENTERPRISE SOLUTIONS
Enterprise platform
AI-powered developer platform
AVAILABLE ADD-ONS
GitHub Advanced Security
Enterprise-grade security features
Copilot for Business
Enterprise-grade AI features
Premium Support
Enterprise-grade 24/7 support
Pricing
Search or jump to...
Search code, repositories, users, issues, pull requests...
Search syntax tips
Provide feedback
Saved searches
Use saved searches to filter your results more quickly
Sign in
Sign up
Appearance settings
Resetting focus
You signed in with another tab or window.
Reload
to refresh your session.
You signed out in another tab or window.
Reload
to refresh your session.
You switched accounts on another tab or window.
Reload
to refresh your session.
Dismiss alert
{{ message }}
hackerph12
/
secure-repo
Public
forked from
step-security/secure-repo
Notifications
You must be signed in to change notification settings
Fork
0
Star
0
Code
Pull requests
0
Actions
Projects
0
Security
Uh oh!
There was an error while loading.
Please reload this page
.
Insights
Additional navigation options
Code
Pull requests
Actions
Projects
Security
Insights
Commits
Branch selector
main
User selector
All users
Datepicker
All time
Commit History
Commits on Mar 26, 2025
Merge pull request #1 from hackerph12/hackerph12-patch-1
Show description for e8cb8d1
hackerph12
authored
e8cb8d1
Copy full SHA for e8cb8d1
Update Dockerfile
hackerph12
authored
e763b2a
Copy full SHA for e763b2a
Commits on Feb 4, 2025
Merge pull request #2506 from step-security/feature/exclude_pin_actions_main
Show description for 6fb13bc
varunsh-coder
authored
6fb13bc
Copy full SHA for 6fb13bc
fix harden runner pinning issue
shubham-stepsecurity
committed
b71adb4
Copy full SHA for b71adb4
Commits on Feb 1, 2025
Merge pull request #2504 from step-security/update-templates-main
Show description for d48f26d
varunsh-coder
authored
d48f26d
Copy full SHA for d48f26d
Update scorecard version
varunsh-coder
committed
1f2d537
Copy full SHA for 1f2d537
Update harden-runner template
varunsh-coder
committed
583e517
Copy full SHA for 583e517
Commits on Jan 31, 2025
Merge pull request #2502 from step-security/feature/exclude_pin_actions_main
Show description for 84135ad
varunsh-coder
authored
84135ad
Copy full SHA for 84135ad
add exemptedActions & pinToImmutable as optional params
shubham-stepsecurity
committed
38df01f
Copy full SHA for 38df01f
add pinToImmutable configuration
shubham-stepsecurity
committed
a1871e2
Copy full SHA for a1871e2
update pattern matching & add test cases
shubham-stepsecurity
committed
c988535
Copy full SHA for c988535
skip pinning for actions present in exemption list
shubham-stepsecurity
committed
3ba8fe3
Copy full SHA for 3ba8fe3
Commits on Jan 30, 2025
Merge pull request #2498 from step-security/immutable_actions_master
Show description for af18f63
varunsh-coder
authored
af18f63
Copy full SHA for af18f63
Commits on Jan 22, 2025
updating action name while getting image manifest for bundled actions
sailikhith-stepsecurity
committed
8e5d1fb
Copy full SHA for 8e5d1fb
Commits on Jan 21, 2025
updating pinnig logic to use immutable version instead of hash
sailikhith-stepsecurity
committed
59ccd75
Copy full SHA for 59ccd75
mocking http server for unit tests
sailikhith-stepsecurity
committed
1281489
Copy full SHA for 1281489
removing unwanted change
sailikhith-stepsecurity
committed
421067f
Copy full SHA for 421067f
update kb by moving remove-disabled-formulae to remove-disabled-packages
sailikhith-stepsecurity
committed
6883158
Copy full SHA for 6883158
fix test
sailikhith-stepsecurity
committed
0509869
Copy full SHA for 0509869
add immutable action check
sailikhith-stepsecurity
committed
dfbe68a
Copy full SHA for dfbe68a
Commits on Sep 17, 2024
Merge pull request #2485 from step-security/issue2483-2
Show description for da66ed5
varunsh-coder
authored
da66ed5
Copy full SHA for da66ed5
Commits on Sep 16, 2024
add additional prms for scorecard template for private repos
shubham-stepsecurity
committed
a294ca7
Copy full SHA for a294ca7
Commits on Sep 6, 2024
Merge pull request #2482 from step-security/fix-2479
Show description for 8a372e9
varunsh-coder
authored
8a372e9
Copy full SHA for 8a372e9
Update KB and action tags
varunsh-coder
committed
fa5ec87
Copy full SHA for fa5ec87
Do not set permissions for jobs with GITHUB_TOKEN in job level env
shubham-stepsecurity
authored and
varunsh-coder
committed
ad03499
Copy full SHA for ad03499
Commits on Jul 4, 2024
Merge pull request #2463 from step-security/ak-upgrading-workflow-versions
Show description for d61982f
ashishkurmi
authored
d61982f
Copy full SHA for d61982f
removing knowledge base for tomwillis608/detect-secrets-action as it does not exist
Show description for 6d459a8
ashishkurmi
committed
6d459a8
Copy full SHA for 6d459a8
bump codeql version
shubham-stepsecurity
authored and
ashishkurmi
committed
5895551
Copy full SHA for 5895551
update workflow templates to latest versions
shubham-stepsecurity
authored and
ashishkurmi
committed
2deef29
Copy full SHA for 2deef29
Commits on Jun 10, 2024
Merge pull request #2454 from step-security/fix-scorecard
Show description for 0dec264
varunsh-coder
authored
0dec264
Copy full SHA for 0dec264
Update scorecard version
varunsh-coder
committed
21be0d7
Copy full SHA for 21be0d7
Merge pull request #2447 from step-security/update-actions
Show description for d52eb7c
varunsh-coder
authored
d52eb7c
Copy full SHA for d52eb7c
Update test.yml
varunsh-coder
committed
e2e8b07
Copy full SHA for e2e8b07
Update test.yml
varunsh-coder
committed
b9cc96e
Copy full SHA for b9cc96e
Update actions
varunsh-coder
committed
2e2bf01
Copy full SHA for 2e2bf01
Pagination
Previous
Next
You can’t perform that action at this time.