Skip to content
Navigation Menu
Sign in
Appearance settings
Platform
AI CODE CREATION
GitHub Copilot
Write better code with AI
GitHub Copilot app
Direct agents from issue to merge
MCP Registry
Integrate external tools
DEVELOPER WORKFLOWS
Actions
Automate any workflow
Codespaces
Instant dev environments
Issues
Plan and track work
Code Review
Manage code changes
Code Quality
Enforce quality at merge
APPLICATION SECURITY
GitHub Advanced Security
Find and fix vulnerabilities
Code security
Secure your code as you build
Secret protection
Stop leaks before they start
EXPLORE
Why GitHub
Documentation
Blog
Changelog
Marketplace
View all features
Solutions
BY COMPANY SIZE
Enterprises
Small and medium teams
Startups
Nonprofits
BY USE CASE
App Modernization
DevSecOps
DevOps
CI/CD
View all use cases
BY INDUSTRY
Healthcare
Financial services
Manufacturing
Government
View all industries
View all solutions
Resources
EXPLORE BY TOPIC
AI
Software Development
DevOps
Security
View all topics
EXPLORE BY TYPE
Customer stories
Events & webinars
Ebooks & reports
Business insights
GitHub Skills
SUPPORT & SERVICES
Documentation
Customer support
Community forum
Trust center
Partners
View all resources
Open Source
COMMUNITY
GitHub Sponsors
Fund open source developers
PROGRAMS
Security Lab
Maintainer Community
GitHub Stars
Archive Program
REPOSITORIES
Topics
Trending
Collections
Enterprise
ENTERPRISE SOLUTIONS
Enterprise platform
AI-powered developer platform
AVAILABLE ADD-ONS
GitHub Advanced Security
Enterprise-grade security features
Copilot for Business
Enterprise-grade AI features
Premium Support
Enterprise-grade 24/7 support
Pricing
Search
/
Sign in
Sign up
Appearance settings
You signed in with another tab or window.
Reload
to refresh your session.
You signed out in another tab or window.
Reload
to refresh your session.
You switched accounts on another tab or window.
Reload
to refresh your session.
Dismiss alert
{{ message }}
rivassec
/
devsecops-notes
Public
Notifications
You must be signed in to change notification settings
Fork
0
Star
0
Code
Issues
0
Pull requests
1
Actions
Projects
Security and quality
0
Insights
Additional navigation options
Code
Issues
Pull requests
Actions
Projects
Security and quality
Insights
Actions: rivassec/devsecops-notes
Actions
All workflows
Workflows
Accessibility check (pa11y)
Accessibility check (pa11y)
Canonical / noindex guard
Canonical / noindex guard
CodeQL
CodeQL
CodeQL Advanced
CodeQL Advanced
Dependabot Updates
Dependabot Updates
Dependency Graph
Dependency Graph
Deploy Pelican Site
Deploy Pelican Site
Description length
Description length
Gitleaks
Gitleaks
Image alt-text check
Image alt-text check
Show more workflows...
Management
Caches
Deployments
Gitleaks
Gitleaks
Actions
Loading...
Loading
Sorry, something went wrong.
Uh oh!
There was an error while loading.
Please reload this page
.
will be ignored since log searching is not yet available
Show workflow options
Create status badge
Create status badge
Loading
Uh oh!
There was an error while loading.
Please reload this page
.
gitleaks.yml
will be ignored since log searching is not yet available
140 workflow runs
140 workflow runs
Event
Filter by Event
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching events.
Status
Filter by Status
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching statuses.
Branch
Filter by Branch
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching branches.
Actor
Filter by Actor
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching users.
ci(deps): bump actions/checkout from 4.2.2 to 7.0.1
Gitleaks
#140:
Pull request
#53
opened by
dependabot
Bot
9s
dependabot/github_actions/actions/checkout-7.0.1
dependabot/github_actions/actions/checkout-7.0.1
9s
View #53
View workflow file
ci: add shellcheck (error severity) (#52)
Gitleaks
#139:
Commit
82cce79
pushed by
rivassec
9s
main
main
9s
View workflow file
ci: add shellcheck (error severity)
Gitleaks
#138:
Pull request
#52
opened by
rivassec
12s
ci/add-shellcheck
ci/add-shellcheck
12s
View #52
View workflow file
ci(gitleaks): add pull-requests: read (fix 403 on PR commit enumeration)
Gitleaks
#137:
Commit
15318ec
pushed by
rivassec
14s
main
main
14s
View workflow file
posts: tighten IAM post accuracy (CSP mechanism, k8s primitive, trigg…
Gitleaks
#136:
Commit
2bfa388
pushed by
rivassec
9s
main
main
9s
View workflow file
iam-blast-radius: re-sync vendored web build (secure-iam-lint@1f33e16)
Gitleaks
#135:
Commit
ccd7a50
pushed by
rivassec
9s
main
main
9s
View workflow file
post: mutation-harness + privesc-benchmark sections; fix Rhino-catalo…
Gitleaks
#134:
Commit
dc1070c
pushed by
rivassec
10s
main
main
10s
View workflow file
iam-blast-radius: re-sync vendored web build (secure-iam-lint@7722d21)
Gitleaks
#133:
Commit
745a60f
pushed by
rivassec
13s
main
main
13s
View workflow file
iam-blast-radius: re-sync vendored web build (secure-iam-lint@4cadd9d)
Gitleaks
#132:
Commit
715b9a7
pushed by
rivassec
12s
main
main
12s
View workflow file
iam-blast-radius: re-sync vendored web build (secure-iam-lint@8c5ac83)
Gitleaks
#131:
Commit
af3fe30
pushed by
rivassec
9s
main
main
9s
View workflow file
Add CodeQL analysis workflow configuration
Gitleaks
#130:
Commit
3e446f6
pushed by
rivassec
14s
main
main
14s
View workflow file
guide: index the two newest posts (link-graph guard: orphan inbound l…
Gitleaks
#129:
Commit
2a40a45
pushed by
rivassec
12s
main
main
12s
View workflow file
ci: re-trigger after GitHub Actions startup failures on 2b8a975 (plat…
Gitleaks
#128:
Commit
efaf7f5
pushed by
rivassec
19s
main
main
19s
View workflow file
iam-blast-radius: swap to vendored web build from secure-iam-lint
Gitleaks
#127:
Commit
806e66f
pushed by
rivassec
10s
main
main
10s
View workflow file
iam-blast-radius: capture SARIF/CLI, GitHub Action, and repo-migratio…
Gitleaks
#126:
Commit
645ec30
pushed by
rivassec
15s
main
main
15s
View workflow file
iam-blast-radius: add breadcrumb nav back to site + writeup
Gitleaks
#125:
Commit
4893881
pushed by
rivassec
10s
main
main
10s
View workflow file
post: Testing an IAM Analyzer Against Its Own Claims
Gitleaks
#124:
Commit
6ce940d
pushed by
rivassec
8s
main
main
8s
View workflow file
fix(e2e): resource-context test-69 expects the PUBLIC-ACCESS finding,…
Gitleaks
#123:
Commit
5666577
pushed by
rivassec
14s
main
main
14s
View workflow file
IAM Blast Radius Phase 13: SCP + RCP org-control ceilings (full-famil…
Gitleaks
#122:
Commit
ff71b4f
pushed by
rivassec
9s
main
main
9s
View workflow file
IAM Blast Radius Phase 11: critic fail-closed control + T91 fix + inv…
Gitleaks
#121:
Commit
bb74393
pushed by
rivassec
14s
main
main
14s
View workflow file
plan(phase 11): fold in record-test bundle; add 11C invalid-family fa…
Gitleaks
#120:
Commit
f83c814
pushed by
rivassec
9s
main
main
9s
View workflow file
docs: Phases 11-13 execution plan (critic model, engineer replacement…
Gitleaks
#119:
Commit
ab36ec6
pushed by
rivassec
11s
main
main
11s
View workflow file
docs(release-record): T91 = known conservative false positive (38/39)…
Gitleaks
#118:
Commit
8999808
pushed by
rivassec
13s
main
main
13s
View workflow file
fix(e2e): scope test-70 negative assertion to wildcard rule-names
Gitleaks
#117:
Commit
7a16ccf
pushed by
rivassec
10s
main
main
10s
View workflow file
IAM Blast Radius Phase 10: mandatory family selection + Suite-III clo…
Gitleaks
#116:
Commit
fcbe93b
pushed by
rivassec
12s
main
main
12s
View workflow file
Previous
1
2
3
4
5
6
Next
You can’t perform that action at this time.