1
0
mirror of synced 2025-12-20 10:28:40 -05:00
Commit Graph

2606 Commits

Author SHA1 Message Date
Philip Harrison
b776d7a6ff Fix: allow applies to both sec and version updates (#18979) 2021-04-27 09:23:04 +00:00
Mike McDonald
5520a9cb58 Adding a date for Dependabot shutdown 2021-04-26 19:01:58 -06:00
Sarita Iyer
3bc6dc88a0 Merge branch 'main' into dependabot-preview-shutdown 2021-04-22 11:37:14 -04:00
Sarita Iyer
147b1c3c2b Removed extra period 2021-04-22 11:34:07 -04:00
Mike McDonald
6557a30503 Removing references to shutdown, will add back in when announcing the shutdown 2021-04-22 09:20:00 -06:00
hubwriter
de28b750d1 Configure GITHUB_TOKEN permissions (#18348)
* Add 'permissions' to reference page

* Final set of pre-review changes

* Update content/actions/learn-github-actions/security-hardening-for-github-actions.md

Co-authored-by: Sarah Edwards <skedwards88@github.com>

* Update content/actions/reference/authentication-in-a-workflow.md

Co-authored-by: Sarah Edwards <skedwards88@github.com>

* Update content/actions/reference/authentication-in-a-workflow.md

Co-authored-by: Sarah Edwards <skedwards88@github.com>

* Update content/actions/reference/authentication-in-a-workflow.md

Co-authored-by: Sarah Edwards <skedwards88@github.com>

* Update content/actions/reference/authentication-in-a-workflow.md

Co-authored-by: Sarah Edwards <skedwards88@github.com>

* Update data/reusables/github-actions/workflow-permissions-intro.md

Co-authored-by: Sarah Edwards <skedwards88@github.com>

* Update content/actions/reference/authentication-in-a-workflow.md

Co-authored-by: Sarah Edwards <skedwards88@github.com>

* Update content/actions/reference/authentication-in-a-workflow.md

Co-authored-by: Sarah Edwards <skedwards88@github.com>

* Update data/reusables/github-actions/publish-to-packages-workflow-step.md

Co-authored-by: Sarah Edwards <skedwards88@github.com>

* Update content/actions/guides/publishing-nodejs-packages.md

* Update content/actions/guides/publishing-java-packages-with-gradle.md

* Update content/actions/guides/publishing-java-packages-with-maven.md

* Update content/actions/guides/publishing-nodejs-packages.md

* Update content/actions/reference/authentication-in-a-workflow.md

* Update content/actions/reference/authentication-in-a-workflow.md

* Update content/actions/reference/authentication-in-a-workflow.md

* Update content/actions/reference/authentication-in-a-workflow.md

* Update content/actions/learn-github-actions/security-hardening-for-github-actions.md

* Update content/actions/reference/authentication-in-a-workflow.md

* Update content/actions/reference/workflow-syntax-for-github-actions.md

* Update content/actions/reference/workflow-syntax-for-github-actions.md

* Update content/actions/reference/workflow-syntax-for-github-actions.md

* Update content/github/administering-a-repository/disabling-or-limiting-github-actions-for-a-repository.md

* Update content/github/setting-up-and-managing-organizations-and-teams/disabling-or-limiting-github-actions-for-your-organization.md

* Update content/github/setting-up-and-managing-your-enterprise/enforcing-github-actions-policies-in-your-enterprise-account.md

* Update content/packages/guides/using-github-packages-with-github-actions.md

* Make review comment changes (locally)

* Resolve conflicts caused by remotely made review changes

* Remove translation file changes from PR.

* Remove rogue indentation in Important box

* Remove sentence about default being set to restricted.

This *will* be the case for new repos in future,
but that isn't being shipped at the moment.

* Add permissions to workflow examples (#18393)

Co-authored-by: Sarah Edwards <skedwards88@github.com>
2021-04-20 15:49:38 +00:00
Mike McDonald
2668bb798d Clarifies rebase-strategy behavior (#18865) 2021-04-20 07:14:10 +00:00
Mike McDonald
98f5c4b040 Support for Dependabot private registry hex-organization (#18793) 2021-04-19 15:37:18 +00:00
Felicity Chapman
732e6e537c Revert incorrect change to one line for GH AE (#18808) 2021-04-15 17:39:17 +01:00
Felicity Chapman
348282c5c4 Simplify conditions in articles following the duplication with the move to code-security (#18754) 2021-04-15 14:41:50 +01:00
Mike McDonald
8941ff5ce6 Adding docs on how to use with AWS ECR (#18744)
* Adding docs on how to use with AWS ECR, given customer confusion in https://github.com/dependabot/dependabot-core/issues/3457

* Explicitly refer to docker-registry type

Co-authored-by: Ethan Palm <56270045+ethanpalm@users.noreply.github.com>
2021-04-14 16:45:11 -04:00
Felicity Chapman
8e7aa7ba43 Update the security permission matrix info for GHES users (#18641) 2021-04-13 19:00:45 +01:00
Felicity Chapman
bfef839b25 Fix typo in intro (#18645) 2021-04-08 17:36:57 +01:00
Emily Gould
bcfe4dab3b Make orgs and teams content a top-level doc set (#18593)
* Add new product to products.yml

* Move directory to its new location and rename it

* Update new index page

* Remove old category from GitHub product index

* Add collaboration category

* Add membership category

* Add roles category

* Add teams category

* Add team discussion category

* Add repo access category

* Add project board access category

* Add app management category

* Add org settings category

* Add improved org perms category

* Add category for OAuth app restrictions

* Add org security category

* Add SAML category

* Add SAML access category

* Add git access category

* Add redirects and update links for collaboration category

* Add redirects and update links to team discussions content

* Add redirects and update links to SAML access category

* Update links to org security category and add redirects

* Add redirects for app managers content

* Add redirects for project board category

* Add redirects and update links for the repo access category

* Add redirects for git access category

* Add redirects and update links for membership category

* Add redirects and update links for org settings category

* Fix links

* Add redirects and update links to org access category

* Add redirects and upate links to SSO category

* Add redirects to improved org perms category

* Add redirects and update links to teams category

* Add redirects and update links to oauth apps category

* Fix links

* Fix links

* Fix links
2021-04-08 09:50:13 -05:00
Mike McDonald
e0f2604482 Customer info on how to request an advisory credit (#18356)
* Customer info on how to request an advisory credit

A location for support to point customers to if/when they ask to be credited for a security advisory

* Update content/code-security/security-advisories/editing-a-security-advisory.md

Co-authored-by: Leona B. Campbell <3880403+runleonarun@users.noreply.github.com>

Co-authored-by: Sarah Edwards <skedwards88@github.com>
Co-authored-by: Leona B. Campbell <3880403+runleonarun@users.noreply.github.com>
2021-04-07 10:11:04 +10:00
Sarita Iyer
0406fb7496 Added links to issues on public roadmap 2021-04-05 16:26:17 -04:00
Sarita Iyer
3cd22b3cd1 Fixed procedure 2021-04-05 13:51:03 -04:00
Sarita Iyer
c79ef79d1c Fixing PR name and intro error 2021-04-05 13:30:25 -04:00
Sarita Iyer
a9c218002e Incorporating review suggestions 2021-04-05 12:18:43 -04:00
Sarita Iyer
f1833ddfab adding suggestion from PR 2021-04-02 17:03:24 -04:00
Sarita Iyer
bfc80e2388 fixed wrong url 2021-04-02 16:51:59 -04:00
Sarita Iyer
99df60bea1 reconciled filename to url 2021-04-02 16:38:31 -04:00
Sarita Iyer
3655e0bd9c added frontmatter regarding title to fix failing test 2021-04-02 16:22:41 -04:00
Sarita Iyer
570046244a Merge branch 'dependabot-preview-shutdown' of https://github.com/github/docs-internal into dependabot-preview-shutdown 2021-04-02 15:08:18 -04:00
Sarita Iyer
6fe4f14e3b updated intro to include more information 2021-04-02 15:08:04 -04:00
Sarita Iyer
cca18b183a Merge branch 'main' into dependabot-preview-shutdown 2021-04-02 15:00:35 -04:00
Sarita Iyer
2f66afb086 Adding help page for switch to Github-native Dependabot 2021-04-02 14:54:00 -04:00
Florian Imdahl
483dd1702e Update enabling-and-disabling-version-updates.md 2021-04-01 07:44:10 +02:00
Mike McDonald
4959e2e19c Dependabot Version Updates GA (#18477) 2021-03-31 15:59:30 +01:00
Shati Patel
9e332e9abd [March 31st] Code scanning: Consolidate alerts into one list (#18496) 2021-03-31 11:56:59 +01:00
Shati Patel
fbbbea5090 Clarify where results appear in code scanning (#18462) 2021-03-30 11:29:07 +00:00
Emily Gould
a06ea17a4b Make Building a strong community a top-level doc set (#18396)
* Move directory to new location

* Update new index page

* Create wikis category

* Create blocking category

* Create moderation category

* Make map topics into category indexes

* Create contributions category

* Create template category

* Add redirects

* Add new product to products.yml

* Rename product for URL purposes

* Update links to wiki content

* Update links to maintaining safety articles

* Update links to moderation content

* Remove old category from github product index

* Fix links

* Update links to healthy contributions articles

* Update links to template articles

* Fix links
2021-03-29 16:40:32 -05:00
Ethan Palm
d2eaff2d34 [March 24] Security overview beta (#18341)
* Add 'Security Center' product name variable

* Update index with new Security Center category

* Revert "Update index with new Security Center category"

This reverts commit 74aee4b050639626d2b49d914e4ab7b8c0f63ddc.

* Update Code Security index

* Create index.md for Security Center

* Create Security Center reusables

Beta flag and gated feature

* update AE versioning

* Remove "Security Center" from titles and intros

* Remove "security center" from beta flag

* Add images

* Procedures for filtering and sorting

* Incorporate reviewer feedback

* Incorporate reviewer feedback

Three images will need to be updated

* Update images
2021-03-29 09:25:36 -04:00
mc
ed5f795aec Merge branch 'main' into secret-scanning-ga 2021-03-25 16:40:12 +00:00
mc
a2221fcd0d Merge branch 'main' into 3501-dependency-review-phase1 2021-03-25 08:40:30 +00:00
mc
5e3e23e502 Apply suggestions from code review
Co-authored-by: Shati Patel <42641846+shati-patel@users.noreply.github.com>
2021-03-25 08:35:37 +00:00
Sarah Edwards
71f150ea1c Guide users to schedule workflows at lower load times (#18362) 2021-03-23 21:50:29 +00:00
mc
4eef0aca4f Merge branch 'main' into mc-dependabot-advisory-db 2021-03-23 16:37:22 +00:00
mc
9722588160 Merge branch 'main' into 3501-dependency-review-phase1 2021-03-23 13:35:23 +00:00
mchammer01
f5a41e0653 more work 2021-03-23 12:08:33 +00:00
mchammer01
59e6981b31 remove reference to WhiteSource (again) 2021-03-23 11:17:33 +00:00
mc
39282aef09 Merge branch 'main' into secret-scanning-ga 2021-03-23 08:32:42 +00:00
Felicity Chapman
05a204548a Fix a few broken links introduced by #18278 (#18359) 2021-03-23 09:37:44 +10:00
mchammer01
f5cb6b422e move new article to code security product 2021-03-22 17:13:18 +00:00
mchammer01
d302c824dd review links to dependency graph 2021-03-22 17:12:28 +00:00
mchammer01
529ee36a08 use correct anchor 2021-03-22 14:27:28 +00:00
mchammer01
e6fff7f251 use anchor 2021-03-22 14:19:47 +00:00
mchammer01
c14c03f987 fix broken links 2021-03-22 14:13:57 +00:00
mchammer01
199b19e974 soften language and add note about issue 2021-03-22 12:05:59 +00:00
mchammer01
6790e99d1c address latest batch of comments 2021-03-22 11:47:43 +00:00