1
0
mirror of synced 2025-12-21 10:57:10 -05:00
Commit Graph

2315 Commits

Author SHA1 Message Date
William Bartholomew
42be08a28a [10/20] Add Python Poetry to list of supported ecosystems (#22208)
Co-authored-by: mc <42146119+mchammer01@users.noreply.github.com>
2021-10-20 18:57:05 +00:00
Sarita Iyer
5d0d6b7cdb merge from main 2021-10-19 17:05:04 -04:00
Matt Pollard
16c8801dbc Merge branch 'main' into jules-4795 2021-10-19 12:26:41 +02:00
mc
7a6f46b1e6 Fix links to SARIF 2.1.0 json file and a couple of links for GHEC (#22233) 2021-10-18 20:25:06 +00:00
Jules Parker
13edfd8788 Merge branch 'main' into jules-4795 2021-10-18 15:11:48 +02:00
Zack Fernandes
c57bc5f972 Don't mention the Security tab below GHES 3.1 (#22210)
* Don't mention the Security tab below GHES 3.1
2021-10-18 10:46:05 +01:00
Megan Christudas
14d80f1991 GHAS adoption & onboarding (#21502)
* new article scaffolding

* Add scaffolding

* Migrate content for overview article

* Add placeholder notes and migrate over some more content

* First draft of updates to existing docs

* Add H2 headers to the article

* Draft of phase 0 content

* Update phase 0 with more drafting

* Fix subheaders and table formatting

* Add unedited and slightly tweaked source material

* Current draft of reworked content

* Refactor everything

* Add best practices and some partnership details

* Touch-ups

* Touch up intro and create a phased approaches reusable

* Fix the intro

* Move reusable

* Add image for GHES versions

* Fix links

* Add HTML note around links that need to be versioned for GHEC once the GHEC version releases

* Fix reusable

* Tidy up session

* Versioning around the links

* migrate this content to another PR for easier reviewing

* Add HTML note about versioning for GHEC

* Revamp intro

* Add product variables

* Less is more in the intro

* Fix the beginning

* Copy-edits for first half

* Add Markdown-friendly bullet points

* unclear shift direction

* Distinguish the rollout team roles

* More active language & cut the note

* Maybe too wordy

* Edit facts section

* Update the article path to fix tests

* Add product variables for professional services

* Another revision

* More tidying

* Fix spacing

* Apply suggestions from code review

Co-authored-by: Felicity Chapman <felicitymay@github.com>

* Apply suggestions from code review

Co-authored-by: Felicity Chapman <felicitymay@github.com>

* Apply @felicitymay's input

* Apply suggestions from code review

Co-authored-by: Rachael Sewell <rachmari@github.com>

* Fix link test by adding HTML note around GHEC only article for now

* Apply @felicitymay's stellar input 🌠

Co-authored-by: Felicity Chapman <felicitymay@github.com>

* Apply suggestions from code review

* Apply suggestions from code review

* GitHub Advanced Security "Deploying" guide (#22114)

* Add draft content

* Add gated features reusable

* Revise draft

* Revamp steps of phase 0

* Replace goals section with intro text

* More revising

* Standardize headers with sentence case & remove overview subheader

* Phase 0 streamlined

* Fix intro and GHAS Guidebook reference

* Fix reusable

* Phase 1 💖

* Phase 2 tightened

* Standardize on subheaders

* Update phase 3

* Add product variable

* Fix some links to fix the tests

* Apply @felicitymay's stellar input 🌠

Co-authored-by: Felicity Chapman <felicitymay@github.com>

* Apply Felicity's input

* Use more GHAS to ease the reading load

* Update resusable

* Replacing  "organization"

* Add dependency review verisoning

Co-authored-by: “jmarlena” <“jmarlena@github.com”>
Co-authored-by: Felicity Chapman <felicitymay@github.com>

* Remove draft notes for appendix links

* Fix subheader

* Deploying before enabling GHAS

* Replace organization

* Fix variables

* Add GHEC & GHES versioning

* not sure why this space is a commit

* Apply suggestions from code review

Co-authored-by: Felicity Chapman <felicitymay@github.com>

* Remove ghec versioning we don't need

* Add repo reference

* Remove versioning note ftw

* Apply suggestions from code review

Co-authored-by: Ethan Palm <56270045+ethanpalm@users.noreply.github.com>

* Markdown, I love you

Co-authored-by: Megan Christudas <meganchristudas@Megans-MBP.fios-router.home>
Co-authored-by: jmarlena <jmarlena@github.com>
Co-authored-by: “jmarlena” <“jmarlena@github.com”>
Co-authored-by: jmarlena <6732600+jmarlena@users.noreply.github.com>
Co-authored-by: Felicity Chapman <felicitymay@github.com>
Co-authored-by: Rachael Sewell <rachmari@github.com>
Co-authored-by: Ethan Palm <56270045+ethanpalm@users.noreply.github.com>
2021-10-15 17:18:28 -07:00
Laura Coursen
8f964ea2cb GHEC version (#20947)
Co-authored-by: Matt Pollard <mattpollard@users.noreply.github.com>
Co-authored-by: Grace Park <gracepark@github.com>
Co-authored-by: Steve Guntrip <12534592+stevecat@users.noreply.github.com>
Co-authored-by: Robert Sese <sese@github.com>
Co-authored-by: Peter Bengtsson <peterbe@github.com>
Co-authored-by: Rachael Sewell <rachmari@github.com>
2021-10-15 15:41:33 -05:00
Robert Sese
03d469e972 Merge branch 'main' into fix-typos 2021-10-12 20:16:34 -05:00
Sarita Iyer
abef50265b added reusables, feature flag and other updates 2021-10-12 16:05:48 -04:00
Sarita Iyer
b1c06ca1fb Merge branch 'main' into organization-roles 2021-10-12 13:45:08 -04:00
Sarita Iyer
0b7f334c4c Revert "merge from main"
This reverts commit fd4ad9f889.
2021-10-12 13:38:07 -04:00
Sarita Iyer
fd4ad9f889 merge from main 2021-10-12 13:22:49 -04:00
mc
a208ce92e4 [GHAE post-M2] Dependabot alerts (+ Dependency graph) beta (#21342)
Added Dependabot alerts, Dependency graph and Dependency review to GHAE (feature flags)
2021-10-12 11:29:23 +00:00
Sam Partington
ee4a2301c3 Add details of Code Scanning's categorisation labels (#22079)
* Add details of Code Scanning's categorization labels
2021-10-12 07:59:50 +00:00
Sarita Iyer
dd9d160015 security manager updates 2021-10-11 16:12:16 -04:00
Jules Parker
a89cf07767 Merge branch 'main' into jules-4795 2021-10-11 08:04:03 +02:00
rhysd
407b7c96cd Fix several typos in documents 2021-10-11 12:26:17 +09:00
Sarita Iyer
95e124efe9 Merge branch 'main' into organization-roles 2021-10-10 10:39:28 -04:00
Edoardo Pirovano
f0a41930ae Update documentation to reflect changes to database analyze (#21620)
* Update documentation to reflect changes to `database analyze`

* Update content/code-security/code-scanning/using-codeql-code-scanning-with-your-existing-ci-system/configuring-codeql-cli-in-your-ci-system.md

Co-authored-by: Ethan Palm <56270045+ethanpalm@users.noreply.github.com>

Co-authored-by: Ethan Palm <56270045+ethanpalm@users.noreply.github.com>
2021-10-07 16:52:49 +00:00
Jules Parker
a6f487ae7c merging main into branch and resolving conflicts 2021-10-07 15:02:14 +02:00
Jules Parker
202749a8fc update links and redirects for working with forks and creating and editing commits 2021-10-07 11:58:49 +02:00
Jules Parker
19c7c0ab74 update redirects and links for reviewing changes in prs 2021-10-07 11:09:32 +02:00
Sarita Iyer
6d11b996ef small wording change 2021-10-06 16:34:04 -04:00
Sarita Iyer
f3ccd6d843 fix some wording 2021-10-06 15:57:36 -04:00
Sarita Iyer
20bf468f73 Merge branch 'main' into code-scanning-on-push-updates 2021-10-06 15:19:24 -04:00
Sarita Iyer
199af2fd6e additional changes from review feedback 2021-10-06 15:13:35 -04:00
Sarita Iyer
61ac146441 Apply initial suggestions from code review
Co-authored-by: Ethan Palm <56270045+ethanpalm@users.noreply.github.com>
2021-10-06 11:33:17 -04:00
Jules Parker
c98f2eb4d0 update links and redirects for incorp. changes from pr 2021-10-06 16:15:23 +02:00
Sam Partington
ab2d6b99b8 Add note about combining ref-related filters for Code Scanning alerts (#21801) 2021-10-06 08:55:26 +00:00
mc
6f2de784ac Code Scanning "Analysis not found" message improvements (#21871)
* update for message improvements
2021-10-05 10:29:00 +00:00
Matt Pollard
307e8094ec Backport updated content from GitHub AE M2 megabranch and version for ghae-next (#21525) 2021-10-04 16:11:57 +00:00
Mariam
ea4bd2d66b Increased secret scanning max custom pattern limit (#21851)
* Increased secret scanning max custom pattern limit
2021-10-04 10:35:04 +00:00
mc
4245772967 [Ready to ship] - dotcom, Q4 FY21 - Dependency review (GA) (#18959)
* update for GA (Dependency Review)
2021-09-30 16:38:43 +01:00
Sarita Iyer
44c4f000f2 Merge branch 'main' into code-scanning-on-push-updates 2021-09-29 16:57:03 -04:00
Sarita Iyer
8df155a7e6 Added info on improvements to push trigger and comparisons 2021-09-29 16:22:20 -04:00
Sam Partington
be7e49779b Add explanation of how code scanning filters are combined (#21750)
* Add explanation of how code scanning filters are combined
2021-09-28 13:35:00 +00:00
Laura Coursen
7fca18c957 Add 💅 2021-09-27 15:46:46 -05:00
Laura Coursen
7e4425c33f Rename permissions level article 2021-09-27 15:35:07 -05:00
Laura Coursen
36377e9cc6 Rename correctly this time 2021-09-27 15:31:42 -05:00
Laura Coursen
bc4eebaf93 Update links 2021-09-27 15:30:51 -05:00
Sam Partington
4e0b83db24 Add an explanatory section about what Code Scanning's "autofilter:true" does (#21644) 2021-09-27 14:32:32 +00:00
Jon Moroney
9a491b265c Reorder sections to make it more clear to the reader that requesting a CVE number is optional (#10210)
Co-authored-by: Robert Schultheis <rschultheis@github.com>
Co-authored-by: Lucas Costi <lucascosti@users.noreply.github.com>
2021-09-27 01:14:45 +00:00
Anna Rosenthal
06bea1ca89 Add go.sum to Supported Package Ecosystems (#10138)
Co-authored-by: Lucas Costi <lucascosti@users.noreply.github.com>
2021-09-24 00:08:14 +00:00
Ethan Palm
1b151696f0 Indirect build tracing for CodeQL CLI (#21442)
* Add information about using indirect build tracing

* Version info for recommending CodeQL CLI vs Runner

* Add reviewer feedback

* Remove extraneous liquid tag

* update note with info about CodeQL runner deprecation

* re-add info removed by merging in `main` and fixing merge conflicts

* add deprecation note for GHES 3.2 versioned content
2021-09-21 16:14:34 -07:00
AlonaHlobina
5f01af06ec Update beta-codeql-runner.md (#21605)
* Update beta-codeql-runner.md

* Rename beta-codeql-runner.md to deprecation-codeql-runner.md

* update reusable name

* Update about-codeql-code-scanning-in-your-ci-system.md

* Update running-codeql-code-scanning-in-a-container.md

* Update uploading-a-sarif-file-to-github.md

* Update sarif-support-for-code-scanning.md

* Update running-codeql-runner-in-your-ci-system.md

* Update configuring-codeql-cli-in-your-ci-system.md

* Update configuring-codeql-runner-in-your-ci-system.md

* Update running-codeql-runner-in-your-ci-system.md

* Update content/github/finding-security-vulnerabilities-and-errors-in-your-code/using-codeql-code-scanning-with-your-existing-ci-system/troubleshooting-codeql-code-scanning-in-your-ci-system.md

* Update configuring-codeql-cli-in-your-ci-system.md

* Apply suggestions from code review

Co-authored-by: Steve Guntrip <12534592+stevecat@users.noreply.github.com>

* update codeql runner reusable

* add new article about runner to cli migration

* fix typo in new article title

* Update deprecation-codeql-runner.md

* Update deprecation-codeql-runner.md

* Apply suggestions from code review

* fix failing test

* fix failing test

* Update versioning to fix failing test

* add `codeql-cli-binaries` to allow list

Co-authored-by: James Fletcher <42464962+jf205@users.noreply.github.com>
Co-authored-by: Felicity Chapman <felicitymay@github.com>
Co-authored-by: Steve Guntrip <12534592+stevecat@users.noreply.github.com>
Co-authored-by: Ethan Palm <56270045+ethanpalm@users.noreply.github.com>
2021-09-21 13:12:11 -07:00
Sarah Edwards
61809d44a3 Correct GHAE versioning for dependabot (#21539)
Co-authored-by: Felicity Chapman <felicitymay@github.com>
2021-09-17 15:49:09 +00:00
Mariam
646e0ee9da Secret scanning custom patterns edit for GA release (#21574) 2021-09-17 16:01:17 +01:00
Laura Coursen
7eb1549105 Add 💅 2021-09-16 14:58:18 -05:00
Justin Wong
4bc0f3e40e Update default schedule time as random
As per https://github.blog/changelog/2021-06-16-dependabot-now-schedules-version-updates-uniformly/
2021-09-16 09:46:03 +01:00