GitHub / step-security/create-json issues and pull requests
#137 - Bump ossf/scorecard-action from 2.3.3 to 2.4.2
Pull Request -
State: open - Opened by dependabot[bot] about 2 months ago
Labels: dependencies, github_actions
#136 - Bump github/codeql-action from 2.22.8 to 3.28.19
Pull Request -
State: open - Opened by dependabot[bot] about 2 months ago
Labels: dependencies, github_actions
#135 - Update auto_cherry_pick.yml
Pull Request -
State: closed - Opened by Raj-StepSecurity 2 months ago
#134 - ci: add or update auto-cherry-pick workflow
Pull Request -
State: closed - Opened by Raj-StepSecurity 2 months ago
#133 - ci: add guarddog security scanning workflow
Pull Request -
State: closed - Opened by Raj-StepSecurity 2 months ago
#132 - Bump github/codeql-action from 2.22.8 to 3.28.18
Pull Request -
State: closed - Opened by dependabot[bot] 2 months ago
- 1 comment
Labels: dependencies, github_actions
#131 - fix: Security updates
Pull Request -
State: closed - Opened by github-actions[bot] 2 months ago
- 1 comment
#130 - Bump actions/dependency-review-action from 4.3.2 to 4.7.1
Pull Request -
State: open - Opened by dependabot[bot] 3 months ago
Labels: dependencies, github_actions
#129 - Bump actions/dependency-review-action from 4.3.2 to 4.7.0
Pull Request -
State: closed - Opened by dependabot[bot] 3 months ago
- 1 comment
Labels: dependencies, github_actions
#128 - Harden GitHub Actions Workflow - actions_release.yml
Issue -
State: closed - Opened by stepsecurity-int[bot] 3 months ago
#127 - Bump github/codeql-action from 2.22.8 to 3.28.17
Pull Request -
State: closed - Opened by dependabot[bot] 3 months ago
- 1 comment
Labels: dependencies, github_actions
#126 - Bump axios from 1.8.4 to 1.9.0
Pull Request -
State: open - Opened by dependabot[bot] 3 months ago
Labels: dependencies, javascript
#125 - Bump github/codeql-action from 2.22.8 to 3.28.16
Pull Request -
State: closed - Opened by dependabot[bot] 3 months ago
- 1 comment
Labels: dependencies, github_actions
#124 - Last Release Date
Issue -
State: closed - Opened by Raj-StepSecurity 4 months ago
#123 - Bump github/codeql-action from 2.22.8 to 3.28.15
Pull Request -
State: closed - Opened by dependabot[bot] 4 months ago
- 1 comment
Labels: dependencies, github_actions
#122 - Bump actions/dependency-review-action from 4.3.2 to 4.6.0
Pull Request -
State: closed - Opened by dependabot[bot] 4 months ago
- 1 comment
Labels: dependencies, github_actions
#121 - fix: Security updates
Pull Request -
State: closed - Opened by github-actions[bot] 4 months ago
- 1 comment
#120 - fixed audit fix workflow
Pull Request -
State: closed - Opened by Raj-StepSecurity 4 months ago
#119 - Bump actions/checkout from 4.1.1 to 4.2.2
Pull Request -
State: open - Opened by dependabot[bot] 4 months ago
Labels: dependencies, github_actions
#118 - [StepSecurity] Apply security best practices
Pull Request -
State: closed - Opened by stepsecurity-app[bot] 4 months ago
#117 - Bump github/codeql-action from 2.22.8 to 3.28.13
Pull Request -
State: closed - Opened by dependabot[bot] 4 months ago
- 1 comment
Labels: dependencies, github_actions
#116 - Bump github/codeql-action from 2.22.8 to 3.28.12
Pull Request -
State: closed - Opened by dependabot[bot] 4 months ago
- 1 comment
Labels: dependencies, github_actions
#115 - Bump actions/upload-artifact from 4.4.3 to 4.6.2
Pull Request -
State: open - Opened by dependabot[bot] 4 months ago
Labels: dependencies, github_actions
#114 - Bump axios from 1.7.9 to 1.8.4
Pull Request -
State: closed - Opened by dependabot[bot] 4 months ago
- 1 comment
Labels: dependencies, javascript
#113 - Tracking Last Sync Date
Issue -
State: open - Opened by github-actions[bot] 5 months ago
Labels: sync-tracking
#112 - Bump axios from 1.7.9 to 1.8.3
Pull Request -
State: closed - Opened by dependabot[bot] 5 months ago
- 1 comment
Labels: dependencies, javascript
#111 - auto cherry pick workflow added
Pull Request -
State: closed - Opened by Raj-StepSecurity 5 months ago
#110 - Bump github/codeql-action from 2.22.8 to 3.28.11
Pull Request -
State: closed - Opened by dependabot[bot] 5 months ago
- 1 comment
Labels: dependencies, github_actions
#109 - Bump axios from 1.7.9 to 1.8.2
Pull Request -
State: closed - Opened by dependabot[bot] 5 months ago
- 1 comment
Labels: dependencies, javascript
#108 - Bump axios from 1.7.9 to 1.8.1
Pull Request -
State: closed - Opened by dependabot[bot] 5 months ago
- 1 comment
Labels: dependencies, javascript
#107 - Bump ossf/scorecard-action from 2.3.3 to 2.4.1
Pull Request -
State: closed - Opened by dependabot[bot] 5 months ago
- 1 comment
Labels: dependencies, github_actions
#106 - Bump actions/upload-artifact from 4.4.3 to 4.6.1
Pull Request -
State: closed - Opened by dependabot[bot] 5 months ago
- 1 comment
Labels: dependencies, github_actions
#105 - Bump github/codeql-action from 2.22.8 to 3.28.10
Pull Request -
State: closed - Opened by dependabot[bot] 5 months ago
- 1 comment
Labels: dependencies, github_actions
#104 - Harden GitHub Actions Workflow - test.yml
Issue -
State: closed - Opened by stepsecurity-int[bot] 5 months ago
#103 - Bump @vercel/ncc from 0.38.1 to 0.38.3
Pull Request -
State: open - Opened by dependabot[bot] 5 months ago
Labels: dependencies, javascript
#102 - Bump github/codeql-action from 2.22.8 to 3.28.9
Pull Request -
State: closed - Opened by dependabot[bot] 5 months ago
- 1 comment
Labels: dependencies, github_actions
#101 - Bump actions/dependency-review-action from 4.3.2 to 4.5.0
Pull Request -
State: closed - Opened by dependabot[bot] 5 months ago
- 1 comment
Labels: dependencies, github_actions
#100 - Bump actions/upload-artifact from 4.4.3 to 4.6.0
Pull Request -
State: closed - Opened by dependabot[bot] 5 months ago
- 1 comment
Labels: dependencies, github_actions
#99 - fix: Security updates via npm audit fix
Pull Request -
State: closed - Opened by github-actions[bot] 5 months ago
#98 - workflow to fix vulnerabilities
Pull Request -
State: closed - Opened by Raj-StepSecurity 5 months ago
#97 - Harden GitHub Actions Workflow - test.yml
Issue -
State: closed - Opened by int-stepsecurity-advanced[bot] 9 months ago
Labels: High Severity
#96 - Harden GitHub Actions Workflow - scorecards.yml
Issue -
State: closed - Opened by int-stepsecurity-advanced[bot] 9 months ago
Labels: High Severity
#95 - Harden GitHub Actions Workflow - dependency-review.yml
Issue -
State: closed - Opened by int-stepsecurity-advanced[bot] 9 months ago
Labels: High Severity
#94 - Harden GitHub Actions Workflow - codeql.yml
Issue -
State: closed - Opened by int-stepsecurity-advanced[bot] 9 months ago
Labels: High Severity
#93 - Bump actions/upload-artifact from 3.1.3 to 4.4.3
Pull Request -
State: closed - Opened by dependabot[bot] 10 months ago
- 1 comment
Labels: dependencies, github_actions
#92 - Bump actions/upload-artifact from 3.1.3 to 4.4.2
Pull Request -
State: closed - Opened by dependabot[bot] 10 months ago
- 1 comment
Labels: dependencies, github_actions
#91 - Bump actions/upload-artifact from 3.1.3 to 4.4.1
Pull Request -
State: closed - Opened by dependabot[bot] 10 months ago
- 1 comment
Labels: dependencies, github_actions
#90 - Bump github/codeql-action from 2.22.8 to 3.26.12
Pull Request -
State: closed - Opened by dependabot[bot] 10 months ago
- 1 comment
Labels: dependencies, github_actions
#89 - Bump @actions/core from 1.10.1 to 1.11.1
Pull Request -
State: closed - Opened by dependabot[bot] 10 months ago
- 1 comment
Labels: dependencies, javascript
#88 - Bump github/codeql-action from 2.22.8 to 3.26.11
Pull Request -
State: closed - Opened by dependabot[bot] 10 months ago
- 1 comment
Labels: dependencies, github_actions
#87 - Bump @actions/core from 1.10.1 to 1.11.0
Pull Request -
State: closed - Opened by dependabot[bot] 10 months ago
- 1 comment
Labels: dependencies, javascript
#86 - Create osv-scanner.toml
Pull Request -
State: closed - Opened by varunsh-coder 10 months ago
#85 - Bump github/codeql-action from 2.22.8 to 3.26.10
Pull Request -
State: closed - Opened by dependabot[bot] 10 months ago
- 1 comment
Labels: dependencies, github_actions
#84 - Bump github/codeql-action from 2.22.8 to 3.26.9
Pull Request -
State: closed - Opened by dependabot[bot] 10 months ago
- 1 comment
Labels: dependencies, github_actions
#83 - Bump @vercel/ncc from 0.38.1 to 0.38.2
Pull Request -
State: closed - Opened by dependabot[bot] 10 months ago
- 1 comment
Labels: dependencies, javascript
#82 - Bump github/codeql-action from 2.22.8 to 3.26.8
Pull Request -
State: closed - Opened by dependabot[bot] 10 months ago
- 1 comment
Labels: dependencies, github_actions
#81 - Bump github/codeql-action from 2.22.8 to 3.26.7
Pull Request -
State: closed - Opened by dependabot[bot] 11 months ago
- 1 comment
Labels: dependencies, github_actions
#80 - Bump actions/upload-artifact from 3.1.3 to 4.4.0
Pull Request -
State: closed - Opened by dependabot[bot] 11 months ago
- 1 comment
Labels: dependencies, github_actions
#79 - Bump axios from 1.6.7 to 1.7.7
Pull Request -
State: closed - Opened by dependabot[bot] 11 months ago
- 1 comment
Labels: dependencies, javascript
#78 - Bump github/codeql-action from 2.22.8 to 3.26.6
Pull Request -
State: closed - Opened by dependabot[bot] 11 months ago
- 1 comment
Labels: dependencies, github_actions
#77 - Bump axios from 1.6.7 to 1.7.5
Pull Request -
State: closed - Opened by dependabot[bot] 11 months ago
- 1 comment
Labels: dependencies, javascript
#76 - Bump github/codeql-action from 2.22.8 to 3.26.5
Pull Request -
State: closed - Opened by dependabot[bot] 11 months ago
- 1 comment
Labels: dependencies, github_actions
#75 - Bump github/codeql-action from 2.22.8 to 3.26.4
Pull Request -
State: closed - Opened by dependabot[bot] 11 months ago
- 1 comment
Labels: dependencies, github_actions
#74 - Bump github/codeql-action from 2.22.8 to 3.26.3
Pull Request -
State: closed - Opened by dependabot[bot] 11 months ago
- 1 comment
Labels: dependencies, github_actions
#73 - Bump github/codeql-action from 2.22.8 to 3.26.2
Pull Request -
State: closed - Opened by dependabot[bot] 12 months ago
- 1 comment
Labels: dependencies, github_actions
#72 - Bump axios from 1.6.7 to 1.7.4
Pull Request -
State: closed - Opened by dependabot[bot] 12 months ago
- 1 comment
Labels: dependencies, javascript
#71 - Bump github/codeql-action from 2.22.8 to 3.26.1
Pull Request -
State: closed - Opened by dependabot[bot] 12 months ago
- 1 comment
Labels: dependencies, github_actions
#70 - Bump actions/upload-artifact from 3.1.3 to 4.3.6
Pull Request -
State: closed - Opened by dependabot[bot] 12 months ago
- 1 comment
Labels: dependencies, github_actions
#69 - Bump github/codeql-action from 2.22.8 to 3.26.0
Pull Request -
State: closed - Opened by dependabot[bot] 12 months ago
- 1 comment
Labels: dependencies, github_actions
#68 - Bump actions/upload-artifact from 3.1.3 to 4.3.5
Pull Request -
State: closed - Opened by dependabot[bot] 12 months ago
- 1 comment
Labels: dependencies, github_actions
#67 - Bump axios from 1.6.7 to 1.7.3
Pull Request -
State: closed - Opened by dependabot[bot] 12 months ago
- 1 comment
Labels: dependencies, javascript
#66 - Bump github/codeql-action from 2.22.8 to 3.25.15
Pull Request -
State: closed - Opened by dependabot[bot] about 1 year ago
- 1 comment
Labels: dependencies, github_actions
#65 - Bump ossf/scorecard-action from 2.3.3 to 2.4.0
Pull Request -
State: closed - Opened by dependabot[bot] about 1 year ago
- 1 comment
Labels: dependencies, github_actions
#64 - Bump github/codeql-action from 2.22.8 to 3.25.14
Pull Request -
State: closed - Opened by dependabot[bot] about 1 year ago
- 1 comment
Labels: dependencies, github_actions
#63 - Bump github/codeql-action from 2.22.8 to 3.25.13
Pull Request -
State: closed - Opened by dependabot[bot] about 1 year ago
- 1 comment
Labels: dependencies, github_actions
#62 - Update and rename release.yml to actions_release.yml
Pull Request -
State: closed - Opened by shubham-stepsecurity about 1 year ago
#61 - Bump github/codeql-action from 2.22.8 to 3.25.12
Pull Request -
State: closed - Opened by dependabot[bot] about 1 year ago
- 1 comment
Labels: dependencies, github_actions
#60 - Bump actions/dependency-review-action from 4.3.2 to 4.3.4
Pull Request -
State: closed - Opened by dependabot[bot] about 1 year ago
- 1 comment
Labels: dependencies, github_actions
#59 - Bump actions/upload-artifact from 3.1.3 to 4.3.4
Pull Request -
State: closed - Opened by dependabot[bot] about 1 year ago
- 1 comment
Labels: dependencies, github_actions
#58 - Bump node version
Pull Request -
State: closed - Opened by shubham-stepsecurity about 1 year ago
#57 - Bump follow-redirects from 1.15.5 to 1.15.6
Pull Request -
State: closed - Opened by dependabot[bot] about 1 year ago
Labels: dependencies, javascript
#56 - Bump undici from 5.28.3 to 5.28.4
Pull Request -
State: closed - Opened by dependabot[bot] about 1 year ago
Labels: dependencies, javascript
#55 - Bump axios from 1.6.7 to 1.7.2
Pull Request -
State: closed - Opened by dependabot[bot] about 1 year ago
- 1 comment
Labels: dependencies, javascript
#54 - Bump github/codeql-action from 2.22.8 to 3.25.6
Pull Request -
State: closed - Opened by dependabot[bot] about 1 year ago
- 1 comment
Labels: dependencies, github_actions
#53 - Bump axios from 1.6.7 to 1.7.1
Pull Request -
State: closed - Opened by dependabot[bot] about 1 year ago
- 1 comment
Labels: dependencies, javascript
#52 - Bump axios from 1.6.7 to 1.7.0
Pull Request -
State: closed - Opened by dependabot[bot] about 1 year ago
- 1 comment
Labels: dependencies, javascript
#51 - Bump github/codeql-action from 2.22.8 to 3.25.5
Pull Request -
State: closed - Opened by dependabot[bot] about 1 year ago
- 1 comment
Labels: dependencies, github_actions
#50 - Bump ossf/scorecard-action from 2.3.1 to 2.3.3
Pull Request -
State: closed - Opened by dependabot[bot] about 1 year ago
Labels: dependencies, github_actions
#49 - Bump github/codeql-action from 2.22.8 to 3.25.4
Pull Request -
State: closed - Opened by dependabot[bot] about 1 year ago
- 1 comment
Labels: dependencies, github_actions
#48 - Bump actions/dependency-review-action from 2.5.1 to 4.3.2
Pull Request -
State: closed - Opened by dependabot[bot] about 1 year ago
Labels: dependencies, github_actions
#47 - Bump actions/dependency-review-action from 2.5.1 to 4.3.1
Pull Request -
State: closed - Opened by dependabot[bot] over 1 year ago
- 1 comment
Labels: dependencies, github_actions
#46 - Bump github/codeql-action from 2.22.8 to 3.25.3
Pull Request -
State: closed - Opened by dependabot[bot] over 1 year ago
- 1 comment
Labels: dependencies, github_actions
#45 - Bump actions/upload-artifact from 3.1.3 to 4.3.3
Pull Request -
State: closed - Opened by dependabot[bot] over 1 year ago
- 1 comment
Labels: dependencies, github_actions
#44 - Bump github/codeql-action from 2.22.8 to 3.25.2
Pull Request -
State: closed - Opened by dependabot[bot] over 1 year ago
- 1 comment
Labels: dependencies, github_actions
#43 - Bump actions/upload-artifact from 3.1.3 to 4.3.2
Pull Request -
State: closed - Opened by dependabot[bot] over 1 year ago
- 1 comment
Labels: dependencies, github_actions
#42 - Bump github/codeql-action from 2.22.8 to 3.25.1
Pull Request -
State: closed - Opened by dependabot[bot] over 1 year ago
- 1 comment
Labels: dependencies, github_actions
#41 - Bump github/codeql-action from 2.22.8 to 3.25.0
Pull Request -
State: closed - Opened by dependabot[bot] over 1 year ago
- 1 comment
Labels: dependencies, github_actions
#40 - Bump github/codeql-action from 2.22.8 to 3.24.10
Pull Request -
State: closed - Opened by dependabot[bot] over 1 year ago
- 1 comment
Labels: dependencies, github_actions
#39 - Bump actions/dependency-review-action from 2.5.1 to 4.2.5
Pull Request -
State: closed - Opened by dependabot[bot] over 1 year ago
- 1 comment
Labels: dependencies, github_actions
#38 - Bump github/codeql-action from 2.22.8 to 3.24.9
Pull Request -
State: closed - Opened by dependabot[bot] over 1 year ago
- 1 comment
Labels: dependencies, github_actions