Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[security] Activate Github Advanced Security #13

Open
tools-netlify opened this issue Apr 18, 2022 · 0 comments
Open

[security] Activate Github Advanced Security #13

tools-netlify opened this issue Apr 18, 2022 · 0 comments

Comments

@tools-netlify
Copy link
Collaborator

This is an issue generated by github-tools

Description

This repository has exceeded the development grace period, and the repo owner must decide if certain security scan tooling should be activated.
If this repository houses code that touches production in any capacity, code scanning and secret scanning must be enforced. See the SDLC - Secure Coding Guidelines for more details

What do I need to do?

  • You can activate code scanning and/or secret scanning by creating the labels:
    activate-code-scanning: true or activate-secret-scanning: true, respectively.
  • To stop this issue from being recreated, meaning your project does not require these scans, you can conversely create the labels:
    activate-code-scanning: false and/or activate-secret-scanning: false.
  • Once you have created the labels to specify your choice, you can close this issue. If you choose to have code scanning activated, a PR will be opened suggesting a Github Action worflow.
  • If you have issues or questions, please reach out to #internal-security-n-compliance on slack.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

1 participant