Skip to content
Navigation Menu
Sign in
Appearance settings
Platform
AI CODE CREATION
GitHub Copilot
Write better code with AI
GitHub Copilot app
Direct agents from issue to merge
MCP Registry
Integrate external tools
DEVELOPER WORKFLOWS
Actions
Automate any workflow
Codespaces
Instant dev environments
Issues
Plan and track work
Code Review
Manage code changes
Code Quality
Enforce quality at merge
APPLICATION SECURITY
GitHub Advanced Security
Find and fix vulnerabilities
Code security
Secure your code as you build
Secret protection
Stop leaks before they start
EXPLORE
Why GitHub
Documentation
Blog
Changelog
Marketplace
View all features
Solutions
BY COMPANY SIZE
Enterprises
Small and medium teams
Startups
Nonprofits
BY USE CASE
App Modernization
DevSecOps
DevOps
CI/CD
View all use cases
BY INDUSTRY
Healthcare
Financial services
Manufacturing
Government
View all industries
View all solutions
Resources
EXPLORE BY TOPIC
AI
Software Development
DevOps
Security
View all topics
EXPLORE BY TYPE
Customer stories
Events & webinars
Ebooks & reports
Business insights
GitHub Skills
SUPPORT & SERVICES
Documentation
Customer support
Community forum
Trust center
Partners
View all resources
Open Source
COMMUNITY
GitHub Sponsors
Fund open source developers
PROGRAMS
Security Lab
Maintainer Community
Accelerator
GitHub Stars
Archive Program
REPOSITORIES
Topics
Trending
Collections
Enterprise
ENTERPRISE SOLUTIONS
Enterprise platform
AI-powered developer platform
AVAILABLE ADD-ONS
GitHub Advanced Security
Enterprise-grade security features
Copilot for Business
Enterprise-grade AI features
Premium Support
Enterprise-grade 24/7 support
Pricing
Search
/
Sign in
Sign up
Appearance settings
You signed in with another tab or window.
Reload
to refresh your session.
You signed out in another tab or window.
Reload
to refresh your session.
You switched accounts on another tab or window.
Reload
to refresh your session.
Dismiss alert
{{ message }}
Uh oh!
There was an error while loading.
Please reload this page
.
ossf
/
scorecard
Public
Notifications
You must be signed in to change notification settings
Fork
708
Star
5.7k
Code
Issues
387
Pull requests
66
Discussions
Actions
Projects
Security and quality
0
Insights
Additional navigation options
Code
Issues
Pull requests
Discussions
Actions
Projects
Security and quality
Insights
Actions: ossf/scorecard
Actions
All workflows
Workflows
build
build
Close stale issues
Close stale issues
CodeQL
CodeQL
Copilot
Copilot
Copilot code review
Copilot code review
Dependabot Updates
Dependabot Updates
Dependency Graph
Dependency Graph
Dependency Review
Dependency Review
docker-build
docker-build
gitlab-tests
gitlab-tests
Show more workflows...
Management
Caches
Deployments
gitlab-tests
gitlab-tests
Actions
Loading...
Loading
Sorry, something went wrong.
Uh oh!
There was an error while loading.
Please reload this page
.
will be ignored since log searching is not yet available
Show workflow options
Create status badge
Create status badge
Loading
Uh oh!
There was an error while loading.
Please reload this page
.
gitlab.yml
will be ignored since log searching is not yet available
934 workflow runs
934 workflow runs
Event
Filter by Event
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching events.
Status
Filter by Status
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching statuses.
Branch
Filter by Branch
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching branches.
Actor
Filter by Actor
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching users.
fix: match selected security policies by exact path
gitlab-tests
#5167:
Pull request
#5199
opened by
bilaldeveloper4312
-1s
bilaldeveloper4312:fix/security-policy-exact-path
bilaldeveloper4312:fix/security-policy-exact-path
-1s
View #5199
View workflow file
🐛 Fall back when Azure language metrics are unavailable
gitlab-tests
#5166:
Pull request
#5130
synchronize by
JamieMagee
13m 48s
JamieMagee:jamiemagee/azure-language-fallback
JamieMagee:jamiemagee/azure-language-fallback
13m 48s
View #5130
View workflow file
✨ feat: factor private vulnerability reporting into Security-Policy check
gitlab-tests
#5165:
Pull request
#5163
synchronize by
bilaldeveloper4312
Action required
bilaldeveloper4312:feat/private-vuln-reporting
bilaldeveloper4312:feat/private-vuln-reporting
Action required
View #5163
View workflow file
🌱 Bump github.com/go-git/go-git/v5 from 5.19.1 to 5.19.2
gitlab-tests
#5164:
Pull request
#5167
synchronize by
dependabot
Bot
12m 3s
dependabot/go_modules/github.com/go-git/go-git/v5-5.19.2
dependabot/go_modules/github.com/go-git/go-git/v5-5.19.2
12m 3s
View #5167
View workflow file
🌱 Bump github.com/sigstore/sigstore-go from 1.1.4 to 1.2.1 in /tools
gitlab-tests
#5163:
Pull request
#5151
synchronize by
dependabot
Bot
11m 34s
dependabot/go_modules/tools/github.com/sigstore/sigstore-go-1.2.1
dependabot/go_modules/tools/github.com/sigstore/sigstore-go-1.2.1
11m 34s
View #5151
View workflow file
🌱 Bump github.com/go-git/go-git/v5 from 5.18.0 to 5.19.2 in /tools
gitlab-tests
#5162:
Pull request
#5166
synchronize by
dependabot
Bot
11m 24s
dependabot/go_modules/tools/github.com/go-git/go-git/v5-5.19.2
dependabot/go_modules/tools/github.com/go-git/go-git/v5-5.19.2
11m 24s
View #5166
View workflow file
fix(packaging): split ko matcher so either setup-ko spelling is detected
gitlab-tests
#5161:
Pull request
#5195
opened by
rylena
Action required
rylena:fix/packaging-ko-matcher
rylena:fix/packaging-ko-matcher
Action required
View #5195
View workflow file
🐛 Fix probe definition loading for fuzz builds
gitlab-tests
#5160:
Pull request
#5194
opened by
xingyaner
Action required
xingyaner:fix-fuzzing
xingyaner:fix-fuzzing
Action required
View #5194
View workflow file
📖 Clarify shell script pinned dependencies
gitlab-tests
#5159:
Pull request
#5154
synchronize by
rylena
Action required
rylena:docs-pinned-deps-shell-hash
rylena:docs-pinned-deps-shell-hash
Action required
View #5154
View workflow file
🐛 Fall back when check suites are truncated
gitlab-tests
#5158:
Pull request
#5150
synchronize by
ECD5A
Action required
ECD5A:fix/checksuite-truncation-fallback
ECD5A:fix/checksuite-truncation-fallback
Action required
View #5150
View workflow file
🐛 Fall back to REST when GraphQL checkSuites is truncated
gitlab-tests
#5157:
Pull request
#5192
opened by
daichunghy
-1s
daichunghy:fix/checksuite-graphql-truncation
daichunghy:fix/checksuite-graphql-truncation
-1s
View #5192
View workflow file
✨ Add experimental Changelog check
gitlab-tests
#5156:
Pull request
#5017
synchronize by
kehoecj
Action required
kehoecj:add-changelog-check
kehoecj:add-changelog-check
Action required
View #5017
View workflow file
🐛 Recognize GitHub self-repository action references
gitlab-tests
#5155:
Pull request
#5191
synchronize by
trask
12m 5s
trask:trask-fix-self-action-pinning
trask:trask-fix-self-action-pinning
12m 5s
View #5191
View workflow file
🐛 Recognize GitHub self-repository action references
gitlab-tests
#5154:
Pull request
#5191
opened by
trask
11m 44s
trask:trask-fix-self-action-pinning
trask:trask-fix-self-action-pinning
11m 44s
View #5191
View workflow file
fix: improve error messages for branch-protection and pip-install checks
gitlab-tests
#5153:
Pull request
#5174
synchronize by
rickgcv
Action required
rickgcv:fix/improve-error-messages-branch-protection-pip
rickgcv:fix/improve-error-messages-branch-protection-pip
Action required
View #5174
View workflow file
🐛 Use GitLab MR diff head SHA for CI statuses
gitlab-tests
#5152:
Pull request
#5176
synchronize by
rylena
Action required
rylena:fix-gitlab-mr-head-sha
rylena:fix-gitlab-mr-head-sha
Action required
View #5176
View workflow file
🌱 Bump golang.org/x/crypto from 0.50.0 to 0.52.0
gitlab-tests
#5151:
Pull request
#5120
synchronize by
dependabot
Bot
12m 16s
dependabot/go_modules/golang.org/x/crypto-0.52.0
dependabot/go_modules/golang.org/x/crypto-0.52.0
12m 16s
View #5120
View workflow file
🌱 Bump github.com/moby/buildkit from 0.26.3 to 0.31.1
gitlab-tests
#5150:
Pull request
#5190
opened by
dependabot
Bot
2m 44s
dependabot/go_modules/github.com/moby/buildkit-0.31.1
dependabot/go_modules/github.com/moby/buildkit-0.31.1
2m 44s
View #5190
View workflow file
🐛 don't forward gitlab PRIVATE-TOKEN across cross-host redirects
gitlab-tests
#5149:
Pull request
#5189
opened by
Sahana2524
11m 53s
Sahana2524:gitlab-token-redirect
Sahana2524:gitlab-token-redirect
11m 53s
View #5189
View workflow file
🐛 Detect committer context in dangerous workflows
gitlab-tests
#5148:
Pull request
#5098
synchronize by
omobolajiadeyan
Action required
omobolajiadeyan:fix/dangerous-workflow-committer-inputs
omobolajiadeyan:fix/dangerous-workflow-committer-inputs
Action required
View #5098
View workflow file
🐛 Detect committer context in dangerous workflows
gitlab-tests
#5147:
Pull request
#5098
synchronize by
omobolajiadeyan
Action required
omobolajiadeyan:fix/dangerous-workflow-committer-inputs
omobolajiadeyan:fix/dangerous-workflow-committer-inputs
Action required
View #5098
View workflow file
🐛 Fix ko matcher in Packaging check to accept either setup-ko spelling
gitlab-tests
#5146:
Pull request
#5134
synchronize by
arcaven
Action required
ArcavenAE:fix/packaging-ko-matcher
ArcavenAE:fix/packaging-ko-matcher
Action required
View #5134
View workflow file
✨ Detect step-security/goreleaser-action in Packaging check
gitlab-tests
#5145:
Pull request
#5132
synchronize by
arcaven
Action required
ArcavenAE:feat/packaging-step-security-goreleaser
ArcavenAE:feat/packaging-step-security-goreleaser
Action required
View #5132
View workflow file
✨ Add hasSelfHostedRunners probe
gitlab-tests
#5144:
Pull request
#5187
opened by
ChrisJr404
Action required
ChrisJr404:probe-self-hosted-runners
ChrisJr404:probe-self-hosted-runners
Action required
View #5187
View workflow file
🌱 Bump software.sslmate.com/src/go-pkcs12 from 0.7.0 to 0.7.2 in /tools
gitlab-tests
#5143:
Pull request
#5186
opened by
dependabot
Bot
11m 6s
dependabot/go_modules/tools/software.sslmate.com/src/go-pkcs12-0.7.2
dependabot/go_modules/tools/software.sslmate.com/src/go-pkcs12-0.7.2
11m 6s
View #5186
View workflow file
Previous
1
2
3
4
5
…
37
38
Next
You can’t perform that action at this time.