Skip to content

CanarysPlayground/ghcap-github

 
 

Repository files navigation

GitHub Advanced Security Bootcamp

This bootcamp is designed to help familiarize you with GitHub Advanced Security (GHAS) so that you can better understand how to use it in your own repositories.

Prerequisites

🏫 Agenda

We will go over the following topics:

Exercise 1: Dependabot: link
  • Enabling Dependabot alerts
  • Reviewing the dependency graph
  • Viewing and managing results
  • Enabling Dependabot security updates
  • Configuring Dependabot security updates
  • Working with Dependency Review
Exercise 2: Secret scanning: link
  • Enabling secret scanning
  • Viewing and managing results
  • Excluding files from secret scanning
  • Custom patterns for secret scanning
  • Managing access to alerts
Exercise 3: Code scanning: link
  • Enabling code scanning
  • Reviewing any failed analysis jobs
  • Using context and expressions to modify build
  • Reviewing and managing results
  • Triaging a result in a PR

📚 Resources

About

demo

Resources

License

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages

  • Java 30.6%
  • Go 24.9%
  • Less 20.3%
  • Vue 10.0%
  • JavaScript 8.3%
  • Python 3.8%
  • Other 2.1%