Skip to content
Navigation Menu
Sign in
Appearance settings
Platform
AI CODE CREATION
GitHub Copilot
Write better code with AI
GitHub Copilot app
Direct agents from issue to merge
MCP Registry
Integrate external tools
DEVELOPER WORKFLOWS
Actions
Automate any workflow
Codespaces
Instant dev environments
Issues
Plan and track work
Code Review
Manage code changes
Code Quality
Enforce quality at merge
APPLICATION SECURITY
GitHub Advanced Security
Find and fix vulnerabilities
Code security
Secure your code as you build
Secret protection
Stop leaks before they start
EXPLORE
Why GitHub
Documentation
Blog
Changelog
Marketplace
View all features
Solutions
BY COMPANY SIZE
Enterprises
Small and medium teams
Startups
Nonprofits
BY USE CASE
App Modernization
DevSecOps
DevOps
CI/CD
View all use cases
BY INDUSTRY
Healthcare
Financial services
Manufacturing
Government
View all industries
View all solutions
Resources
EXPLORE BY TOPIC
AI
Software Development
DevOps
Security
View all topics
EXPLORE BY TYPE
Customer stories
Events & webinars
Ebooks & reports
Business insights
GitHub Skills
SUPPORT & SERVICES
Documentation
Customer support
Community forum
Trust center
Partners
View all resources
Open Source
COMMUNITY
GitHub Sponsors
Fund open source developers
PROGRAMS
Security Lab
Maintainer Community
GitHub Stars
Archive Program
REPOSITORIES
Topics
Trending
Collections
Enterprise
ENTERPRISE SOLUTIONS
Enterprise platform
AI-powered developer platform
AVAILABLE ADD-ONS
GitHub Advanced Security
Enterprise-grade security features
Copilot for Business
Enterprise-grade AI features
Premium Support
Enterprise-grade 24/7 support
Pricing
Search
/
Sign in
Sign up
Appearance settings
You signed in with another tab or window.
Reload
to refresh your session.
You signed out in another tab or window.
Reload
to refresh your session.
You switched accounts on another tab or window.
Reload
to refresh your session.
Dismiss alert
{{ message }}
abla86
/
CodeSentinel
Public
Notifications
You must be signed in to change notification settings
Fork
0
Star
0
Code
Issues
0
Pull requests
0
Actions
Projects
Security and quality
0
Insights
Additional navigation options
Code
Issues
Pull requests
Actions
Projects
Security and quality
Insights
Actions: abla86/CodeSentinel
Actions
All workflows
Workflows
CI
CI
CodeQL
CodeQL
Copilot
Copilot
Copilot cloud agent
Copilot cloud agent
Dependabot Updates
Dependabot Updates
Dependency Graph
Dependency Graph
Dependency review
Dependency review
GitHub App Check
GitHub App Check
GitHub App Docker Build
GitHub App Docker Build
Jekyll site CI
Jekyll site CI
Show more workflows...
Management
Caches
CodeQL
CodeQL
Actions
Loading...
Loading
Sorry, something went wrong.
Uh oh!
There was an error while loading.
Please reload this page
.
will be ignored since log searching is not yet available
Show workflow options
Create status badge
Create status badge
Loading
Uh oh!
There was an error while loading.
Please reload this page
.
codeql.yml
will be ignored since log searching is not yet available
23 workflow runs
23 workflow runs
Event
Filter by Event
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching events.
Status
Filter by Status
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching statuses.
Branch
Filter by Branch
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching branches.
Actor
Filter by Actor
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching users.
Create jekyll-docker.yml
CodeQL
#23:
Commit
64279cb
pushed by
abla86
1m 16s
main
main
1m 16s
View workflow file
fix(security): correct SSRF hostname parsing
CodeQL
#22:
Commit
0c4932f
pushed by
abla86
1m 19s
main
main
1m 19s
View workflow file
fix(security): block unsafe SSRF redirects
CodeQL
#21:
Commit
3f19d11
pushed by
abla86
1m 15s
main
main
1m 15s
View workflow file
fix(security): harden SSRF target validation
CodeQL
#20:
Commit
c7dfe3f
pushed by
abla86
1m 15s
main
main
1m 15s
View workflow file
fix(security): remove hardcoded fallback credentials
CodeQL
#19:
Commit
3ecca1e
pushed by
abla86
1m 17s
main
main
1m 17s
View workflow file
Merge pull request #21 from abla86/dependabot/github_actions/github/c…
CodeQL
#18:
Commit
1ddd757
pushed by
abla86
1m 17s
main
main
1m 17s
View workflow file
build(deps): bump github/codeql-action/upload-sarif from 4.38.0 to 4.38.1
CodeQL
#17:
Pull request
#21
opened by
dependabot
Bot
1m 5s
dependabot/github_actions/github/codeql-action/upload-sarif-4.38.1
dependabot/github_actions/github/codeql-action/upload-sarif-4.38.1
1m 5s
View #21
View workflow file
fix: harden production network and dependency boundaries (#20)
CodeQL
#16:
Commit
1ad0d9d
pushed by
abla86
1m 18s
main
main
1m 18s
View workflow file
fix: harden production network and dependency boundaries
CodeQL
#15:
Pull request
#20
opened by
abla86
1m 28s
fix/complete-hardening-2026-09-25
fix/complete-hardening-2026-09-25
1m 28s
View #20
View workflow file
security: pin CI checkout action
CodeQL
#14:
Commit
dc00500
pushed by
abla86
1m 16s
main
main
1m 16s
View workflow file
fix: use Express request type for raw webhook detection
CodeQL
#13:
Commit
a4a0875
pushed by
abla86
1m 16s
main
main
1m 16s
View workflow file
Add MIT LICENSE file
CodeQL
#12:
Commit
1e8abf7
pushed by
abla86
1m 15s
main
main
1m 15s
View workflow file
test: satisfy production session secret policy
CodeQL
#11:
Commit
3e81852
pushed by
abla86
1m 11s
main
main
1m 11s
View workflow file
security: harden session secrets and server-side GitHub proxy
CodeQL
#10:
Commit
ff75c5c
pushed by
abla86
1m 22s
main
main
1m 22s
View workflow file
ci: pin runner and disable install scripts
CodeQL
#9:
Commit
8d2b29b
pushed by
abla86
1m 21s
main
main
1m 21s
View workflow file
security: block remote self-registration
CodeQL
#8:
Commit
fd33cad
pushed by
abla86
1m 20s
main
main
1m 20s
View workflow file
security: harden server exposure and authentication boundaries
CodeQL
#7:
Commit
7cd2774
pushed by
abla86
1m 18s
main
main
1m 18s
View workflow file
security: bind approval tokens to requested action
CodeQL
#6:
Commit
955d1f9
pushed by
abla86
1m 20s
main
main
1m 20s
View workflow file
security: use cryptographically secure approval tokens
CodeQL
#5:
Commit
c1c0115
pushed by
abla86
1m 24s
main
main
1m 24s
View workflow file
security: enforce webhook verification and RBAC boundaries
CodeQL
#4:
Commit
433a31a
pushed by
abla86
1m 1s
main
main
1m 1s
View workflow file
security: bound request bodies and auth attempts
CodeQL
#3:
Commit
4d75476
pushed by
abla86
1m 24s
main
main
1m 24s
View workflow file
ci: upgrade CodeQL action to v4
CodeQL
#2:
Commit
4e4bac9
pushed by
abla86
1m 22s
main
main
1m 22s
View workflow file
security: add CodeQL scanning
CodeQL
#1:
Commit
a92c6a1
pushed by
abla86
1m 21s
main
main
1m 21s
View workflow file
You can’t perform that action at this time.