GitHub security workshop: Add a safe secret scanning and push protection lab
まだ誰も着手していません。
評価
- 難易度
- 4/5
- 見積もり時間
- 3〜5日
- 初心者へのやさしさ
- 55/100
- issue の種類
- ドキュメント
- 明瞭さ
- 明確に書かれている
- 活発さ
- 活発
- 技術スタック
- github
調査の方向性
まず github-samples/pets-workshop にある workshop template の内容を特定し、secret scanning、push protection、承認済みテストパターン、バイパスのガバナンス、アラートに関する最新の GitHub ドキュメントを確認します。使い捨てのブランチで、ブロックされた push、クリーンアップ、フォールバックパス、最終的な履歴確認を含めて演習を検証します。使用可能な認証情報を保存せずに、すべての受け入れ基準が機能すれば完了です。
索引モデルが issue の本文から書いたものです。
説明
Goal
Let learners experience a blocked push and the secret alert workflow without creating or publishing a usable credential.
Scope
Use only a GitHub-documented, non-sensitive test pattern that is guaranteed to exercise push protection at the time the workshop is validated. The test value must be generated or copied during the exercise and must not be stored in the template history. Cover the blocked push, remediation, bypass governance, alert review, and cleanup.
Acceptance criteria
- Learners enable or verify secret scanning and push protection using current settings guidance.
- The exercise links to the authoritative source for an approved non-sensitive test pattern.
- No token-like test value is committed to this template repository.
- Learners attempt the demonstration on a disposable branch and observe a blocked push.
- The exercise explains why inventing an arbitrary fake string may not match a supported pattern.
- Learners remove the value and successfully push the cleaned commit.
- Bypass reasons, delegated bypass, alert ownership, and auditability are explained without requiring a bypass.
- A fallback path is provided when push protection cannot be enabled.
- Final verification confirms no secret or test pattern remains in branch history.
- 主要言語
- Python
- スター
- 80
- フォーク
- 161
- 平均マージ
- 31分
- マージ済み PR(30日)
- 1
コントリビューションガイド
はじめの一歩
- issue を最後まで読み、次にプロジェクトのコントリビューションガイドを読みます。
- 着手することを issue にコメントします — 二人が同じ作業をするのを防げます。
- リポジトリをフォークし、ブランチを切って変更します。
- issue 番号を参照したプルリクエストを送ります。
github-samples/pets-workshop のほかの issue
-
priority: P0
難易度 2/5 1〜2日 初心者へのやさしさ 78/100
github-samples/pets-workshop#268 · コメント 1 件 ·
-
priority: P0
難易度 1/5 1〜3時間 初心者へのやさしさ 88/100
github-samples/pets-workshop#267 · コメント 1 件 ·
-
priority: P1
難易度 1/5 1〜3時間 初心者へのやさしさ 92/100
github-samples/pets-workshop#261 · コメント 1 件 ·
-
priority: P1
難易度 2/5 1〜3時間 初心者へのやさしさ 78/100
github-samples/pets-workshop#257 · コメント 1 件 ·
-
priority: deferred
難易度 4/5 3〜5日 初心者へのやさしさ 45/100
github-samples/pets-workshop#278 · コメント 1 件 ·
github-samples/pets-workshop の issue をすべて見る
似ている issue
-
bug confirmed issue
難易度 2/5 1〜3時間 初心者へのやさしさ 75/100
open-webui/open-webui#30750 · コメント 1 件 ·
-
難易度 2/5 1〜3時間 初心者へのやさしさ 75/100
-
enhancement
難易度 2/5 1〜3時間 初心者へのやさしさ 75/100
OpenwaterHealth/openmotion-bloodflow-app#604 · コメント 1 件 ·
-
難易度 2/5 1〜3時間 初心者へのやさしさ 70/100
-
good first issue
難易度 1/5 1時間未満 初心者へのやさしさ 90/100