Skip to content

GitHub Security Lab’s mission is to empower developers and secure open source. We do that in a number of ways:

  • by finding and disclosing vulnerabilities in open source. We publish our advisories on our website.
  • reviewing advisories that affect open source projects hosted on GitHub and notifying affected developers and maintainers. See GitHub’s advisory database.
  • educating the community and empowering developers via in-person events (you can meet us during any events listed in the event calendar).
  • scaling the security research community’s work with CodeQL Community Packs. See how to get started.

In this organisation, you will find some of our projects aiming to educate the community and empower developers or security researchers. Check out also our team repository at github/securitylab

Questions? Join us on our Slack server.

Pinned Loading

  1. actions-permissions Public

    GitHub token permissions Monitor and Advisor actions

    Python 279 22

  2. gh-mrva Public

    Run CodeQL queries at scale using Multi-Repository Variant Analysis (MRVA)

    Go 59 4

  3. CodeQL-Community-Packs Public

    Collection of community-driven CodeQL query, library and extension packs

    Java 146 18

  4. codeql-zero-to-hero Public

    CodeQL zero to hero blog post series challenges

    CodeQL 118 188

  5. secure-code-challenge Public template

    We are excited to present you a code security challenge inspired from real-world code, with which you can feel the thrill of finding a security issue and win a GitHub Shop voucher!

    JavaScript 6

  6. codeql-jupyter-kernel Public

    Jupyter Kernel for CodeQL

    Python 14 2

Repositories

Showing 10 of 11 repositories
  • actions-permissions Public

    GitHub token permissions Monitor and Advisor actions

    Python 279 MIT 22 3 0 Updated Mar 28, 2025
  • gh-mrva Public

    Run CodeQL queries at scale using Multi-Repository Variant Analysis (MRVA)

    Go 59 MIT 4 1 2 Updated Mar 13, 2025
  • gh-qldb Public

    CodeQL database manager

    Go 48 2 0 2 Updated Mar 13, 2025
  • CodeQL-Community-Packs Public

    Collection of community-driven CodeQL query, library and extension packs

    Java 146 MIT 18 2 3 Updated Mar 10, 2025
  • secure-this Public
    JavaScript 0 0 0 0 Updated Mar 6, 2025
  • codeql-jupyter-kernel Public

    Jupyter Kernel for CodeQL

    Python 14 MIT 2 0 4 Updated Feb 26, 2025
  • codeql-zero-to-hero Public

    CodeQL zero to hero blog post series challenges

    CodeQL 118 188 0 0 Updated Dec 11, 2024
  • ruby-unsafe-deserialization Public

    Proof of Concepts for unsafe deserialization in Ruby

    Ruby 17 MIT 3 0 1 Updated Oct 17, 2024
  • .github Public
    0 0 0 0 Updated Jul 8, 2024
  • secure-code-challenge Public template

    We are excited to present you a code security challenge inspired from real-world code, with which you can feel the thrill of finding a security issue and win a GitHub Shop voucher!

    JavaScript 6 MIT 0 0 0 Updated Apr 17, 2024

People

This organization has no public members. You must be a member to see who’s a part of this organization.

Most used topics