-
Notifications
You must be signed in to change notification settings - Fork 650
Pull requests: ossf/scorecard
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
🌱 Bump github.com/slack-go/slack from 0.17.3 to 0.23.1 in /tools
dependencies
Pull requests that update a dependency file
go
Pull requests that update Go code
size:XS
This PR changes 0-9 lines, ignoring generated files.
#5062
opened May 14, 2026 by
dependabot
Bot
Loading…
🌱 Support Makefiles in pinned dependencies
size:M
This PR changes 30-99 lines, ignoring generated files.
#5061
opened May 14, 2026 by
C2015
Loading…
🌱 Bump github.com/go-git/go-billy/v5 from 5.8.0 to 5.9.0 in /tools
dependencies
Pull requests that update a dependency file
go
Pull requests that update Go code
size:XS
This PR changes 0-9 lines, ignoring generated files.
#5060
opened May 14, 2026 by
dependabot
Bot
Loading…
🌱 Bump github.com/go-git/go-git/v5 from 5.18.0 to 5.19.0 in /tools
dependencies
Pull requests that update a dependency file
go
Pull requests that update Go code
size:S
This PR changes 10-29 lines, ignoring generated files.
#5059
opened May 13, 2026 by
dependabot
Bot
Loading…
🐛 Fix StepSecurity remediation link labels
size:XS
This PR changes 0-9 lines, ignoring generated files.
#5058
opened May 13, 2026 by
prathameshhire
Loading…
🌱 Detect fork event names in dangerous workflows
size:XS
This PR changes 0-9 lines, ignoring generated files.
#5055
opened May 12, 2026 by
C2015
Loading…
🌱 Bump the gomod group across 2 directories with 19 updates
dependencies
Pull requests that update a dependency file
go
Pull requests that update Go code
size:L
This PR changes 100-499 lines, ignoring generated files.
#5053
opened May 11, 2026 by
dependabot
Bot
Loading…
🌱 Bump the golang group across 8 directories with 1 update
dependencies
Pull requests that update a dependency file
docker
Pull requests that update Docker code
size:S
This PR changes 10-29 lines, ignoring generated files.
#5052
opened May 11, 2026 by
dependabot
Bot
Loading…
🌱 Bump the github-actions group across 1 directory with 3 updates
dependencies
Pull requests that update a dependency file
github_actions
Pull requests that update Github_actions code
size:XS
This PR changes 0-9 lines, ignoring generated files.
#5051
opened May 11, 2026 by
dependabot
Bot
Loading…
🌱 Add SonarQube Cloud SAST check run coverage
size:XS
This PR changes 0-9 lines, ignoring generated files.
#5049
opened May 6, 2026 by
musaabhasan
Loading…
📖 Document hash-locked Python tooling installs
size:XS
This PR changes 0-9 lines, ignoring generated files.
#5048
opened May 6, 2026 by
musaabhasan
Loading…
🐛 fix: improve error messages for branch-protection and pip-install checks
size:S
This PR changes 10-29 lines, ignoring generated files.
#5043
opened May 2, 2026 by
alliasgher
Contributor
Loading…
🌱 chore: add additional Hiero repos to cron run.
size:XS
This PR changes 0-9 lines, ignoring generated files.
#5041
opened Apr 30, 2026 by
jwagantall
Contributor
Loading…
📖 docs: expand SAST check description to list all detected tools
size:M
This PR changes 30-99 lines, ignoring generated files.
Stale
#5040
opened Apr 28, 2026 by
venkatapgummadi
Loading…
1 of 2 tasks
🐛 Change Mkdir to MkdirAll when extracting tarball
size:S
This PR changes 10-29 lines, ignoring generated files.
#5039
opened Apr 27, 2026 by
juanis2112
Contributor
Loading…
1 of 2 tasks
🌱 Bump github.com/rhysd/actionlint from 1.7.9 to 1.7.12
dependencies
Pull requests that update a dependency file
go
Pull requests that update Go code
size:S
This PR changes 10-29 lines, ignoring generated files.
#5037
opened Apr 27, 2026 by
dependabot
Bot
Loading…
🌱 Bump goreleaser/goreleaser-action from 7.0.0 to 7.2.1
dependencies
Pull requests that update a dependency file
github_actions
Pull requests that update Github_actions code
size:XS
This PR changes 0-9 lines, ignoring generated files.
#5035
opened Apr 27, 2026 by
dependabot
Bot
Loading…
🐛 Fix scorecard completion generates
size:XS
This PR changes 0-9 lines, ignoring generated files.
#5027
opened Apr 20, 2026 by
dovydenkovas
Loading…
1 task done
🌱 add Artifact-Integrity check for verifying release artifact authenticity
size:L
This PR changes 100-499 lines, ignoring generated files.
#5020
opened Apr 16, 2026 by
BB-24
Loading…
2 tasks done
✨ Consider GitHub immutable releases as signed
size:XL
This PR changes 500-999 lines, ignoring generated files.
#5002
opened Apr 5, 2026 by
martincostello
Contributor
Loading…
2 tasks done
✨ Add GitHub artifact attestation for Signed-Releases
size:XL
This PR changes 500-999 lines, ignoring generated files.
#5001
opened Apr 5, 2026 by
martincostello
Contributor
Loading…
2 tasks done
✨ Add --summary-only flag for concise score output
size:M
This PR changes 30-99 lines, ignoring generated files.
Stale
#4996
opened Apr 1, 2026 by
sachin9058
Loading…
2 tasks done
📖 Consolidate v6 docs and add implementation plan
size:XL
This PR changes 500-999 lines, ignoring generated files.
#4994
opened Apr 1, 2026 by
justaugustus
Member
Loading…
1 of 2 tasks
🌱 Bump actions/setup-go from 6.3.0 to 6.4.0
dependencies
Pull requests that update a dependency file
github_actions
Pull requests that update Github_actions code
size:XS
This PR changes 0-9 lines, ignoring generated files.
Stale
#4988
opened Mar 30, 2026 by
dependabot
Bot
Loading…
Previous Next
ProTip!
Mix and match filters to narrow down what you’re looking for.