Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Missing option to enable CodeQL at personal org level #16350

Open
mcandre opened this issue Apr 27, 2024 · 1 comment
Open

Missing option to enable CodeQL at personal org level #16350

mcandre opened this issue Apr 27, 2024 · 1 comment
Labels
question Further information is requested

Comments

@mcandre
Copy link

mcandre commented Apr 27, 2024

The "Code security and analysis" personal org settings page lists several options for Dependabot SCA third party security scans, but lists no option for CodeQL SAST first party security scans.

This males it unnecessarily difficult for GitHub users to consistently scan all their repositories. We'd just as well assume that millions of GitHub repos are insecure, rife with SAST violations.

@mcandre mcandre added the question Further information is requested label Apr 27, 2024
@sampart
Copy link
Contributor

sampart commented May 2, 2024

Hello from GitHub Code Scanning, and thanks for getting in touch, @mcandre. The behaviour you're describing isn't what I'd expect to see on that page, so I'd like to investigate further. Please could you post a screenshot of what you're seeing on that page, and let us know the organisation name? Many thanks.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
question Further information is requested
Projects
None yet
Development

No branches or pull requests

2 participants