Skip to content
Navigation Menu
Sign in
Appearance settings
Platform
AI CODE CREATION
GitHub Copilot
Write better code with AI
GitHub Copilot app
Direct agents from issue to merge
MCP Registry
Integrate external tools
DEVELOPER WORKFLOWS
Actions
Automate any workflow
Codespaces
Instant dev environments
Issues
Plan and track work
Code Review
Manage code changes
Code Quality
Enforce quality at merge
APPLICATION SECURITY
GitHub Advanced Security
Find and fix vulnerabilities
Code security
Secure your code as you build
Secret protection
Stop leaks before they start
EXPLORE
Why GitHub
Documentation
Blog
Changelog
Marketplace
View all features
Solutions
BY COMPANY SIZE
Enterprises
Small and medium teams
Startups
Nonprofits
BY USE CASE
App Modernization
DevSecOps
DevOps
CI/CD
View all use cases
BY INDUSTRY
Healthcare
Financial services
Manufacturing
Government
View all industries
View all solutions
Resources
EXPLORE BY TOPIC
AI
Software Development
DevOps
Security
View all topics
EXPLORE BY TYPE
Customer stories
Events & webinars
Ebooks & reports
Business insights
GitHub Skills
SUPPORT & SERVICES
Documentation
Customer support
Community forum
Trust center
Partners
View all resources
Open Source
COMMUNITY
GitHub Sponsors
Fund open source developers
PROGRAMS
Security Lab
Maintainer Community
GitHub Stars
Archive Program
REPOSITORIES
Topics
Trending
Collections
Enterprise
ENTERPRISE SOLUTIONS
Enterprise platform
AI-powered developer platform
AVAILABLE ADD-ONS
GitHub Advanced Security
Enterprise-grade security features
Copilot for Business
Enterprise-grade AI features
Premium Support
Enterprise-grade 24/7 support
Pricing
Search
/
Sign in
Sign up
Appearance settings
You signed in with another tab or window.
Reload
to refresh your session.
You signed out in another tab or window.
Reload
to refresh your session.
You switched accounts on another tab or window.
Reload
to refresh your session.
Dismiss alert
{{ message }}
Uh oh!
There was an error while loading.
Please reload this page
.
ossf
/
best-practices-badge
Public
Notifications
You must be signed in to change notification settings
Fork
233
Star
1.4k
Code
Issues
216
Pull requests
11
Discussions
Actions
Projects
Wiki
Security and quality
0
Insights
Additional navigation options
Code
Issues
Pull requests
Discussions
Actions
Projects
Wiki
Security and quality
Insights
Actions: ossf/best-practices-badge
Actions
All workflows
Workflows
Scorecard supply-chain security
Scorecard supply-chain security
Brakeman
Brakeman
Bundle audit
Bundle audit
Check App grant
Check App grant
CI
CI
CodeQL
CodeQL
CodeQL
CodeQL
Codespell
Codespell
Copilot cloud agent
Copilot cloud agent
Copilot code review
Copilot code review
Dependabot ignore review
Dependabot ignore review
Show more workflows...
Management
Caches
Deployments
Scorecard supply-chain security
Scorecard supply-chain security
Actions
Loading...
Loading
Sorry, something went wrong.
Uh oh!
There was an error while loading.
Please reload this page
.
will be ignored since log searching is not yet available
Show workflow options
Create status badge
Create status badge
Loading
Uh oh!
There was an error while loading.
Please reload this page
.
scorecard.yml
will be ignored since log searching is not yet available
584 workflow runs
584 workflow runs
Event
Filter by Event
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching events.
Status
Filter by Status
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching statuses.
Branch
Filter by Branch
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching branches.
Actor
Filter by Actor
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching users.
Add 'require' to fix NameError in deploy (#3032)
Scorecard supply-chain security
#769:
Commit
20ad208
pushed by
david-a-wheeler
49s
main
main
49s
View workflow file
Show user ID as hyperlinked first column in login sessions list (#3030)
Scorecard supply-chain security
#768:
Commit
82e8a0a
pushed by
david-a-wheeler
41s
main
main
41s
View workflow file
Bump rubocop-performance from 1.26.1 to 1.27.0 (#3027)
Scorecard supply-chain security
#767:
Commit
2d9b8b7
pushed by
david-a-wheeler
46s
main
main
46s
View workflow file
Retry transient DB connection failures at boot and release phase (#3029)
Scorecard supply-chain security
#766:
Commit
b5bd5b8
pushed by
david-a-wheeler
51s
main
main
51s
View workflow file
Update cimg/node Docker tag to v26.8.2 (#3019)
Scorecard supply-chain security
#765:
Commit
b053147
pushed by
david-a-wheeler
51s
main
main
51s
View workflow file
Bump renovatebot/github-action from 46.2.5 to 46.3.0 (#3021)
Scorecard supply-chain security
#764:
Commit
a9ae9ac
pushed by
david-a-wheeler
41s
main
main
41s
View workflow file
Add admin nav link to user list/search (#3025)
Scorecard supply-chain security
#763:
Commit
c1ab60f
pushed by
david-a-wheeler
50s
main
main
50s
View workflow file
Bump the codeql-action group with 3 updates (#3020)
Scorecard supply-chain security
#762:
Commit
574004d
pushed by
david-a-wheeler
47s
main
main
47s
View workflow file
Fix criteria renderer logic displaying markers uncoditionally (#3018)
Scorecard supply-chain security
#761:
Commit
9a3545a
pushed by
david-a-wheeler
47s
main
main
47s
View workflow file
Merge pull request #3024 from ossf/clarify_prod_to_staging
Scorecard supply-chain security
#760:
Commit
b517aa7
pushed by
david-a-wheeler
54s
main
main
54s
View workflow file
Merge pull request #3023 from ossf/heroku_run
Scorecard supply-chain security
#759:
Commit
57b65ec
pushed by
david-a-wheeler
41s
main
main
41s
View workflow file
Merge pull request #3022 from ossf/pull-production-via-backup
Scorecard supply-chain security
#758:
Commit
57e6c21
pushed by
david-a-wheeler
51s
main
main
51s
View workflow file
Merge pull request #3016 from ossf/fix-pending-resubmission-status-cast
Scorecard supply-chain security
#757:
Commit
6779893
pushed by
david-a-wheeler
49s
main
main
49s
View workflow file
Merge pull request #3015 from ossf/fix-pending-resubmission-data-loss
Scorecard supply-chain security
#756:
Commit
ac51ea3
pushed by
david-a-wheeler
51s
main
main
51s
View workflow file
Merge pull request #3014 from ossf/simplify-pending-resubmission
Scorecard supply-chain security
#755:
Commit
200d8c5
pushed by
david-a-wheeler
41s
main
main
41s
View workflow file
Merge pull request #3013 from ossf/fix-pending-resubmission-premature…
Scorecard supply-chain security
#754:
Commit
1ebc2be
pushed by
david-a-wheeler
1m 23s
main
main
1m 23s
View workflow file
Merge pull request #3011 from ossf/login-session-hardening
Scorecard supply-chain security
#753:
Commit
ff161cd
pushed by
david-a-wheeler
39s
main
main
39s
View workflow file
Scorecard supply-chain security
Scorecard supply-chain security
#752:
Scheduled
47s
main
main
47s
View workflow file
Login session hardening steps 1 4 (#3009)
Scorecard supply-chain security
#751:
Commit
6452a0c
pushed by
david-a-wheeler
45s
main
main
45s
View workflow file
Bump rubocop-rails to 2.37.0; fix/disable new cops (#3008)
Scorecard supply-chain security
#750:
Commit
d3df305
pushed by
david-a-wheeler
56s
main
main
56s
View workflow file
Update cimg/node Docker tag to v26.8.1 (#2980)
Scorecard supply-chain security
#749:
Commit
c30e467
pushed by
david-a-wheeler
43s
main
main
43s
View workflow file
Update selenium/standalone-chrome Docker tag to v152 (#3000)
Scorecard supply-chain security
#748:
Commit
0f7de77
pushed by
david-a-wheeler
49s
main
main
49s
View workflow file
Bump anchore/sbom-action from 0.24.0 to 0.24.2 (#2982)
Scorecard supply-chain security
#747:
Commit
ab1344c
pushed by
david-a-wheeler
1m 0s
main
main
1m 0s
View workflow file
Update heroku/heroku:26-build Docker digest to 9af52c4 (#2999)
Scorecard supply-chain security
#746:
Commit
a51a367
pushed by
david-a-wheeler
59s
main
main
59s
View workflow file
Translation sync 2026 09 09 (#3007)
Scorecard supply-chain security
#745:
Commit
2c21039
pushed by
david-a-wheeler
55s
main
main
55s
View workflow file
Previous
1
2
3
4
5
…
23
24
Next
You can’t perform that action at this time.