github-samples / github-samples/pets-workshop
full-day workshop: Standardize code security settings navigation
Dieses Issue hat noch niemand übernommen.
- Vorherrschende Sprache
- Python
- Sterne
- 80
- Forks
- 161
- Ø Merge
- 31 Min.
- Gemergte PRs (30 T.)
- 1
Beschreibung
Problem
content/full-day/1-code-scanning.md sends learners to Settings > Code security, but the Secret scanning and Code scanning sections then refer to Settings > Code security and analysis. A learner following the same page is given two names for the same settings destination.
The screenshots and labels are particularly important here because the controls vary with repository visibility and account features.
Suggested change
Verify the current GitHub settings experience and use one consistent navigation path throughout the exercise. Note any visibility or plan-dependent differences where needed.
Acceptance criteria
- Dependabot, secret scanning, push protection, and CodeQL steps use current, consistent settings labels.
- Screenshots match the labels used in the text.
- The exercise states what learners should expect when a control is already enabled or unavailable.
- The flow is validated in a public repository created from the template.
Beitragsleitfaden
Erste Schritte
- Lies das ganze Issue und danach den Beitragsleitfaden des Projekts.
- Schreib ins Issue, dass du es übernimmst — das erspart doppelte Arbeit.
- Forke das Repository und arbeite in einem Branch.
- Öffne einen Pull Request, der die Issue-Nummer nennt.
Rechercherichtung
Beginne mit content/full-day/1-code-scanning.md und überprüfe die aktuelle GitHub-Einstellungserfahrung in einem öffentlichen Repository, das aus dem Template erstellt wurde. Verfolge die Schritte für Dependabot, Secret Scanning, Push Protection und CodeQL, gleiche anschließend ihre Bezeichnungen und Screenshots ab und dokumentiere bereits aktivierte oder nicht verfügbare Steuerelemente. Die Aufgabe ist abgeschlossen, wenn die gesamte Übung eine konsistente, aktuelle Navigation verwendet und im Template-Repository validiert wurde.
Vom Indexierungsmodell aus dem Issue-Text verfasst.
Bewertung
- Tech-Stack
- github
- Bereich
- documentation, security
- Issue-Typ
- Dokumentation
- Schwierigkeit
- 3/5
- Geschätzter Aufwand
- 1-2 Tage
- Aktivitätsstatus
- Aktiv
- Klarheit
- Größtenteils klar
- Anfängerfreundlichkeit
- 72/100