Commit c599094
fix: resolve code scanning alerts across repo (#79)
Clear-text logging (10 alerts fixed):
- healthcare-hipaa/main.py: Added _redact() helper, masked patient data
- agent-mesh healthcare-hipaa/main.py: Masked patient ID in logs
- eu-ai-act-compliance/demo.py: Masked agent labels
- financial-sox/demo.py: Masked SSN-containing messages
URL sanitization (12 alerts fixed):
- test_rate_limiting_template.py: Use explicit equality for domain checks
- test_identity.py, test_coverage_boost.py: Use urlparse() for SPIFFE URIs
- service-worker.ts: Use new URL().hostname for platform detection
Workflow token permissions (3 alerts fixed):
- auto-merge-dependabot.yml, sbom.yml, codeql.yml: Top-level read-only
permissions with write scopes pushed to job level
Workflow pinned dependencies (8 action refs pinned):
- dependency-review.yml, labeler.yml, pr-size.yml, stale.yml,
welcome.yml, auto-merge-dependabot.yml: Pin to commit SHAs
Dockerfile/script dependency pinning (11 files):
- Pin pip install versions in Dockerfiles and shell scripts
- Add --no-cache-dir where missing
Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>1 parent 5ecb31f commit c599094
File tree
28 files changed
+147
-67
lines changed- .github/workflows
- packages
- agent-hypervisor/examples/docker-compose
- agent-mesh
- examples
- 03-healthcare-hipaa
- 06-eu-ai-act-compliance
- tests
- agent-os
- examples
- carbon-auditor
- defi-sentinel
- financial-sox
- grid-balancing
- healthcare-hipaa
- pharma-compliance
- extensions
- chrome/src/background
- github-cli
- modules
- control-plane
- iatp/docker
- scak
- scripts
- tests
28 files changed
+147
-67
lines changed| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
2 | 2 | | |
3 | 3 | | |
4 | 4 | | |
5 | | - | |
6 | | - | |
| 5 | + | |
7 | 6 | | |
8 | 7 | | |
9 | 8 | | |
| 9 | + | |
| 10 | + | |
| 11 | + | |
10 | 12 | | |
11 | 13 | | |
12 | | - | |
| 14 | + | |
13 | 15 | | |
14 | 16 | | |
15 | 17 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
10 | 10 | | |
11 | 11 | | |
12 | 12 | | |
13 | | - | |
14 | | - | |
15 | 13 | | |
16 | 14 | | |
17 | 15 | | |
18 | 16 | | |
| 17 | + | |
| 18 | + | |
| 19 | + | |
19 | 20 | | |
20 | 21 | | |
21 | 22 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
10 | 10 | | |
11 | 11 | | |
12 | 12 | | |
13 | | - | |
14 | | - | |
| 13 | + | |
| 14 | + | |
15 | 15 | | |
16 | 16 | | |
17 | 17 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
10 | 10 | | |
11 | 11 | | |
12 | 12 | | |
13 | | - | |
| 13 | + | |
14 | 14 | | |
15 | 15 | | |
16 | 16 | | |
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
10 | 10 | | |
11 | 11 | | |
12 | 12 | | |
13 | | - | |
| 13 | + | |
14 | 14 | | |
15 | 15 | | |
16 | 16 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
9 | 9 | | |
10 | 10 | | |
11 | 11 | | |
12 | | - | |
13 | | - | |
14 | | - | |
| 12 | + | |
15 | 13 | | |
16 | 14 | | |
17 | 15 | | |
18 | 16 | | |
| 17 | + | |
| 18 | + | |
| 19 | + | |
| 20 | + | |
19 | 21 | | |
20 | 22 | | |
21 | 23 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
11 | 11 | | |
12 | 12 | | |
13 | 13 | | |
14 | | - | |
| 14 | + | |
15 | 15 | | |
16 | 16 | | |
17 | 17 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
12 | 12 | | |
13 | 13 | | |
14 | 14 | | |
15 | | - | |
| 15 | + | |
16 | 16 | | |
17 | 17 | | |
18 | 18 | | |
| |||
Lines changed: 5 additions & 5 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
2 | 2 | | |
3 | 3 | | |
4 | 4 | | |
5 | | - | |
| 5 | + | |
6 | 6 | | |
7 | | - | |
8 | | - | |
9 | | - | |
10 | | - | |
| 7 | + | |
| 8 | + | |
| 9 | + | |
| 10 | + | |
11 | 11 | | |
12 | 12 | | |
13 | 13 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
23 | 23 | | |
24 | 24 | | |
25 | 25 | | |
| 26 | + | |
| 27 | + | |
| 28 | + | |
| 29 | + | |
| 30 | + | |
| 31 | + | |
| 32 | + | |
| 33 | + | |
| 34 | + | |
| 35 | + | |
26 | 36 | | |
27 | 37 | | |
28 | 38 | | |
| |||
83 | 93 | | |
84 | 94 | | |
85 | 95 | | |
86 | | - | |
| 96 | + | |
87 | 97 | | |
88 | 98 | | |
89 | 99 | | |
| |||
0 commit comments