Skip to content
Navigation Menu
Sign in
Appearance settings
Platform
AI CODE CREATION
GitHub Copilot
Write better code with AI
GitHub Copilot app
Direct agents from issue to merge
MCP Registry
Integrate external tools
DEVELOPER WORKFLOWS
Actions
Automate any workflow
Codespaces
Instant dev environments
Issues
Plan and track work
Code Review
Manage code changes
Code Quality
Enforce quality at merge
APPLICATION SECURITY
GitHub Advanced Security
Find and fix vulnerabilities
Code security
Secure your code as you build
Secret protection
Stop leaks before they start
EXPLORE
Why GitHub
Documentation
Blog
Changelog
Marketplace
View all features
Solutions
BY COMPANY SIZE
Enterprises
Small and medium teams
Startups
Nonprofits
BY USE CASE
App Modernization
DevSecOps
DevOps
CI/CD
View all use cases
BY INDUSTRY
Healthcare
Financial services
Manufacturing
Government
View all industries
View all solutions
Resources
EXPLORE BY TOPIC
AI
Software Development
DevOps
Security
View all topics
EXPLORE BY TYPE
Customer stories
Events & webinars
Ebooks & reports
Business insights
GitHub Skills
SUPPORT & SERVICES
Documentation
Customer support
Community forum
Trust center
Partners
View all resources
Open Source
COMMUNITY
GitHub Sponsors
Fund open source developers
PROGRAMS
Security Lab
Maintainer Community
GitHub Stars
Archive Program
REPOSITORIES
Topics
Trending
Collections
Enterprise
ENTERPRISE SOLUTIONS
Enterprise platform
AI-powered developer platform
AVAILABLE ADD-ONS
GitHub Advanced Security
Enterprise-grade security features
Copilot for Business
Enterprise-grade AI features
Premium Support
Enterprise-grade 24/7 support
Pricing
Search
/
Sign in
Sign up
Appearance settings
You signed in with another tab or window.
Reload
to refresh your session.
You signed out in another tab or window.
Reload
to refresh your session.
You switched accounts on another tab or window.
Reload
to refresh your session.
Dismiss alert
{{ message }}
Junirezz
/
YieldVault-RWA
Public
Notifications
You must be signed in to change notification settings
Fork
207
Star
12
Code
Issues
52
Pull requests
35
Actions
Projects
Security and quality
0
Insights
Additional navigation options
Code
Issues
Pull requests
Actions
Projects
Security and quality
Insights
Actions: Junirezz/YieldVault-RWA
Actions
All workflows
Workflows
.github/workflows/cypress.yml
.github/workflows/cypress.yml
.github/workflows/docs.yml
.github/workflows/docs.yml
.github/workflows/e2e.yml
.github/workflows/e2e.yml
.github/workflows/nightly-benchmarks.yml
.github/workflows/nightly-benchmarks.yml
Backend Governance
Backend Governance
CodeQL Security Scanning
CodeQL Security Scanning
Copilot
Copilot
Copilot cloud agent
Copilot cloud agent
Copilot code review
Copilot code review
Dependency Security Scan
Dependency Security Scan
Show more workflows...
Management
Caches
Deployments
CodeQL Security Scanning
CodeQL Security Scanning
Actions
Loading...
Loading
Sorry, something went wrong.
Uh oh!
There was an error while loading.
Please reload this page
.
will be ignored since log searching is not yet available
Show workflow options
Create status badge
Create status badge
Loading
Uh oh!
There was an error while loading.
Please reload this page
.
codeql.yml
will be ignored since log searching is not yet available
112 workflow runs
112 workflow runs
Event
Filter by Event
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching events.
Status
Filter by Status
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching statuses.
Branch
Filter by Branch
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching branches.
Actor
Filter by Actor
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching users.
solved
CodeQL Security Scanning
#112:
Pull request
#1518
opened by
KayMuna
1m 2s
KayMuna:feat/issues
KayMuna:feat/issues
1m 2s
View #1518
View workflow file
[1433] Prisma $transaction isolation level defaults to ReadCommitted allowing phantom reads in allocation rebalance
CodeQL Security Scanning
#111:
Pull request
#1517
opened by
ToryMic
1m 20s
ToryMic:fix/1433-prisma-transaction-isolation-level-defaults-to-readcommitted-allowing-phantom-reads-in-allocation-rebalance
ToryMic:fix/1433-prisma-transaction-isolation-level-defaults-to-readcommitted-allowing-phantom-reads-in-allocation-rebalance
1m 20s
View #1517
View workflow file
[1431] Auth middleware accepts expired JWT for 60s due to clockTolerance misconfiguration
CodeQL Security Scanning
#110:
Pull request
#1516
synchronize by
ToryMic
1m 9s
ToryMic:fix/1431-auth-middleware-accepts-expired-jwt-for-60s-due-to-clocktolerance-misconfiguration
ToryMic:fix/1431-auth-middleware-accepts-expired-jwt-for-60s-due-to-clocktolerance-misconfiguration
1m 9s
View #1516
View workflow file
[1430] GET /vaults query does not enforce max limit and allows limit=100000 to OOM the API
CodeQL Security Scanning
#109:
Pull request
#1515
synchronize by
ToryMic
1m 38s
ToryMic:fix/1430-get-vaults-query-does-not-enforce-max-limit-and-allows-limit-100000-to-oom-the-api
ToryMic:fix/1430-get-vaults-query-does-not-enforce-max-limit-and-allows-limit-100000-to-oom-the-api
1m 38s
View #1515
View workflow file
[1431] Auth middleware accepts expired JWT for 60s due to clockTolerance misconfiguration
CodeQL Security Scanning
#108:
Pull request
#1516
synchronize by
ToryMic
1m 4s
ToryMic:fix/1431-auth-middleware-accepts-expired-jwt-for-60s-due-to-clocktolerance-misconfiguration
ToryMic:fix/1431-auth-middleware-accepts-expired-jwt-for-60s-due-to-clocktolerance-misconfiguration
1m 4s
View #1516
View workflow file
[1431] Auth middleware accepts expired JWT for 60s due to clockTolerance misconfiguration
CodeQL Security Scanning
#107:
Pull request
#1516
opened by
ToryMic
2m 5s
ToryMic:fix/1431-auth-middleware-accepts-expired-jwt-for-60s-due-to-clocktolerance-misconfiguration
ToryMic:fix/1431-auth-middleware-accepts-expired-jwt-for-60s-due-to-clocktolerance-misconfiguration
2m 5s
View #1516
View workflow file
[1430] GET /vaults query does not enforce max limit and allows limit=100000 to OOM the API
CodeQL Security Scanning
#106:
Pull request
#1515
opened by
ToryMic
1m 7s
ToryMic:fix/1430-get-vaults-query-does-not-enforce-max-limit-and-allows-limit-100000-to-oom-the-api
ToryMic:fix/1430-get-vaults-query-does-not-enforce-max-limit-and-allows-limit-100000-to-oom-the-api
1m 7s
View #1515
View workflow file
Fix graceful shutdown to drain requests before disconnecting Prisma
CodeQL Security Scanning
#105:
Pull request
#1514
opened by
The-Big-Danny
Action required
The-Big-Danny:Graceful-shutdown
The-Big-Danny:Graceful-shutdown
Action required
View #1514
View workflow file
fix: check Redis connectivity in /ready health probe
CodeQL Security Scanning
#104:
Pull request
#1513
synchronize by
Jayycob2211
Action required
Jayycob2211:fix/issue-1443-health-ready-endpoint-does-not-check-redis
Jayycob2211:fix/issue-1443-health-ready-endpoint-does-not-check-redis
Action required
View #1513
View workflow file
fix: check Redis connectivity in /ready health probe
CodeQL Security Scanning
#103:
Pull request
#1513
synchronize by
Jayycob2211
Action required
Jayycob2211:fix/issue-1443-health-ready-endpoint-does-not-check-redis
Jayycob2211:fix/issue-1443-health-ready-endpoint-does-not-check-redis
Action required
View #1513
View workflow file
fix: check Redis connectivity in /ready health probe
CodeQL Security Scanning
#102:
Pull request
#1513
synchronize by
Jayycob2211
Action required
Jayycob2211:fix/issue-1443-health-ready-endpoint-does-not-check-redis
Jayycob2211:fix/issue-1443-health-ready-endpoint-does-not-check-redis
Action required
View #1513
View workflow file
fix: check Redis connectivity in /ready health probe
CodeQL Security Scanning
#101:
Pull request
#1513
opened by
Jayycob2211
Action required
Jayycob2211:fix/issue-1443-health-ready-endpoint-does-not-check-redis
Jayycob2211:fix/issue-1443-health-ready-endpoint-does-not-check-redis
Action required
View #1513
View workflow file
Tracingspanforvaultdepositdoesnotpropagattrace idtooutboxeventcausingbrokentraces
CodeQL Security Scanning
#100:
Pull request
#1512
opened by
elizabethklien3-pixel
Action required
elizabethklien3-pixel:TracingspanforvaultdepositdoesnotpropagattraceIdtooutboxeventcausingbrokentraces
elizabethklien3-pixel:TracingspanforvaultdepositdoesnotpropagattraceIdtooutboxeventcausingbrokentraces
Action required
View #1512
View workflow file
fix(db): acquire postgres advisory lock during migration execution (#1440)
CodeQL Security Scanning
#99:
Pull request
#1511
opened by
Awosdot
1m 8s
Awosdot:feature/issue-1440-advisory-lock-migration-runner
Awosdot:feature/issue-1440-advisory-lock-migration-runner
1m 8s
View #1511
View workflow file
fix(documents): enforce content-type whitelist on S3 presigned URL generation (#1439)
CodeQL Security Scanning
#98:
Pull request
#1510
opened by
Awosdot
1m 1s
Awosdot:feature/issue-1439-s3-presigned-url-content-type-whitelist
Awosdot:feature/issue-1439-s3-presigned-url-content-type-whitelist
1m 1s
View #1510
View workflow file
fix(portfolio): filter soft-deleted vaults from user portfolio aggregation (#1438)
CodeQL Security Scanning
#97:
Pull request
#1509
opened by
Awosdot
1m 6s
Awosdot:feature/issue-1438-exclude-soft-deleted-vaults
Awosdot:feature/issue-1438-exclude-soft-deleted-vaults
1m 6s
View #1509
View workflow file
fix(openapi): recursively walk router stack in OpenAPI spec generation (#1441)
CodeQL Security Scanning
#96:
Pull request
#1508
opened by
Awosdot
1m 4s
Awosdot:feature/issue-1441-openapi-router-traversal
Awosdot:feature/issue-1441-openapi-router-traversal
1m 4s
View #1508
View workflow file
feat: Fix yield accrual scheduler drift with setTimeout-based schedul…
CodeQL Security Scanning
#95:
Pull request
#1507
synchronize by
alamuoyeemmanuel7-create
1m 28s
alamuoyeemmanuel7-create:feature/yield-accrual-scheduler-1450
alamuoyeemmanuel7-create:feature/yield-accrual-scheduler-1450
1m 28s
View #1507
View workflow file
feat: Add audit log IP and user-agent capture for SOC2 traceability (…
CodeQL Security Scanning
#94:
Pull request
#1506
synchronize by
alamuoyeemmanuel7-create
1m 9s
alamuoyeemmanuel7-create:feature/audit-log-soc2-1454
alamuoyeemmanuel7-create:feature/audit-log-soc2-1454
1m 9s
View #1506
View workflow file
feat: Fix yield accrual scheduler drift with setTimeout-based schedul…
CodeQL Security Scanning
#93:
Pull request
#1507
opened by
alamuoyeemmanuel7-create
1m 12s
alamuoyeemmanuel7-create:feature/yield-accrual-scheduler-1450
alamuoyeemmanuel7-create:feature/yield-accrual-scheduler-1450
1m 12s
View #1507
View workflow file
feat: Add audit log IP and user-agent capture for SOC2 traceability (…
CodeQL Security Scanning
#92:
Pull request
#1506
opened by
alamuoyeemmanuel7-create
1m 15s
alamuoyeemmanuel7-create:feature/audit-log-soc2-1454
alamuoyeemmanuel7-create:feature/audit-log-soc2-1454
1m 15s
View #1506
View workflow file
fix: scope and rotate API keys per tenant with expiry and scopes
CodeQL Security Scanning
#91:
Pull request
#1505
opened by
oycodes
-1s
oycodes:fix/issue-1446-api-key-authentication-does-not-rotate-or-scope
oycodes:fix/issue-1446-api-key-authentication-does-not-rotate-or-scope
-1s
View #1505
View workflow file
fix: pin vault metadata to IPFS and track pin lifecycle
CodeQL Security Scanning
#90:
Pull request
#1504
opened by
bluegate916
Action required
bluegate916:fix/issue-1449-upload-vault-metadata-to-ipfs-without-pinning
bluegate916:fix/issue-1449-upload-vault-metadata-to-ipfs-without-pinning
Action required
View #1504
View workflow file
fix(backend): emit LF-only OpenAPI spec to avoid phantom Windows CRLF diffs
CodeQL Security Scanning
#89:
Pull request
#1503
opened by
simonpeters298
Action required
simonpeters298:chore/1374-fix-crlf-normalization
simonpeters298:chore/1374-fix-crlf-normalization
Action required
View #1503
View workflow file
fix: cursor pagination for vault transactions endpoint
CodeQL Security Scanning
#88:
Pull request
#1502
opened by
Fang0067
Action required
Fang0067:fix/issue-1444-cursor-pagination-for-get-vaults-id
Fang0067:fix/issue-1444-cursor-pagination-for-get-vaults-id
Action required
View #1502
View workflow file
Previous
1
2
3
4
5
Next
You can’t perform that action at this time.