Skip to content
Navigation Menu
Sign in
Appearance settings
Platform
AI CODE CREATION
GitHub Copilot
Write better code with AI
GitHub Copilot app
Direct agents from issue to merge
MCP Registry
Integrate external tools
DEVELOPER WORKFLOWS
Actions
Automate any workflow
Codespaces
Instant dev environments
Issues
Plan and track work
Code Review
Manage code changes
Code Quality
Enforce quality at merge
APPLICATION SECURITY
GitHub Advanced Security
Find and fix vulnerabilities
Code security
Secure your code as you build
Secret protection
Stop leaks before they start
EXPLORE
Why GitHub
Documentation
Blog
Changelog
Marketplace
View all features
Solutions
BY COMPANY SIZE
Enterprises
Small and medium teams
Startups
Nonprofits
BY USE CASE
App Modernization
DevSecOps
DevOps
CI/CD
View all use cases
BY INDUSTRY
Healthcare
Financial services
Manufacturing
Government
View all industries
View all solutions
Resources
EXPLORE BY TOPIC
AI
Software Development
DevOps
Security
View all topics
EXPLORE BY TYPE
Customer stories
Events & webinars
Ebooks & reports
Business insights
GitHub Skills
SUPPORT & SERVICES
Documentation
Customer support
Community forum
Trust center
Partners
View all resources
Open Source
COMMUNITY
GitHub Sponsors
Fund open source developers
PROGRAMS
Security Lab
Maintainer Community
GitHub Stars
Archive Program
REPOSITORIES
Topics
Trending
Collections
Enterprise
ENTERPRISE SOLUTIONS
Enterprise platform
AI-powered developer platform
AVAILABLE ADD-ONS
GitHub Advanced Security
Enterprise-grade security features
Copilot for Business
Enterprise-grade AI features
Premium Support
Enterprise-grade 24/7 support
Pricing
Search
/
Sign in
Sign up
Appearance settings
You signed in with another tab or window.
Reload
to refresh your session.
You signed out in another tab or window.
Reload
to refresh your session.
You switched accounts on another tab or window.
Reload
to refresh your session.
Dismiss alert
{{ message }}
Uh oh!
There was an error while loading.
Please reload this page
.
agentrust-io
/
cmcp
Public
Notifications
You must be signed in to change notification settings
Fork
21
Star
28
Code
Issues
12
Pull requests
3
Actions
Projects
Security and quality
6
Insights
Additional navigation options
Code
Issues
Pull requests
Actions
Projects
Security and quality
Insights
Actions: agentrust-io/cmcp
Actions
All workflows
Workflows
CI
CI
ClusterFuzzLite batch
ClusterFuzzLite batch
ClusterFuzzLite PR
ClusterFuzzLite PR
CodeQL
CodeQL
Contributor reputation check
Contributor reputation check
Dependabot Updates
Dependabot Updates
Dependency Graph
Dependency Graph
Docker publish
Docker publish
Docs
Docs
Documentation checks
Documentation checks
Show more workflows...
Management
Caches
Deployments
CodeQL
CodeQL
Actions
Loading...
Loading
Sorry, something went wrong.
Uh oh!
There was an error while loading.
Please reload this page
.
will be ignored since log searching is not yet available
Show workflow options
Create status badge
Create status badge
Loading
Uh oh!
There was an error while loading.
Please reload this page
.
codeql.yml
will be ignored since log searching is not yet available
903 workflow runs
903 workflow runs
Event
Filter by Event
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching events.
Status
Filter by Status
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching statuses.
Branch
Filter by Branch
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching branches.
Actor
Filter by Actor
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching users.
docs: fix hardware provider framing, remove em dashes (#265)
CodeQL
#178:
Commit
2cc51ce
pushed by
imran-siddique
1m 43s
main
main
1m 43s
View workflow file
docs: fix hardware provider framing, remove em dashes
CodeQL
#177:
Pull request
#265
opened by
imran-siddique
1m 33s
docs/fix-readme-provider-framing
docs/fix-readme-provider-framing
1m 33s
View #265
View workflow file
fix(security): nosec B108 on SPIRE socket path in spiffe.py
CodeQL
#176:
Pull request
#264
synchronize by
imran-siddique
1m 30s
fix/bandit-b108-spiffe
fix/bandit-b108-spiffe
1m 30s
View #264
View workflow file
fix(security): nosec B108 on SPIRE socket path in spiffe.py
CodeQL
#175:
Pull request
#264
opened by
imran-siddique
1m 36s
fix/bandit-b108-spiffe
fix/bandit-b108-spiffe
1m 36s
View #264
View workflow file
fix: upgrade codeql-action v3 -> v4
CodeQL
#174:
Pull request
#263
opened by
imran-siddique
1m 29s
fix/codeql-v4
fix/codeql-v4
1m 29s
View #263
View workflow file
feat(phase-2): NVIDIA NRAS post-attestation appraisal client
CodeQL
#173:
Pull request
#262
opened by
imran-siddique
1m 38s
feat/phase2-nras-client
feat/phase2-nras-client
1m 38s
View #262
View workflow file
feat(gateway): add gateway_version to TRACE claims and /readyz health…
CodeQL
#172:
Commit
c315668
pushed by
imran-siddique
3s
main
main
3s
View workflow file
fix(security): deduplicate deny reasons, configurable cleanup interva…
CodeQL
#171:
Commit
ccaadb4
pushed by
imran-siddique
4s
main
main
4s
View workflow file
fix(security): freeze CMCP_DEV_MODE at process startup (TEE-002) (#256)
CodeQL
#170:
Commit
6bbb3f3
pushed by
imran-siddique
4s
main
main
4s
View workflow file
fix(audit): extract injection patterns to versioned config, include v…
CodeQL
#169:
Commit
1436ce6
pushed by
imran-siddique
4s
main
main
4s
View workflow file
fix(security): bind cnf.jwk fingerprint to TEE report_data in signatu…
CodeQL
#168:
Commit
53f1987
pushed by
imran-siddique
4s
main
main
4s
View workflow file
fix(security): anchor audit chain root in TEE attestation to prevent chain substitution (AUDIT-002)
CodeQL
#167:
Pull request
#258
synchronize by
imran-siddique
4s
fix/audit-002-chain-external-anchor
fix/audit-002-chain-external-anchor
4s
View #258
View workflow file
feat(session): per-session call log with compliance-domain tracking (…
CodeQL
#166:
Commit
441bef7
pushed by
imran-siddique
5s
main
main
5s
View workflow file
feat(session): per-session call log with compliance-domain tracking
CodeQL
#165:
Pull request
#261
opened by
imran-siddique
4s
feat/session-call-log
feat/session-call-log
4s
View #261
View workflow file
fix(security): bind cnf.jwk fingerprint to TEE report_data (CRYPTO-001)
CodeQL
#164:
Pull request
#259
opened by
imran-siddique
4s
fix/crypto-001-tee-bind-public-key
fix/crypto-001-tee-bind-public-key
4s
View #259
View workflow file
fix(security): anchor audit chain root in TEE attestation to prevent chain substitution (AUDIT-002)
CodeQL
#163:
Pull request
#258
opened by
imran-siddique
4s
fix/audit-002-chain-external-anchor
fix/audit-002-chain-external-anchor
4s
View #258
View workflow file
fix(audit): extract injection patterns to versioned config, include version in audit events (INJECT-006)
CodeQL
#162:
Pull request
#257
opened by
imran-siddique
3s
fix/inject-006-versioned-patterns
fix/inject-006-versioned-patterns
3s
View #257
View workflow file
fix(security): freeze CMCP_DEV_MODE at process startup (TEE-002)
CodeQL
#161:
Pull request
#256
opened by
imran-siddique
3s
fix/tee-002-dev-mode-immutable
fix/tee-002-dev-mode-immutable
3s
View #256
View workflow file
chore(deps): bump docker/login-action from 3 to 4
CodeQL
#160:
Pull request
#254
opened by
dependabot
Bot
4s
dependabot/github_actions/docker/login-action-4
dependabot/github_actions/docker/login-action-4
4s
View #254
View workflow file
chore(deps): bump actions/download-artifact from 4 to 8
CodeQL
#159:
Pull request
#253
opened by
dependabot
Bot
4s
dependabot/github_actions/actions/download-artifact-8
dependabot/github_actions/actions/download-artifact-8
4s
View #253
View workflow file
chore(deps): bump docker/build-push-action from 5 to 7
CodeQL
#158:
Pull request
#252
opened by
dependabot
Bot
4s
dependabot/github_actions/docker/build-push-action-7
dependabot/github_actions/docker/build-push-action-7
4s
View #252
View workflow file
chore(deps): bump github/codeql-action from 3 to 4
CodeQL
#157:
Pull request
#251
opened by
dependabot
Bot
5s
dependabot/github_actions/github/codeql-action-4
dependabot/github_actions/github/codeql-action-4
5s
View #251
View workflow file
chore(deps): bump actions/upload-artifact from 4 to 7
CodeQL
#156:
Pull request
#250
opened by
dependabot
Bot
5s
dependabot/github_actions/actions/upload-artifact-7
dependabot/github_actions/actions/upload-artifact-7
5s
View #250
View workflow file
fix(security): deduplicate deny reasons, configurable cleanup, injection threshold audit, redact auth header
CodeQL
#155:
Pull request
#249
opened by
imran-siddique
3s
fix/low-batch-policy-auth-inject-hw
fix/low-batch-policy-auth-inject-hw
3s
View #249
View workflow file
feat(gateway): add gateway_version to TRACE claims and /readyz health endpoint (CONF-006 CONF-007)
CodeQL
#154:
Pull request
#248
opened by
imran-siddique
5s
fix/conf-006-007-trace-version-readyz
fix/conf-006-007-trace-version-readyz
5s
View #248
View workflow file
Previous
1
2
…
28
29
30
31
32
…
36
37
Next
ProTip!
You can narrow down the results and go further in time using
created:<2026-06-08
or the other filters available.
You can’t perform that action at this time.