Skip to content
Open
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
1055 commits
Select commit Hold shift + click to select a range
f569da1
Merge pull request #3505 from github/dependabot/github_actions/depend…
jmeridth Sep 25, 2025
80cb76e
Merge pull request #3500 from samirrhashimov/main
jmeridth Sep 25, 2025
39f91f1
chore(deps): bump ruby/setup-ruby in the dependencies group
dependabot[bot] Sep 26, 2025
9ac30ef
Merge pull request #3507 from github/dependabot/github_actions/depend…
jmeridth Sep 26, 2025
55f4bfa
Improve alt text in building-community
edent Oct 1, 2025
75b7c0d
chore(deps): bump actions/stale in the dependencies group
dependabot[bot] Oct 6, 2025
0f8eb42
fix: ignore quora.com due to 403 and fix rust-lang.org url
jmeridth Oct 7, 2025
bacaa42
Merge pull request #3515 from github/dependabot/github_actions/depend…
jmeridth Oct 7, 2025
f180cd7
chore(deps): bump ruby/setup-ruby in the dependencies group
dependabot[bot] Oct 9, 2025
c764ddd
Merge pull request #3517 from github/dependabot/github_actions/depend…
jmeridth Oct 9, 2025
841f01f
Merge branch 'main' into patch-1
jmeridth Oct 9, 2025
59844f1
Merge pull request #3509 from edent/patch-1
jmeridth Oct 10, 2025
c13d42f
Merge pull request #3504 from github/dependabot/bundler/bundler-6d4d9…
jmeridth Oct 11, 2025
9b410ae
chore(deps): bump ruby/setup-ruby in the dependencies group
dependabot[bot] Oct 13, 2025
aed5c8c
Merge pull request #3519 from github/dependabot/github_actions/depend…
jmeridth Oct 13, 2025
50a5ed5
chore(deps): bump actions/setup-node from 5.0.0 to 6.0.0
dependabot[bot] Oct 14, 2025
fb5dc20
Merge pull request #3520 from github/dependabot/github_actions/action…
jmeridth Oct 14, 2025
569a2fd
Added Quick Tip section for beginners
Dhanyasri7 Oct 14, 2025
b26e38a
Add Sanskrit translation : best-practices.md
ItsMeAnanyaSrivastava Oct 19, 2025
c6fb055
Update _articles/sa/best-practices.md
ItsMeAnanyaSrivastava Oct 19, 2025
f1f79ce
Update _articles/sa/best-practices.md
ItsMeAnanyaSrivastava Oct 19, 2025
9e9c49c
Update _articles/sa/best-practices.md
ItsMeAnanyaSrivastava Oct 19, 2025
d357751
Added spanish translation: security-best-practices-for-your-code.md
AlexJauregui02 Oct 21, 2025
7c0b0b0
fixed sintax error with the curly quotation marks
AlexJauregui02 Oct 21, 2025
4beb2a6
Merge pull request #3521 from Dhanyasri7/add-quick-tip
jmeridth Oct 23, 2025
3514224
Merge branch 'main' into es-fixed-errors
AlexJauregui02 Oct 23, 2025
2c0dc8f
Merge pull request #3531 from AlexJauregui02/es-fixed-errors
jmeridth Oct 25, 2025
f5051b2
chore(deps): bump ruby/setup-ruby in the dependencies group
dependabot[bot] Oct 27, 2025
387ed19
Merge pull request #3533 from github/dependabot/github_actions/depend…
jmeridth Oct 28, 2025
176f97c
translated security-best-practices-for-your-projects to Persian (Farsi)
atymri Oct 28, 2025
5f1142b
chore(deps): bump ruby/setup-ruby in the dependencies group
dependabot[bot] Oct 29, 2025
fd4f254
Merge pull request #3540 from github/dependabot/github_actions/depend…
jmeridth Oct 29, 2025
95657f3
chore(deps): bump rake from 13.3.0 to 13.3.1 in the dependencies group
dependabot[bot] Oct 30, 2025
a907e07
Merge pull request #3541 from github/dependabot/bundler/dependencies-…
jmeridth Oct 30, 2025
f218329
Add funding sources
ansharora28 Oct 30, 2025
19daccd
Merge pull request #3542 from ansharora28/patch-3
jmeridth Oct 30, 2025
91582c9
Improve Tamil (ta) locale translations for better clarity and natural…
dinilH Oct 31, 2025
ba917e6
Merge pull request #3543 from dinilH/improve-tamil-translation
tomthorogood Oct 31, 2025
11fbdd8
# This is a combination of 26 commits.
aseel-aaa Oct 27, 2025
4efc1b2
Arabic translations and fixes for all articles and anchor texts
aseel-aaa Nov 1, 2025
964be55
manar translation
maneer17 Nov 2, 2025
8ed073a
translated security article
aseel-aaa Nov 2, 2025
da0ec79
Merge branch 'main' into arabic-translation
aseel-aaa Nov 2, 2025
37bb035
Merge pull request #3537 from aseel-aaa/arabic-translation
jmeridth Nov 3, 2025
b349d26
chore(deps): bump html-proofer in the dependencies group
dependabot[bot] Nov 5, 2025
42b9701
Merge pull request #3546 from github/dependabot/bundler/dependencies-…
jmeridth Nov 5, 2025
e516c26
replace a phrase in Chinese
tjyyy3 Nov 12, 2025
aa158d9
Merge pull request #3549 from tjyyy3/patch-1
jmeridth Nov 12, 2025
949a027
Merge branch 'main' into update-seccurity
UlisesGascon Nov 13, 2025
3a53077
chore: relocate section
UlisesGascon Nov 13, 2025
be54004
chore: add link for better context
UlisesGascon Nov 13, 2025
22bfe99
Merge branch 'main' into translate/hi-starting-a-project
ItsMeAnanyaSrivastava Nov 13, 2025
c4edccf
Update _articles/security-best-practices-for-your-project.md
UlisesGascon Nov 14, 2025
0372fab
Update _articles/security-best-practices-for-your-project.md
UlisesGascon Nov 14, 2025
c2a63a3
docs: add missing subtitle
UlisesGascon Nov 14, 2025
42523a4
Update _articles/security-best-practices-for-your-project.md
UlisesGascon Nov 14, 2025
5749b4a
chore(deps): bump the dependencies group with 2 updates
dependabot[bot] Nov 18, 2025
0094652
fix: broken link
jmeridth Nov 18, 2025
7365166
Merge pull request #3551 from github/dependabot/github_actions/depend…
jmeridth Nov 18, 2025
ac86f30
chore(deps): bump html-proofer in the dependencies group
dependabot[bot] Nov 18, 2025
5ea737d
Merge pull request #3552 from github/dependabot/bundler/dependencies-…
jmeridth Nov 18, 2025
3854e76
Merge branch 'main' into update-seccurity
jmeridth Nov 18, 2025
34cac57
Merge branch 'main' into translate/hi-starting-a-project
jmeridth Nov 18, 2025
92029d5
Merge branch 'main' into patch-1
jmeridth Nov 18, 2025
de58950
Merge branch 'main' into translate/hi-starting-a-project
ItsMeAnanyaSrivastava Nov 19, 2025
cbcca04
chore(deps): bump actions/checkout from 5.0.1 to 6.0.0
dependabot[bot] Nov 21, 2025
ca4eb9d
docs(_articles/zh-hans): correct brackets in zh-hans documents
OctagonalStar Nov 21, 2025
5730b11
docs(_articles/zh-hans): correct symbol in zh-hans documents
OctagonalStar Nov 21, 2025
538be88
docs(_articles/zh-hans): correct straight quote
OctagonalStar Nov 22, 2025
4f76991
docs(_articles/zh-hans/getting-paid): correct bracket
OctagonalStar Nov 22, 2025
421f7e7
Issue fixes
ItsMeAnanyaSrivastava Nov 22, 2025
35ccd1e
Fixing
ItsMeAnanyaSrivastava Nov 22, 2025
9cd8cb4
Fixing...
ItsMeAnanyaSrivastava Nov 22, 2025
eceabdb
fix: url 403ing
jmeridth Nov 24, 2025
0d86273
Merge pull request #3553 from github/dependabot/github_actions/action…
jmeridth Nov 24, 2025
28ed086
Merge branch 'main' into correct_zh-hans
jmeridth Nov 24, 2025
c9eb362
add clear comments and improve readability in HTMLProofer script
Maruti1887 Nov 27, 2025
e2b7643
Merge branch 'main' into translate/hi-starting-a-project
ItsMeAnanyaSrivastava Nov 29, 2025
81a9445
adddingg...
ItsMeAnanyaSrivastava Nov 29, 2025
57d1f0e
Update starting-a-project.md
ItsMeAnanyaSrivastava Nov 29, 2025
96379f0
adding....
ItsMeAnanyaSrivastava Nov 29, 2025
af123dc
Update building-community.md
ItsMeAnanyaSrivastava Nov 29, 2025
c6c2569
working....
ItsMeAnanyaSrivastava Nov 29, 2025
4785c93
aaaaaaa
ItsMeAnanyaSrivastava Nov 29, 2025
7a0db7f
removing english comments
ItsMeAnanyaSrivastava Nov 29, 2025
d058b8c
Update security.md
ItsMeAnanyaSrivastava Nov 29, 2025
1160770
Update leadership-goveernance
ItsMeAnanyaSrivastava Nov 29, 2025
de009c5
Update building
ItsMeAnanyaSrivastava Nov 29, 2025
d2991ea
Fixes
ItsMeAnanyaSrivastava Nov 29, 2025
f9e7dc3
Update
ItsMeAnanyaSrivastava Nov 29, 2025
c10f4a8
Updatess
ItsMeAnanyaSrivastava Nov 29, 2025
d660aef
update
ItsMeAnanyaSrivastava Nov 29, 2025
7870cda
updates
ItsMeAnanyaSrivastava Nov 29, 2025
1b11496
add
ItsMeAnanyaSrivastava Nov 29, 2025
71ba46e
Updatee
ItsMeAnanyaSrivastava Nov 29, 2025
3085184
updates
ItsMeAnanyaSrivastava Nov 29, 2025
7711d79
fixes
ItsMeAnanyaSrivastava Nov 30, 2025
45ca8f9
fixes
ItsMeAnanyaSrivastava Nov 30, 2025
3d383ff
fix
ItsMeAnanyaSrivastava Nov 30, 2025
395388a
fixes
ItsMeAnanyaSrivastava Nov 30, 2025
54cea6d
chore(deps): bump the dependencies group with 3 updates
dependabot[bot] Dec 3, 2025
fe6ba89
Merge pull request #3561 from github/dependabot/github_actions/depend…
jmeridth Dec 3, 2025
211617b
Merge pull request #3555 from Maruti1887/patch-1
jmeridth Dec 4, 2025
22abf69
Merge branch 'main' into translate/hi-starting-a-project
ItsMeAnanyaSrivastava Dec 4, 2025
4fe42a0
Merge pull request #3554 from OctagonalStar/correct_zh-hans
jmeridth Dec 4, 2025
3052d5b
added .yml file
ItsMeAnanyaSrivastava Dec 4, 2025
8472d2a
Merge branch 'main' into translate/hi-starting-a-project
ItsMeAnanyaSrivastava Dec 4, 2025
0a08b49
fixing image issue
ItsMeAnanyaSrivastava Dec 5, 2025
bf43a8a
Merge pull request #3529 from ItsMeAnanyaSrivastava/translate/hi-star…
jmeridth Dec 5, 2025
c3ad689
chore(deps): bump ruby/setup-ruby in the dependencies group
dependabot[bot] Dec 8, 2025
e172367
Merge pull request #3564 from github/dependabot/github_actions/depend…
jmeridth Dec 9, 2025
ee6e58b
Merge pull request #3465 from UlisesGascon/update-seccurity
ahpook Dec 10, 2025
ef916c4
Merge branch 'main' into patch-1
atymri Dec 11, 2025
3996f8e
chore(deps): bump ruby/setup-ruby in the dependencies group
dependabot[bot] Dec 15, 2025
23bf460
Merge pull request #3565 from github/dependabot/github_actions/depend…
jmeridth Dec 15, 2025
0f35a4a
chore(deps): bump ruby/setup-ruby in the dependencies group
dependabot[bot] Dec 18, 2025
81b230b
Merge pull request #3566 from github/dependabot/github_actions/depend…
jmeridth Dec 19, 2025
4aacc96
chore(deps): bump ruby/setup-ruby in the dependencies group
dependabot[bot] Dec 22, 2025
91465e0
Merge pull request #3567 from github/dependabot/github_actions/depend…
jmeridth Dec 22, 2025
c3bf5fe
chore(deps): bump ruby/setup-ruby in the dependencies group
dependabot[bot] Dec 26, 2025
b6aa35e
Merge pull request #3568 from github/dependabot/github_actions/depend…
jmeridth Dec 26, 2025
3dfa968
chore(deps): bump nokogiri in the dependencies group
dependabot[bot] Dec 29, 2025
477620a
Merge pull request #3570 from github/dependabot/bundler/dependencies-…
jmeridth Dec 29, 2025
ae9ce55
fix: linting
jmeridth Dec 29, 2025
01aeeb2
Merge pull request #3539 from atymri/patch-1
jmeridth Dec 29, 2025
1c10d03
chore(deps): bump uri from 0.13.2 to 0.13.3
dependabot[bot] Dec 30, 2025
2bc41ae
chore(deps): bump ruby/setup-ruby in the dependencies group
dependabot[bot] Dec 31, 2025
377fb2f
Merge pull request #3573 from github/dependabot/github_actions/depend…
jmeridth Dec 31, 2025
0cb500b
Merge pull request #3572 from github/dependabot/bundler/uri-0.13.3
jmeridth Dec 31, 2025
8c3e159
chore(deps): bump ruby/setup-ruby in the dependencies group
dependabot[bot] Jan 1, 2026
425902a
Merge pull request #3575 from github/dependabot/github_actions/depend…
jmeridth Jan 1, 2026
2acb7cd
chore(deps): bump html-proofer in the dependencies group
dependabot[bot] Jan 7, 2026
c6ec10a
Localize `Security Best Practices` article to Korean
eazyhozy Jan 7, 2026
3de6916
fix: translate line-by-line & add omitted contents
eazyhozy Jan 7, 2026
e815cc1
chore: Remove wrong untranslated fields in each language articles
roeniss Jan 11, 2026
61ec1b9
docs: Add guide to remove untranslated field after translation
roeniss Jan 11, 2026
32e9124
chore(deps): bump the dependencies group across 1 directory with 2 up…
dependabot[bot] Jan 15, 2026
b546982
Merge pull request #3578 from github/dependabot/bundler/dependencies-…
ahpook Jan 16, 2026
416e16f
Merge pull request #3587 from github/dependabot/github_actions/depend…
ahpook Jan 16, 2026
30cc612
Fix trailing whitespace and other minor formatting quirks
ahpook Jan 16, 2026
9d7577e
Merge pull request #3583 from roeniss/chore/remove-wrong-untranslated…
ahpook Jan 16, 2026
1edb908
chore: Update obsolete untranslated articles for some languages
roeniss Jan 18, 2026
ef98929
best-practices.md translate
stanly-halder Jan 18, 2026
af89381
maintaining-balance.md Bengali
stanly-halder Jan 18, 2026
db973df
chore(deps): bump ruby/setup-ruby in the dependencies group
dependabot[bot] Jan 19, 2026
ec5fb59
Apply suggestions from code review
tomthorogood Jan 21, 2026
be24e58
Merge branch 'main' into main
tomthorogood Jan 21, 2026
04da58b
Merge pull request #3582 from roeniss/chore/update-obsolete-untransla…
tomthorogood Jan 21, 2026
3e91150
Merge pull request #3590 from github/dependabot/github_actions/depend…
tomthorogood Jan 21, 2026
d4adff7
chore(deps): bump ruby/setup-ruby in the dependencies group
dependabot[bot] Jan 22, 2026
1ce01cf
Update contributor links in the article
stanly-halder Jan 22, 2026
a64d411
Merge branch 'main' into main
stanly-halder Jan 22, 2026
fce0d46
Fix heading formatting and enhance text clarity
stanly-halder Jan 22, 2026
6c2f584
Fix link to 'learning to say no' in Bengali
stanly-halder Jan 22, 2026
a368762
Fix formatting and improve clarity in best-practices.md
stanly-halder Jan 22, 2026
6c3279d
Fix formatting and punctuation in best-practices.md
stanly-halder Jan 22, 2026
df08438
Revise content for clarity and consistency
stanly-halder Jan 22, 2026
10ac2d3
Fix formatting and enhance clarity in Bengali article
stanly-halder Jan 22, 2026
6612a19
Update translation status and content for article
stanly-halder Jan 22, 2026
3ac1c1f
Merge pull request #3593 from github/dependabot/github_actions/depend…
tomthorogood Jan 22, 2026
e7057a1
Merge branch 'main' into main
stanly-halder Jan 24, 2026
ac9ebe8
Merge branch 'upstream/main'
eazyhozy Jan 25, 2026
701c6f7
Remove unnecessary bold formatting in Korean translation
eazyhozy Jan 25, 2026
67c6df6
Use '중요합니다' instead of '필수적입니다' to match 'important' in original
eazyhozy Jan 25, 2026
040819c
Fix: Add aria-label to language selector for accessibility compliance
huangkevin-apr Jan 28, 2026
f2c614b
chore(deps): bump faraday from 2.12.0 to 2.14.1
dependabot[bot] Feb 9, 2026
729223c
Fix typos and grammar errors across English documentation
him2him2 Feb 10, 2026
8d5e755
Fix minor typos and spacing in contribution guide
lavanitha Feb 10, 2026
0ee9daf
Merge pull request #3603 from him2him2/fix-typos-in-english-docs
ahpook Feb 10, 2026
6f40173
Merge branch 'main' into main
lavanitha Feb 11, 2026
6d18e2f
Merge pull request #3604 from lavanitha/main
ahpook Feb 12, 2026
5237de7
The code.gov site got restructured and this article link is 404
ahpook Feb 12, 2026
c286e78
Remove stray smart apostrophe
ahpook Feb 12, 2026
30f3fb3
chore(deps): bump the dependencies group across 1 directory with 2 up…
dependabot[bot] Feb 13, 2026
f3caed7
Merge pull request #3605 from github/ahpook/update-cio-gov-link
ahpook Feb 13, 2026
14321fd
Merge pull request #3580 from eazyhozy/main
ahpook Feb 13, 2026
5fd11fd
Merge pull request #3597 from huangkevin-apr/fix-a11y-button
ahpook Feb 13, 2026
65ae1eb
Merge pull request #3589 from STANTHEGR8/main
ahpook Feb 13, 2026
b28a980
Merge branch 'main' into dependabot/bundler/faraday-2.14.1
ahpook Feb 13, 2026
5eeac8d
Merge branch 'main' into dependabot/github_actions/dependencies-e8254…
ahpook Feb 13, 2026
95ad2fc
Merge pull request #3601 from github/dependabot/bundler/faraday-2.14.1
ahpook Feb 13, 2026
7123a69
Merge pull request #3598 from github/dependabot/github_actions/depend…
ahpook Feb 13, 2026
9d563bf
chore(deps): bump the dependencies group across 1 directory with 3 up…
dependabot[bot] Mar 5, 2026
34e95e6
Merge pull request #3615 from github/dependabot/github_actions/depend…
ahpook Mar 16, 2026
1346613
Fix translation errors in best-practices.md
7Xme Apr 4, 2026
63d4ce1
Fix broken external links with live replacements and Web Archive URLs
mookwoo Apr 4, 2026
7fe75c9
Use specific Web Archive timestamps and fix garbled text
mookwoo Apr 4, 2026
5f8109e
Update link checker ignore list for geekfeminism.fandom.com
mookwoo Apr 4, 2026
d24a689
chore(deps): bump addressable from 2.8.8 to 2.9.0
dependabot[bot] Apr 8, 2026
57b04d5
chore(deps): bump nokogiri from 1.19.0 to 1.19.1
dependabot[bot] Apr 8, 2026
e339d12
Merge pull request #3630 from github/dependabot/bundler/addressable-2…
ahpook Apr 10, 2026
7437000
Merge pull request #3631 from github/dependabot/bundler/nokogiri-1.19.1
ahpook Apr 10, 2026
97e1e67
chore(deps): bump the dependencies group across 1 directory with 2 up…
dependabot[bot] Apr 10, 2026
68aded1
Merge pull request #3623 from github/dependabot/bundler/dependencies-…
ahpook Apr 10, 2026
c67f571
chore(deps): bump activesupport from 7.2.1.1 to 7.2.3.1
dependabot[bot] Apr 10, 2026
d74573b
chore(deps): bump the dependencies group across 1 directory with 2 up…
dependabot[bot] Apr 20, 2026
158ba36
initial draft of Accessibility Best Practices for Your Project
mlama007 Apr 24, 2026
79981fb
mgifford feedback
mlama007 Apr 24, 2026
8be6cd5
added resource to statement
mlama007 Apr 24, 2026
3f9bc3f
added resources and explanation for accessibility issues
mlama007 Apr 24, 2026
e1b13e7
Merge branch 'main' into fix/external-link-rot
ahpook Apr 24, 2026
918c6ca
Initial plan
Copilot Apr 24, 2026
b0b9261
Fix broken external links with Wayback Machine archive URLs
Copilot Apr 24, 2026
343c9a7
Merge pull request #3642 from github/copilot/fix-github-actions-ci-job
ahpook Apr 24, 2026
3fa913d
Merge pull request #3621 from github/dependabot/bundler/activesupport…
ahpook Apr 24, 2026
b5e685d
Merge branch 'main' into patch-1
ahpook Apr 24, 2026
581fc4b
Merge branch 'main' into fix/external-link-rot
ahpook Apr 24, 2026
28bc3eb
chore(deps): bump rake in the dependencies group across 1 directory
dependabot[bot] Apr 24, 2026
9f99070
Update gitlab link, starred is no longer available in the explore int…
ahpook Apr 24, 2026
2d4818c
Merge pull request #3643 from github/ahpook/fix-gitlab-starred
ahpook Apr 24, 2026
e597b7a
Merge branch 'main' into fix/external-link-rot
ahpook Apr 24, 2026
e60c5cc
Fix stray newline
ahpook Apr 24, 2026
a60b04e
Merge pull request #3644 from github/fix/external-link-rot
ahpook Apr 24, 2026
c98d2cd
Merge pull request #3637 from github/dependabot/bundler/dependencies-…
ahpook Apr 24, 2026
9272004
Merge branch 'main' into patch-1
ahpook Apr 24, 2026
c998445
Merge pull request #3638 from github/dependabot/github_actions/depend…
ahpook Apr 24, 2026
5f80edc
Merge branch 'main' into accessibility-best-practices
ahpook Apr 24, 2026
67c957b
Merge branch 'main' into patch-1
ahpook Apr 24, 2026
74b0b89
chore(deps): bump ruby/setup-ruby in the dependencies group
dependabot[bot] Apr 27, 2026
aa206e5
chore(deps): bump actions/upload-pages-artifact from 4.0.0 to 5.0.0
dependabot[bot] Apr 27, 2026
d082852
chore(deps): bump actions/deploy-pages from 4.0.5 to 5.0.0
dependabot[bot] Apr 27, 2026
15ed643
chore(deps): bump actions/configure-pages from 5.0.0 to 6.0.0
dependabot[bot] Apr 27, 2026
d858d2a
chore(deps): bump nokogiri in the dependencies group
dependabot[bot] Apr 28, 2026
5cccbb4
editorial updates
mlama007 Apr 29, 2026
053bf48
add contributors
mlama007 Apr 29, 2026
541b568
update files
mlama007 Apr 29, 2026
aa005ab
Add examples from Accessibility toolkit
mlama007 Apr 29, 2026
57b8e78
editiorial: ASCII, emphasis, bullets
mlama007 Apr 29, 2026
51387f8
added temp image
mlama007 Apr 29, 2026
b24ce86
Add CodeQL analysis workflow configuration
ahpook Apr 29, 2026
3cc87d5
Update codeql and tests
ahpook Apr 29, 2026
78e719e
Merge pull request #3654 from github/ahpook/add-codeql-config
ahpook Apr 29, 2026
8f8e9bb
Merge branch 'main' into accessibility-best-practices
ahpook Apr 29, 2026
97b6e90
Merge pull request #3641 from mlama007/accessibility-best-practices
ahpook Apr 29, 2026
63fbc0c
Merge branch 'main' into patch-1
ahpook Apr 29, 2026
4e9ce1e
Merge pull request #3626 from 7Xme/patch-1
ahpook Apr 29, 2026
00d8d37
Merge branch 'main' into dependabot/bundler/dependencies-c700c4fcbe
ahpook Apr 29, 2026
de2a19f
Merge pull request #3653 from github/dependabot/bundler/dependencies-…
ahpook Apr 29, 2026
3a56aaf
Merge branch 'main' into dependabot/github_actions/actions/upload-pag…
ahpook Apr 29, 2026
19c44cd
Merge branch 'main' into dependabot/github_actions/actions/configure-…
ahpook Apr 29, 2026
5af87e2
Merge pull request #3650 from github/dependabot/github_actions/action…
ahpook Apr 29, 2026
79bcddc
Merge pull request #3652 from github/dependabot/github_actions/action…
ahpook Apr 29, 2026
4f8891a
Merge branch 'main' into dependabot/github_actions/dependencies-4a0b9…
ahpook Apr 29, 2026
1f2c125
Merge pull request #3649 from github/dependabot/github_actions/depend…
ahpook Apr 29, 2026
7d1f872
Merge branch 'main' into dependabot/github_actions/actions/deploy-pag…
ahpook Apr 29, 2026
f2828ff
Merge pull request #3651 from github/dependabot/github_actions/action…
ahpook Apr 29, 2026
a7afbb3
Restores underlines to links in the content
aardrian May 8, 2026
443bf3b
Merge pull request #3656 from aardrian/patch-1
ahpook May 11, 2026
89f75e0
disable potentially vulnerable workflow
ahpook May 14, 2026
e43eeaf
Merge pull request #3664 from github/ahpook/disable-jekyll
ahpook May 14, 2026
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
The table of contents is too big for display.
Diff view
Diff view
  •  
  •  
  •  
19 changes: 19 additions & 0 deletions .devcontainer/devcontainer.json
Original file line number Diff line number Diff line change
@@ -0,0 +1,19 @@
{
"name": "Jekyll website",
"image": "mcr.microsoft.com/devcontainers/jekyll:latest",
"features": {
"ghcr.io/devcontainers/features/node:1": {
"version": "22"
},
"ghcr.io/devcontainers/features/ruby:1": {
"version": "3.3.5"
}
},
"forwardPorts": [
// Jekyll server
4000,
// Live reload server
35729
],
"postCreateCommand": "bundle exec jekyll serve --incremental"
}
35 changes: 30 additions & 5 deletions .github/dependabot.yml
Original file line number Diff line number Diff line change
Expand Up @@ -4,16 +4,41 @@ updates:
directory: "/"
schedule:
interval: daily
time: "10:00"
timezone: Europe/Vienna
pull-request-branch-name:
separator: "-"
open-pull-requests-limit: 99
rebase-strategy: disabled
commit-message:
prefix: "chore(deps)"
groups:
dependencies:
applies-to: version-updates
update-types:
- "minor"
- "patch"
- package-ecosystem: "github-actions"
directory: "/"
schedule:
interval: daily
open-pull-requests-limit: 99
rebase-strategy: disabled

commit-message:
prefix: "chore(deps)"
groups:
dependencies:
applies-to: version-updates
update-types:
- "minor"
- "patch"
- package-ecosystem: bundler
directory: "/"
schedule:
interval: daily
versioning-strategy: increase
open-pull-requests-limit: 99
commit-message:
prefix: "chore(deps)"
groups:
dependencies:
applies-to: version-updates
update-types:
- "minor"
- "patch"
77 changes: 77 additions & 0 deletions .github/workflows/codeql.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,77 @@
# For most projects, this workflow file will not need changing; you simply need
# to commit it to your repository.
#
# You may wish to alter this file to override the set of languages analyzed,
# or to provide custom queries or build logic.
#
# ******** NOTE ********
# We have attempted to detect the languages in your repository. Please check
# the `language` matrix defined below to confirm you have the correct set of
# supported CodeQL languages.
#
name: "CodeQL Advanced"

on:
push:
branches: [ "main" ]
pull_request:
branches: [ "main" ]
schedule:
- cron: '35 9 * * 0'

jobs:
analyze:
name: Analyze (${{ matrix.language }})
# Runner size impacts CodeQL analysis time. To learn more, please see:
# - https://gh.io/recommended-hardware-resources-for-running-codeql
# - https://gh.io/supported-runners-and-hardware-resources
# - https://gh.io/using-larger-runners (GitHub.com only)
# Consider using larger runners or machines with greater resources for possible analysis time improvements.
runs-on: ${{ (matrix.language == 'swift' && 'macos-latest') || 'ubuntu-latest' }}
permissions:
# required for all workflows
security-events: write

# required to fetch internal or private CodeQL packs
packages: read

# only required for workflows in private repositories
actions: read
contents: read

strategy:
fail-fast: false
matrix:
include:
- language: actions
build-mode: none
- language: javascript-typescript
build-mode: none
- language: ruby
build-mode: none

steps:
- name: Checkout repository
uses: actions/checkout@v4
# Initializes the CodeQL tools for scanning.
- name: Initialize CodeQL
uses: github/codeql-action/init@v4
with:
languages: ${{ matrix.language }}
build-mode: ${{ matrix.build-mode }}

- name: Run manual build steps
if: matrix.build-mode == 'manual'
shell: bash
run: |
echo 'If you are using a "manual" build mode for one or more of the' \
'languages you are analyzing, replace this with the commands to build' \
'your code, for example:'
echo ' make bootstrap'
echo ' make release'
exit 1

- name: Perform CodeQL Analysis
uses: github/codeql-action/analyze@v4
with:
category: "/language:${{matrix.language}}"
65 changes: 65 additions & 0 deletions .github/workflows/jekyll-preview.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,65 @@
# # This workflow uses actions that are not certified by GitHub.
# # They are provided by a third-party and are governed by
# # separate terms of service, privacy policy, and support
# # documentation.
#
# # Sample workflow for building and deploying a Jekyll site to GitHub Pages
# name: Deploy Jekyll site to Pages preview environment
# on:
# # Runs on pull requests targeting the default branch
# pull_request_target:
# branches: ["main"]
# # Sets permissions of the GITHUB_TOKEN to allow deployment to GitHub Pages
# permissions:
# contents: read
# pages: write
# id-token: write
# # Allow only one concurrent deployment per PR, skipping runs queued between the run in-progress and latest queued.
# # However, do NOT cancel in-progress runs as we want to allow these production deployments to complete.
# concurrency:
# group: "pages-preview @ ${{ github.event.pull_request.head.label || github.head_ref || github.ref }}"
# cancel-in-progress: false
# jobs:
# # Build job
# build:
# environment:
# name: "Pages Preview"
# # Limit permissions of the GITHUB_TOKEN for untrusted code
# permissions:
# contents: read
# runs-on: ubuntu-latest
# steps:
# - name: Checkout
# uses: actions/checkout@v6.0.2
# with:
# # For PRs make sure to checkout the PR branch
# ref: ${{ github.event.pull_request.head.sha }}
# repository: ${{ github.event.pull_request.head.repo.full_name }}
# - name: Setup Pages
# uses: actions/configure-pages@v6.0.0
# - name: Build with Jekyll
# uses: actions/jekyll-build-pages@44a6e6beabd48582f863aeeb6cb2151cc1716697 # v1
# with:
# source: ./
# destination: ./_site
# - name: Upload artifact
# # Automatically uploads an artifact from the './_site' directory by default
# uses: actions/upload-pages-artifact@v5.0.0
# # Deployment job
# deploy:
# environment:
# name: "Pages Preview"
# url: ${{ steps.deployment.outputs.page_url }}
# # Sets permissions of the GITHUB_TOKEN to allow deployment to GitHub Pages
# permissions:
# contents: read
# pages: write
# id-token: write
# runs-on: ubuntu-latest
# needs: build
# steps:
# - name: Deploy to GitHub Pages
# id: deployment
# uses: actions/deploy-pages@v5.0.0
# with:
# preview: "true"
51 changes: 51 additions & 0 deletions .github/workflows/jekyll.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,51 @@
# This workflow uses actions that are not certified by GitHub.
# They are provided by a third-party and are governed by
# separate terms of service, privacy policy, and support
# documentation.

# Sample workflow for building and deploying a Jekyll site to GitHub Pages
name: Deploy Jekyll site to Pages
on:
# Runs on pushes targeting the default branch
push:
branches: ["main"]
# Allows you to run this workflow manually from the Actions tab
workflow_dispatch:
# Sets permissions of the GITHUB_TOKEN to allow deployment to GitHub Pages
permissions:
contents: read
pages: write
id-token: write
# Allow only one concurrent deployment, skipping runs queued between the run in-progress and latest queued.
# However, do NOT cancel in-progress runs as we want to allow these production deployments to complete.
concurrency:
group: "pages"
cancel-in-progress: false
jobs:
# Build job
build:
runs-on: ubuntu-latest
steps:
- name: Checkout
uses: actions/checkout@v6.0.2
- name: Setup Pages
uses: actions/configure-pages@v6.0.0
- name: Build with Jekyll
uses: actions/jekyll-build-pages@44a6e6beabd48582f863aeeb6cb2151cc1716697 # v1
with:
source: ./
destination: ./_site
- name: Upload artifact
# Automatically uploads an artifact from the './_site' directory by default
uses: actions/upload-pages-artifact@v5.0.0
# Deployment job
deploy:
environment:
name: github-pages
url: ${{ steps.deployment.outputs.page_url }}
runs-on: ubuntu-latest
needs: build
steps:
- name: Deploy to GitHub Pages
id: deployment
uses: actions/deploy-pages@v5.0.0
30 changes: 16 additions & 14 deletions .github/workflows/stale.yml
Original file line number Diff line number Diff line change
Expand Up @@ -2,21 +2,23 @@ name: Mark stale PRs
on:
workflow_dispatch:
schedule:
- cron: "0 12 * * *"

- cron: "0 12 * * *"
permissions:
contents: read
issues: write
pull-requests: write
jobs:
stale:
runs-on: ubuntu-latest
steps:
- uses: actions/stale@v8
with:
stale-pr-message: >
This pull request has been automatically marked as stale because it has not
had recent activity. It will be closed if no further activity occurs.
Thank you for your contributions.
stale-pr-label: "stale"
exempt-pr-labels: "pinned,security"
days-before-pr-stale: 30
days-before-pr-close: 7
ascending: true
operations-per-run: 100
- uses: actions/stale@v10.2.0
with:
stale-pr-message: >
This pull request has been automatically marked as stale because it has not had recent activity. It will be closed if no further activity occurs. Thank you for your contributions.

stale-pr-label: "stale"
exempt-pr-labels: "pinned,security"
days-before-pr-stale: 30
days-before-pr-close: 7
ascending: true
operations-per-run: 100
38 changes: 18 additions & 20 deletions .github/workflows/tests.yml
Original file line number Diff line number Diff line change
@@ -1,28 +1,26 @@
name: GitHub Actions CI
on:
push:
branches: master
pull_request: []
branches: main
pull_request:
merge_group:
permissions:
contents: read
jobs:
tests:
runs-on: ubuntu-latest
steps:
- name: Set up Git repository
uses: actions/checkout@v3

- name: Set up Ruby
uses: ruby/setup-ruby@v1
with:
bundler-cache: true

- name: Set up Node
uses: actions/setup-node@v3

- name: Bootstrap
run: script/bootstrap
env:
SKIP_BUNDLER: true

- name: Tests
run: script/test
- name: Set up Git repository
uses: actions/checkout@v6.0.2
- name: Set up Ruby
uses: ruby/setup-ruby@c4e5b1316158f92e3d49443a9d58b31d25ac0f8f # v1
with:
bundler-cache: true
- name: Set up Node
uses: actions/setup-node@v6.4.0
- name: Bootstrap
run: script/bootstrap
env:
SKIP_BUNDLER: true
- name: Tests
run: script/test
2 changes: 1 addition & 1 deletion .gitignore
Original file line number Diff line number Diff line change
Expand Up @@ -3,11 +3,11 @@
.bundle
.jekyll-metadata
.ruby-version
.tool-versions
.sass-cache/
/vendor
_site/
bin
css/main.scss
test/node_modules
test/package-lock.json
Gemfile.lock
2 changes: 1 addition & 1 deletion .ruby-version
Original file line number Diff line number Diff line change
@@ -1 +1 @@
2.7.5
3.3.5
4 changes: 3 additions & 1 deletion CODEOWNERS
Original file line number Diff line number Diff line change
@@ -1 +1,3 @@
* @github/communities-oss-reviewers
* @github/communities-oss-reviewers
articles/legal.md @github/legal-oss
articles/leadership-and-governance.md @github/legal-oss
2 changes: 1 addition & 1 deletion CODE_OF_CONDUCT.md
Original file line number Diff line number Diff line change
Expand Up @@ -47,7 +47,7 @@ threatening, offensive, or harmful.

This Code of Conduct applies both within project spaces and in public spaces
when an individual is representing the project or its community. Examples of
representing a project or community includes using an official project e-mail
representing a project or community include using an official project e-mail
address, posting via an official social media account, or acting as an appointed
representative at an online or offline event. Representation of a project may be
further defined and clarified by project maintainers.
Expand Down
Loading