pullrequests Search Results · language:Dune language:Python language:JavaScript language:Python language:PHP language:PHP
Filter by
161M results
Summary
marketplace.json had owner as a string, which blocks /plugin marketplace add karlkfi/claude-workspace-guard with:
owner: Invalid input: expected object, received string
Claude Code s marketplace ...
Problem
GitHub Actions in .github/workflows/*.yml are pinned to mutable version tags (@v4, @v3.3.0, @v0.36.0, etc.) rather than
immutable commit SHAs. SLSA v1.0 supply-chain Level 2 requires pinned (immutable) ...
🤖 AI Security Remediation
🟢 Auto-merge eligible — will merge after CI passes.
📊 Analysis
- Severity: MEDIUM
- Confidence: 85%
- Auto-fix allowed: True
📝 Summary
The use of subprocess.run with ...
ai-remediation
severity-medium
Bumps the ci-dependencies group with 3 updates: actions/dependency-review-action, codecov/codecov-action and
hynek/build-and-inspect-python-package.
Updates actions/dependency-review-action from 4.9.0 ...
dependencies
github_actions
Bumps web-vitals from 4.2.4 to 5.3.0. details summary Changelog /summary p em Sourced from a href=
https://github.com/GoogleChrome/web-vitals/blob/main/CHANGELOG.md web-vitals s changelog /a . /em /p blockquote ...
dependencies
javascript
Weekly Permissions sync 2026-06-02
Thanks for asking me to work on this. I will get started on it and keep this PR s description up to date as I form a
plan and make progress.
!-- START COPILOT ORIGINAL PROMPT --
details
summary Original ...
See Commits and Changes for more details.
Created by img src= https://prod.download/pull-18h-svg valign= bottom / pull[bot] (v2.0.0-alpha.4)
Can you help keep this open source service alive? 💖 Please ...
⤵️ pull
See Commits and Changes for more details.
Created by img src= https://prod.download/pull-18h-svg valign= bottom / pull[bot] (v2.0.0-alpha.4)
Can you help keep this open source service alive? 💖 Please ...
⤵️ pull