-
Notifications
You must be signed in to change notification settings - Fork 245
Issues: cisagov/ScubaGear
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Author
Label
Projects
Milestones
Assignee
Sort
Issues list
Update code signing certificate in siging workflow
infrastructure
Related to configuring infrastructure necessary for the project
Determine need for and draft new or updated baseline policies related to service principal security
#1523
opened Jan 17, 2025 by
schrolla
Set of tenant configuration changes developed to mitigate vulnerabilities tested
#1522
opened Jan 17, 2025 by
schrolla
Create functional tests for Azure Sign Tool
Testing
This issue or task involves testing the automation tool function
#1520
opened Jan 17, 2025 by
james-garriss
1 task
Add support for markdown report output
public-reported
This issue is reported by the public users of the tool.
#1519
opened Jan 16, 2025 by
jed-exotic
2 tasks
Add Support for SARIF format in
public-reported
This issue is reported by the public users of the tool.
#1518
opened Jan 16, 2025 by
macko76
2 tasks
onedrive is still listed as a valid product name in sample configuration files
bug
This issue or pull request addresses broken functionality
Create documentation for how to use Invoke-ScubaCached
documentation
This issue or pull request improves or adds to documentation
#1516
opened Jan 16, 2025 by
buidav
Program ScubaGear to ignore the coexistence domain for DMARC
enhancement
This issue or pull request will add new or improve existing functionality
#1514
opened Jan 14, 2025 by
adhilto
Review and implement pipeline security best practices
epic
A high-level objective issue encompassing multiple issues instead of a specific unit of work
Errors when running SCUBA Gear
public-reported
This issue is reported by the public users of the tool.
question
This issue is a request for information or needs discussion
troubleshooting
Issues related to debugging unique set ups
#1511
opened Jan 13, 2025 by
ssy-lehmann
Get-ScubaSpfRecord returns in rdata all TXT records not only SPF
public-reported
This issue is reported by the public users of the tool.
#1510
opened Jan 10, 2025 by
slavag
Set version of AST in a config file
enhancement
This issue or pull request will add new or improve existing functionality
infrastructure
Related to configuring infrastructure necessary for the project
Explore incorporating Defender into the other baselines
baseline-document
Issues relating to the text in the baseline documents themselves
epic
A high-level objective issue encompassing multiple issues instead of a specific unit of work
Verify that secrets pulled from AKV are not sent to GitHub logs
enhancement
This issue or pull request will add new or improve existing functionality
infrastructure
Related to configuring infrastructure necessary for the project
Document current state of static and dynamic code review for ScubaGear code and pipeline actions
documentation
This issue or pull request improves or adds to documentation
enhancement
This issue or pull request will add new or improve existing functionality
Rewrite all the code to necessary to pull the secrets from AKV
documentation
This issue or pull request improves or adds to documentation
infrastructure
Related to configuring infrastructure necessary for the project
Clean up GitHub secrets
enhancement
This issue or pull request will add new or improve existing functionality
infrastructure
Related to configuring infrastructure necessary for the project
Create a new PSGallery API key before it expires
enhancement
This issue or pull request will add new or improve existing functionality
infrastructure
Related to configuring infrastructure necessary for the project
Create a distinct SP for KV access to enforce least priv.
enhancement
This issue or pull request will add new or improve existing functionality
Enforce least priv with the SP that uses KV
enhancement
This issue or pull request will add new or improve existing functionality
Update Azure Sign Tool to version 6.0.0
documentation
This issue or pull request improves or adds to documentation
enhancement
This issue or pull request will add new or improve existing functionality
Testing
This issue or task involves testing the automation tool function
Several policies are marked and counted as grey and manual checks when results are "N/A" and marked with a criticality of "Not-implemented" due to specific conditions
bug
This issue or pull request addresses broken functionality
Sync API permissions in JSON file with Markdown documentation
documentation
This issue or pull request improves or adds to documentation
enhancement
This issue or pull request will add new or improve existing functionality
Agency-reported issue: MS.TEAMS.5.1v1 displays warning for Microsoft apps
bug
This issue or pull request addresses broken functionality
Previous Next
ProTip!
no:milestone will show everything without a milestone.