Skip to main content

Filtering alerts in the security overview

Use filters to view specific categories of alerts

Who can use this feature

Organization owners and security managers can access the organization-level security overview. Members of a team can see the security overview for repositories that the team has admin privileges for.

Hay disponible información general de seguridad para su empresa y para organizaciones si usa GitHub Advanced Security, que es gratuito durante la versión beta. Para más información, consulte "Acerca de GitHub Advanced Security".

Nota: La información general sobre seguridad se encuentra actualmente en versión beta y está sujeta a cambios.

About filtering the security overview

You can use filters in a security overview to narrow your focus based on a range of factors, like alert risk level, alert type, and feature enablement. Different filters are available depending on the specific view.

Filter by repository

QualifierDescription
repo:REPOSITORY-NAMEDisplays data for the specified repository.

Filter by whether security features are enabled

In the examples below, replace :enabled with :not-enabled to see repositories where security features are not enabled. These qualifiers are available in the main summary views.

QualifierDescription
code-scanning:enabledDisplay repositories that have set up code scanning.
dependabot:enabledDisplay repositories that have enabled Dependabot alerts.
secret-scanning:enabledDisplay repositories that have enabled secret scanning alerts.
not-enabled:anyDisplay repositories with at least one security feature that is not enabled.

Filter by repository type

These qualifiers are available in the main summary views.

QualifierDescription
is:internalDisplay internal repositories.
is:privateDisplay private repositories.
archived:trueDisplay archived repositories.
archived:falseOmit archived repositories.

Filter by number of alerts

These qualifiers are available in the main summary views.

QualifierDescription
code-scanning:nDisplay repositories that have n code scanning alerts. This qualifier can use =, > and < comparison operators.
secret-scanning:nDisplay repositories that have n secret scanning alerts. This qualifier can use =, > and < comparison operators.
dependabot:nDisplay repositories that have n Dependabot alerts. This qualifier can use =, > and < comparison operators.

Filter by team

These qualifiers are available in the main summary views.

QualifierDescription
team:TEAM-NAMEDisplays repositories that TEAM-NAME has admin privileges for.

Filter by topic

These qualifiers are available in the main summary views.

QualifierDescription
topic:TOPIC-NAMEDisplays repositories that are classified with TOPIC-NAME.

Additional filters for secret scanning alert views

QualifierDescription
provider:PROVIDER_NAMEDisplays alerts for all secrets issues by the specified provider.
secret-type:SERVICE_PROVIDERDisplays alerts for the specified secret and provider.
secret-type:CUSTOM-PATTERNDisplays alerts for secrets matching the specified custom pattern.

For more information, see "Secret scanning patterns."