{"repo":"advanced-security/ghas-to-csv","free":true,"listed":false,"github":"https://github.com/advanced-security/ghas-to-csv","clone":"git clone https://github.com/advanced-security/ghas-to-csv.git","description":"Play with GHAS API to provide posture data over time","language":"Python","stars":41,"topics":["csv","github-actions","github-advanced-security"],"license":"MIT","category":"scrapers-browser-automation","readme_excerpt":"GitHub Advanced Security to CSV Simple GitHub Action to scrape the GitHub Advanced Security API and shove it into a CSV. Note You need to set and store a PAT because the built-in GITHUB TOKEN doesn't have the appropriate permissions for this Action to get all of the alerts. What? GitHub Advanced Security can compile a ton of information on the vulnerabilities in your project's code, supply chain, and any secrets (like API keys or other sensitive info) that might have been accidentally exposed. That information is surfaced in the repository, organization, or enterprise security overview and the API. The overview has all sorts of neat filters and such you can play with. The API is great and powers all manner of partner integrations, but there's no direct CSV export. The API changes a bit based on the version of GitHub you're using. This Action gathers the GitHub API endpoint to use from the runner's environment variables, so as long as you have a license for Advanced Security, this should work as expected in GitHub Enterprise Server and GitHub AE too. Why? Because I really want to see this data as a time-series to understand it, and Flat Data doesn't support paginated APIs (yet?) ... so ... it's really an experiment and I wanted to play around with the shiny new toy. Also ... CSV files are the dead-simple ingest point for a ton of other software services you might want have to use in business. And some people just like CSV files and want to do things in spreadsheets and I'm not","default_branch":null,"files":null,"tree":[],"storefront":"/r/advanced-security","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/advanced-security/ghas-to-csv/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}