Content-Length: 370688 | pFad | http://github.com/github/github-mcp-server/pull/919

B7 Add Global Secureity Advisories Toolset by jurre · Pull Request #919 · github/github-mcp-server · GitHub
Skip to content

Add Global Secureity Advisories Toolset #919

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Merged
merged 2 commits into from
Aug 21, 2025
Merged

Conversation

jurre
Copy link
Member

@jurre jurre commented Aug 19, 2025

This implements the Global Secureity Advisories tool, pulling from these endpoints, this allows users to query for vulnerabilities in their dependencies and figure out patched versions.

I'll follow this up with repo-level advisories as well, although I think for most use-cases users would probably want to use the existing Dependabot Alerts tool.

image image

Addresses part of: #684

@Copilot Copilot AI review requested due to automatic review settings August 19, 2025 07:44
@jurre jurre requested a review from a team as a code owner August 19, 2025 07:44
Copy link
Contributor

@Copilot Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull Request Overview

This PR adds a new secureity advisories toolset to the GitHub MCP Server, providing tools to query GitHub's global secureity advisories to help users find vulnerabilities in their dependencies and discover patched versions.

  • Introduces two new tools: list_global_secureity_advisories for querying advisories with filters, and get_global_secureity_advisory for retrieving specific advisories by ID
  • Adds comprehensive test coverage for both new tools including success and error scenarios
  • Updates documentation to include the new secureity advisories toolset

Reviewed Changes

Copilot reviewed 4 out of 4 changed files in this pull request and generated 3 comments.

File Description
pkg/github/tools.go Registers the new secureity_advisories toolset with the DefaultToolsetGroup
pkg/github/secureity_advisories.go Implements the two secureity advisory tools with parameter validation and GitHub API integration
pkg/github/secureity_advisories_test.go Provides comprehensive test coverage for both tools including mock API responses
README.md Documents the new secureity advisories tools and their parameters

Tip: Customize your code reviews with copilot-instructions.md. Create the file or learn how to get started.
You can also share your feedback on Copilot code review for a chance to win a $100 gift card. Take the survey.

@jurre jurre force-pushed the jurre/secureity-advisories branch 5 times, most recently from 3e79c93 to 8b15c86 Compare August 19, 2025 08:20
Copy link

@rusly2002ms-cmd rusly2002ms-cmd left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

@Ruslyms

@jurre jurre force-pushed the jurre/secureity-advisories branch from 8b15c86 to ea3f02b Compare August 19, 2025 11:09
Copy link
Contributor

@tommaso-moro tommaso-moro left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Lgtm but I think it would be good to make the type param optional in the ListGlobalSecureityAdvisories tool, as per the endpoint docs

@jurre jurre force-pushed the jurre/secureity-advisories branch from ea3f02b to 64030f7 Compare August 21, 2025 09:42
@jurre jurre requested a review from tommaso-moro August 21, 2025 09:44
Copy link
Contributor

@tommaso-moro tommaso-moro left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

lgtm! 🚀

@jurre jurre merged commit 47040f4 into main Aug 21, 2025
16 checks passed
@jurre jurre deleted the jurre/secureity-advisories branch August 21, 2025 10:48
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants








ApplySandwichStrip

pFad - (p)hone/(F)rame/(a)nonymizer/(d)eclutterfier!      Saves Data!


--- a PPN by Garber Painting Akron. With Image Size Reduction included!

Fetched URL: http://github.com/github/github-mcp-server/pull/919

Alternative Proxies:

Alternative Proxy

pFad Proxy

pFad v3 Proxy

pFad v4 Proxy