You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Recent-changes-focused UK AI Open Code Risk & Resilience review of github/gh-aw over the last 7 days (since 2026-08-26). 257 commits merged, 55 flagged as security-signal commits, 41 open security-labeled issues, 10 open code-scanning alerts (0 secret-scanning alerts). No new critical exposure was found; the dominant pattern is remediation-velocity / alert-hygiene gaps: several CodeQL alerts already have open tracking issues asserting the underlying risk is a false positive or already fixed, yet the alerts remain undismissed in code scanning. One alert (README.md, #564) has no tracking issue at all and is the only genuinely untracked finding this run. Sub-agent dispatch (asset-tier-classifier, control-verifier, ai-risk-scorer) failed to return output on both attempts; the analysis below was synthesized directly from repo inspection and issue history with partial confidence as a result — recommend re-running sub-agents next cycle for deeper verification.
No repository-hiding or access-restriction action is recommended anywhere in this review; all findings are open-source/CI-visible artifacts, and outcomes favor faster alert lifecycle closure over concealment.
Asset graph summary (recent-change scoped)
Asset graph (7 areas touched by open alerts)
#
Area
Type
Ownership signal
Notes
1
pkg/parser/import_error.go
Go — parser error formatting
Unclear — no CODEOWNERS file exists in repo
New/untracked alert pair
2
pkg/workflow/graders_config.go
Go — workflow grader config
Unclear — no CODEOWNERS
Tracked in #57472, #54037 as recurring false positive
Scope note: the repository has no CODEOWNERS file, so ownership confidence is "Unclear" across every area — this is itself a structural finding (see Control Gaps below), not specific to any one file.
Only untracked finding; low severity (doc content) but needs an owner and issue
Control verification gaps
Ownership controls: gap. No CODEOWNERS file exists in the repository root or .github/, so every changed area above has "unclear" ownership routing for security alerts.
SDLC controls: present. CodeQL, actionlint, and JS scanning are actively running (evidenced by the 10 open alerts themselves and prior remediation issues) — detection pipeline is healthy.
Dependency controls: no dependency-specific alerts in this window (secret-scanning empty; no Dependabot alerts surfaced in this batch).
Secret exposure controls: no open secret-scanning alerts — clean for this window.
Runtime observability: unable to confirm without deeper file-level review (sub-agent verification failed); flagged as a follow-up.
Rationale: the three false-positive/stale cases (#57472/#54037, #57728) score low on exposure amplification and high on patchability — the real gap is process (un-dismissed alerts), not code risk, so remediation should focus on alert lifecycle closure rather than new code changes. project_command.go (#652/#651) and ensure-docs-slide-pdf.js (#663) carry genuine unresolved verification work and stay at moderate priority. README.md (#564) is elevated to B purely because it lacks any tracking issue — a governance-coverage gap independent of severity.
Open a tracking issue and assign an owner; review flagged content
14 days
Low (governance)
Repository-wide
Add a CODEOWNERS file to give every security-relevant path a clear ownership/escalation route
30 days
Exception register
No temporary exceptions are proposed this run — all findings above are routed to remediation actions with SLAs rather than exception grants. If a future review needs to grant a temporary exception (e.g., for a confirmed-benign alert pending a batch dismissal), it must include: threat hypothesis, exploit acceleration claim, operational weakness, expiry date (≤30 days), and mitigation plan — none met that bar this cycle.
Limitation note: the three specialist sub-agents (asset-tier-classifier, control-verifier, ai-risk-scorer) were dispatched twice each and returned no output both times; this report was synthesized directly from repo/issue evidence with partial confidence. Recommend re-running sub-agent dispatch next cycle once the underlying issue is resolved.
reacted with thumbs up emoji reacted with thumbs down emoji reacted with laugh emoji reacted with hooray emoji reacted with confused emoji reacted with heart emoji reacted with rocket emoji reacted with eyes emoji
Uh oh!
There was an error while loading. Please reload this page.
Executive summary
Recent-changes-focused UK AI Open Code Risk & Resilience review of
github/gh-awover the last 7 days (since 2026-08-26). 257 commits merged, 55 flagged as security-signal commits, 41 open security-labeled issues, 10 open code-scanning alerts (0 secret-scanning alerts). No new critical exposure was found; the dominant pattern is remediation-velocity / alert-hygiene gaps: several CodeQL alerts already have open tracking issues asserting the underlying risk is a false positive or already fixed, yet the alerts remain undismissed in code scanning. One alert (README.md, #564) has no tracking issue at all and is the only genuinely untracked finding this run. Sub-agent dispatch (asset-tier-classifier, control-verifier, ai-risk-scorer) failed to return output on both attempts; the analysis below was synthesized directly from repo inspection and issue history with partial confidence as a result — recommend re-running sub-agents next cycle for deeper verification.No repository-hiding or access-restriction action is recommended anywhere in this review; all findings are open-source/CI-visible artifacts, and outcomes favor faster alert lifecycle closure over concealment.
Asset graph summary (recent-change scoped)
Asset graph (7 areas touched by open alerts)
pkg/parser/import_error.goCODEOWNERSfile exists in repopkg/workflow/graders_config.goCODEOWNERSpkg/cli/add_package_manifest_includes.goCODEOWNERSscripts/ensure-docs-slide-pdf.jsCODEOWNERSCODEOWNERSpkg/cli/project_command.goCODEOWNERSREADME.mdCODEOWNERSScope note: the repository has no
CODEOWNERSfile, so ownership confidence is "Unclear" across every area — this is itself a structural finding (see Control Gaps below), not specific to any one file.Tier classification table
Tier classification (A/B/C/D)
pkg/parser/import_error.gopkg/workflow/graders_config.gopkg/cli/add_package_manifest_includes.goscripts/ensure-docs-slide-pdf.jspkg/cli/project_command.goREADME.mdControl verification gaps
CODEOWNERSfile exists in the repository root or.github/, so every changed area above has "unclear" ownership routing for security alerts.Risk-scoring table and rationale
AI-aware risk scoring
pkg/parser/import_error.gopkg/workflow/graders_config.gopkg/cli/add_package_manifest_includes.goscripts/ensure-docs-slide-pdf.jspkg/cli/project_command.goREADME.mdRationale: the three false-positive/stale cases (#57472/#54037, #57728) score low on exposure amplification and high on patchability — the real gap is process (un-dismissed alerts), not code risk, so remediation should focus on alert lifecycle closure rather than new code changes.
project_command.go(#652/#651) andensure-docs-slide-pdf.js(#663) carry genuine unresolved verification work and stay at moderate priority.README.md(#564) is elevated to B purely because it lacks any tracking issue — a governance-coverage gap independent of severity.Remediation queue with SLAs
pkg/cli/project_command.go(#652/#651/#52749)scripts/ensure-docs-slide-pdf.js(#663/#53737)pkg/parser/import_error.go(#671/#670)README.md(#564)CODEOWNERSfile to give every security-relevant path a clear ownership/escalation routeException register
No temporary exceptions are proposed this run — all findings above are routed to remediation actions with SLAs rather than exception grants. If a future review needs to grant a temporary exception (e.g., for a confirmed-benign alert pending a batch dismissal), it must include: threat hypothesis, exploit acceleration claim, operational weakness, expiry date (≤30 days), and mitigation plan — none met that bar this cycle.
Operational metrics baseline
CODEOWNERSfile covers any of the 7 flagged areas.README.md, [Custom Engine Test] Test Issue Created by Custom Engine #564) has zero tracking/recovery path currently assigned.Limitation note: the three specialist sub-agents (asset-tier-classifier, control-verifier, ai-risk-scorer) were dispatched twice each and returned no output both times; this report was synthesized directly from repo/issue evidence with partial confidence. Recommend re-running sub-agent dispatch next cycle once the underlying issue is resolved.
All reactions