You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
@@ -20,138 +20,9 @@ This is a set of scripts that use these APIs to access and manage alerts. The sc
20
20
- requires read access to the repository, organization or Enterprise you are querying
21
21
- Note that Secret Scanning alerts are only available to admins of the repository, organization or Enterprise, a security manager, or where otherwise granted access
22
22
23
-
## 🔧 The `githubapi.py` Module
24
-
25
-
The `githubapi.py` module is a lightweight GitHub API client that provides a wrapper around the GitHub REST API. It handles authentication, pagination, rate limiting, and provides convenient methods for accessing GitHub Advanced Security alerts. All scripts in this repository use this module as their foundation.
26
-
27
-
### Key Features
28
-
29
-
-**Authentication**: Automatically handles GitHub token authentication via the `GITHUB_TOKEN` environment variable or passed token
30
-
-**Automatic Pagination**: Supports cursor-based pagination to retrieve all results across multiple pages
31
-
-**Rate Limiting**: Automatically detects and handles GitHub API rate limits by waiting and retrying
32
-
-**Flexible Scoping**: Query at repository, organization, or Enterprise level
33
-
-**Date Filtering**: Filter results by date with support for ISO 8601 formats or relative dates (e.g., `7d` for 7 days ago)
34
-
-**TLS Support**: Configurable TLS certificate verification, including support for custom CA bundles and self-signed certificates
35
-
-**Error Handling**: Robust error handling with detailed logging
36
-
37
-
### The `GitHub` Class
38
-
39
-
The main class in the module is `GitHub`, which provides methods to interact with the GitHub API.
40
-
41
-
#### Initialization
42
-
43
-
```python
44
-
from githubapi import GitHub
45
-
46
-
# Initialize with token from environment variable
47
-
gh = GitHub()
48
-
49
-
# Or provide token explicitly
50
-
gh = GitHub(token="ghp_your_token_here")
51
-
52
-
# For GitHub Enterprise Server with custom hostname
List Dependabot alerts with optional state and date filtering.
88
-
89
-
### Utility Functions
90
-
91
-
**`parse_date(date_string)`**
92
-
93
-
Parse a date string into a datetime object. Supports:
94
-
- Relative dates: `"7d"` (7 days ago), `"30d"` (30 days ago)
95
-
- ISO 8601 dates: `"2024-10-08"`, `"2024-10-08T12:00:00Z"`
96
-
- Partial ISO dates (timezone automatically added if missing)
97
-
98
-
```python
99
-
from githubapi import parse_date
100
-
101
-
# Relative date
102
-
since = parse_date("7d") # 7 days ago
103
-
104
-
# Absolute date
105
-
since = parse_date("2024-10-08") # Specific date
106
-
```
107
-
108
-
### Usage Example
109
-
110
-
Here's a complete example showing how to use `githubapi.py` in your own scripts:
111
-
112
-
```python
113
-
#!/usr/bin/env python3
114
-
115
-
import os
116
-
from githubapi import GitHub, parse_date
117
-
118
-
# Initialize the GitHub client
119
-
gh = GitHub(token=os.getenv("GITHUB_TOKEN"))
120
-
121
-
# List secret scanning alerts for an organization from the last 30 days
122
-
since = parse_date("30d")
123
-
for alert in gh.list_secret_scanning_alerts(
124
-
name="my-org",
125
-
scope="org",
126
-
state="open",
127
-
since=since
128
-
):
129
-
print(f"Alert: {alert['secret_type']} in {alert['repository']['full_name']}")
130
-
131
-
# Query a custom endpoint with pagination
132
-
for result in gh.query(
133
-
scope="org",
134
-
name="my-org",
135
-
endpoint="/repos",
136
-
paging="cursor"
137
-
):
138
-
print(f"Repository: {result['name']}")
139
-
```
140
-
141
-
### Error Handling and Rate Limiting
142
-
143
-
The module automatically handles:
144
-
-**Rate Limits**: When approaching the API rate limit, the client automatically slows down requests and waits when the limit is reached
145
-
-**Connection Errors**: Gracefully handles network issues and stops with available data
146
-
-**HTTP Errors**: Raises appropriate exceptions for 4xx and 5xx status codes
147
-
148
-
All operations include debug logging that can be enabled with `logging.basicConfig(level=logging.DEBUG)`.
149
-
150
-
## 🚀 Usage
151
-
152
-
Generally, the date in `--since` can be specified as `YYYY-MM-DD` or as `Nd` where `N` is the number of days ago. Full ISO formats are also supported. If a timezone is not specified, the date is assumed to be in UTC (`Z` timezone).
153
-
154
-
Run each specific script according to the help for each script.
25
+
A note on common arguments: generally, the date in `--since` can be specified as `YYYY-MM-DD` or as `Nd` where `N` is the number of days ago. Full ISO formats are also supported. If a timezone is not specified, the date is assumed to be in UTC (`Z` timezone).
155
26
156
27
### List secret scanning alerts
157
28
@@ -454,7 +325,148 @@ options:
454
325
ISO date string to filter secrets detected after this date (e.g., 2023-01-01)
455
326
```
456
327
457
-
## 🛠️ Alternatives
328
+
## 🔧 The `githubapi.py` Module
329
+
330
+
The `githubapi.py` module is a lightweight GitHub API client that provides a wrapper around the GitHub REST API. It handles authentication, pagination, rate limiting, and provides convenient methods for accessing GitHub Advanced Security alerts. All scripts in this repository use this module as their foundation.
331
+
332
+
### Key Features
333
+
334
+
-**Authentication**: Automatically handles GitHub token authentication via the `GITHUB_TOKEN` environment variable or passed token
335
+
-**Automatic Pagination**: Supports cursor-based pagination to retrieve all results across multiple pages
336
+
-**Rate Limiting**: Automatically detects and handles GitHub API rate limits by waiting and retrying
337
+
-**Flexible Scoping**: Query at repository, organization, or Enterprise level
338
+
-**Date Filtering**: Filter results by date with support for ISO 8601 formats or relative dates (e.g., `7d` for 7 days ago)
339
+
-**TLS Support**: Configurable TLS certificate verification, including support for custom CA bundles and self-signed certificates
340
+
-**Error Handling**: Robust error handling with detailed logging
341
+
342
+
### The `GitHub` Class
343
+
344
+
The main class in the module is `GitHub`, which provides methods to interact with the GitHub API.
345
+
346
+
#### Initialization
347
+
348
+
```python
349
+
from githubapi import GitHub
350
+
351
+
# Initialize with token from environment variable
352
+
gh = GitHub()
353
+
354
+
# Or provide token explicitly
355
+
gh = GitHub(token=some_variable)
356
+
357
+
# For GitHub Enterprise Server with custom hostname
Make a GET request to the specified URL with optional headers and parameters, respecting rate limits automatically by raising a `RateLimited` exception when necessary.
0 commit comments