How we're using Sourcegraph and a Slack bot to detect vulnerabilities and react quickly
3.24T1.5 sourceSourcegraph Blog
Source record
Published by Sourcegraph Blog (T1.5 source). The original is at https://sourcegraph.com/blog/slack-bot-supply-chain-incident-response.
Pipeline notes
The summary and note below are generated by the signal pipeline — they are Beyond Desk’s reading, not quotations from the source.
SummarySourcegraph describes a Slack bot that triages incoming GitHub security advisories, then on a single human reaction runs detection queries, a blog scaffold, social drafts, and a 35-second demo video. The operator's remaining task is to review the outputs for honesty.
Why it mattersConcrete human-on-the-loop pattern for security triage, with enough specifics (rocket reaction, pipeline steps) to use as a reference design for similar advisory bots.

Cited by
No citations on record.
