Skip to content

GitHub Token Scanning for public repositories (public beta)

GitHub Token Scanning automatically scans public repositories to check for known token formats. If and when a token is found, it is checked against provider APIs. The provider will then validate the token and send information to the owner about next steps (token cancellation and re-issuing).

Learn more about Token Scanning

We have improved how we alert repositories, display multiple alerts and list information on individual alerts to help you get to the security information you need faster and easier.

Learn more about GitHub Security Alerts

See more