What is DevOps? A guide to common methods and misconceptions
By now, most people in technology are familiar with the term DevOps. What we call “DevOps” will often differ between organizations, yet one thing remains the same: DevOps is defined…
By now, most people in technology are familiar with the term DevOps. What we call “DevOps” will often differ between organizations, yet one thing remains the same: DevOps is defined…
Last week we launched code scanning out of beta and have since announced integrations with static analysis and developer security training solutions. By expanding our GitHub security ecosystem, developers can…
Last week, we launched code scanning for all open source and enterprise developers, and we promised we’d share more on our extensibility capabilities and the GitHub security ecosystem. Today, we’re…
Now available, code scanning is a developer-first, GitHub-native approach to easily find security vulnerabilities before they reach production.
Integrating static analysis security testing into the developer workflow is hard. We discuss the challenges and how to overcome them
GitHub provides the security capabilities to achieve Level 1 of the OWASP DevSecOps Maturity Model. In this post, we explore the principles of DSOMM Level 1 and how you can implement secret scanning, SCA, SAST and DAST using native tooling on GitHub.
Simon Bennetts is the OWASP Zed Attack Proxy (ZAP) Project Leader and a Distinguished Engineer at StackHawk, a company that uses ZAP to help users fix application security bugs before they hit production. Prior to making the move into security, he was a developer for 25 years and strongly believes that you can’t build secure web applications without knowing how to attack them.
The open source Git project just released Git 2.28 with features and bug fixes from over 58 contributors, 13 of them new. We last caught up with you on the…
Now you can create custom workflow templates to promote best practices and consistency across your organization.
Now you can define secrets for an organization, making it easier to keep secrets synced across multiple repositories.
Explore some impactful open source projects being created by teams around the world in response to COVID-19.
Learn more about autograding and how it provides students with immediate feedback they can apply before an assignment is due.
Learn more about updates we’ve made to our Terms of Service and Privacy Statement.
We’re sharing interviews from several open source contributors about their projects, challenges, and what a GitHub sponsorship means to them. This week, hear from Fatih Arslan.
Join us for the latest episode of The Check-In webcast, our quarterly round-up of what’s new at GitHub for our business customers.
A roundup of our favorite 2018 ships for collaboration, business, platform, security, and learning.
Build what’s next on GitHub, the place for anyone from anywhere to build anything.
Get tickets to the 10th anniversary of our global developer event on AI, DevEx, and security.