Search results for: REST API
Kicking off Cybersecurity Awareness Month 2025: Researcher spotlights and enhanced incentives
For this year’s Cybersecurity Awareness Month, GitHub’s Bug Bounty team is excited to offer some additional incentives to security researchers!
Using AI to map hope for refugees with UNHCR, the UN Refugee Agency
With the help of GitHub, UNHCR turned drone imagery into maps — helping refugees in Kakuma and Kalobeyei build sustainable, powered communities.
Our plan for a more secure npm supply chain
Addressing a surge in package registry attacks, GitHub is strengthening npm’s security with stricter authentication, granular tokens, and enhanced trusted publishing to restore trust in the open source ecosystem.
Dependabot alerts now support production context prioritization in public preview
Dependabot alerts can now be filtered and prioritized using production context from external artifact registries, including JFrog Artifactory, and your own CI/CD workflows. This feature is available in public preview.…
How to use the GitHub and JFrog integration for secure, traceable builds from commit to production
Connect commits to artifacts without switching tools.
5 tips for writing better custom instructions for Copilot
This guide offers five essential tips for writing effective GitHub Copilot custom instructions, covering project overview, tech stack, coding guidelines, structure, and resources, to help developers get better code suggestions.
Under the hood: Exploring the AI models powering GitHub Copilot
Learn how GitHub Copilot’s evolving models and infrastructure center developer choice and power agentic workflows.
How GitHub Models can help open source maintainers focus on what matters
Learn how GitHub Models helps open source maintainers automate repetitive tasks like issue triage, duplicate detection, and contributor onboarding — saving hours each week.
Template URLs for fine-grained PATs and updated permissions UI
@cole-hartman and @dorisbwang joined the GitHub Apps team for the summer with a focus on improving the developer experience around fine-grained PAT creation. They worked with our design and product…
Rediscovering joy in learning: Jason Lengstorf on the state of development
We sit down with Jason Lengstorf on the GitHub Podcast, where he shares his perspective on education, AI, open source, and more.
Safeguarding VS Code against prompt injections
When a chat conversation is poisoned by indirect prompt injection, it can result in the exposure of GitHub tokens, confidential files, or even the execution of arbitrary code without the user’s explicit consent. In this blog post, we’ll explain which VS Code features may reduce these risks.
Enterprises can create organization roles for use across their enterprise, and custom role limits have been increased
Enterprise owners can now create a set of custom organization roles that are available across all their organizations. The core set of roles you use in your day-to-day work can…
Introducing metered GitHub Enterprise billing for Visual Studio subscriptions with GitHub Enterprise
Scaling your GitHub usage just got easier. Customers on the Visual Studio subscriptions with GitHub Enterprise bundle now have the option to transition to pay-as-you-go, usage-based billing for GitHub Enterprise…
Q1 2025 Innovation Graph update: Bar chart races, data visualization on the rise, and key research
Discover the latest trends and insights on public software development activity on GitHub with the quarterly release of data for the Innovation Graph, updated through March 2025.
Why we open sourced our MCP server, and what it means for you
Learn how maintainers are using the GitHub MCP Server and what they are building in this episode of the GitHub Podcast.
Securing the supply chain at scale: Starting with 71 important open source projects
Learn how the GitHub Secure Open Source Fund helped 71 open source projects significantly improve their security posture through direct funding, expert guidance, and actionable playbooks.
A practical guide on how to use the GitHub MCP server
Upgrade from a local MCP Docker image to GitHub’s hosted server and automate pull requests, continuous integration, and security triage in minutes — no tokens required.
Scaling for impact: How GitHub Copilot supercharges smallholder farmers
Empowering 10 million farm families by 2030 to generate $1 billion in new revenue. How GitHub helps One Acre Fund’s mission — driving real impact across Africa.
Solving the inference problem for open source AI projects with GitHub Models
How using GitHub’s free inference API can make your AI-powered open source software more accessible.
GitHub Apps can now review secret scanning push protection bypass and alert dismissal requests
You can now grant permissions to GitHub Apps to review secret scanning push protection bypass requests and alert dismissal requests. This makes it easier for organizations to set up automated…
The world's largest developer platform
GitHub
Build what’s next on GitHub, the place for anyone from anywhere to build anything.
The GitHub Podcast
Catch up on the GitHub podcast, a show dedicated to the topics, trends, stories and culture in and around the open source developer community on GitHub.