Copilot code review: Better coverage and more control
Enhancements to Copilot code reviews: personal settings, improved comment quality, and expanded language support.
Enhancements to Copilot code reviews: personal settings, improved comment quality, and expanded language support.
Dependabot is now generally available for execution on self-hosted GitHub Actions runners managed within Kubernetes clusters using the Actions Runner Controller (ARC). This setup provides auto-scaling, workload isolation, and improved…
Projects that use Gradle need to include dependencies that are resolved at build time in order to get a full, transitive dependency tree. To make this easier, dependency auto-submission now…
Maintaining and developing complex and risky code is never easy. See how we addressed the challenges of securing our SAML implementation with this behind-the-scenes look at building trust in our systems.
In this post, I’ll look at CVE-2025-0072, a vulnerability in the Arm Mali GPU, and show how it can be exploited to gain kernel code execution even when Memory Tagging Extension (MTE) is enabled.
CodeQL is the static analysis engine behind GitHub code scanning, which finds and remediates security issues in your code. We’ve recently released version 2.21.3 of CodeQL. Here’s what’s new and…
GitHub continually updates the default pattern set for secret scanning with new patterns and upgrades of existing patterns, helping ensure your repositories have comprehensive detection for different secret types. The…
Implementing features has never been easier: Just assign a task or issue to Copilot. It runs in the background with GitHub Actions and submits its work as a pull request.
We’ve released the public preview of GitHub Copilot app modernization for Java—an AI-powered solution designed to simplify and accelerate Java upgrades and cloud migrations. By combining the intelligence of GitHub…
This update to the commit details page enhances accessibility, building on valuable feedback from the community, and also improves security and performance. Inline comments are now visible by default Inline…
GitHub Enterprise Server (GHES) 3.17 enhances deployment efficiency, monitoring capabilities, code security, and policy management. Here are a few highlights in the 3.17 release: GitHub Advanced Security (GHAS) is now…
You can now disable the dependency graph for public repositories. This gives you more control over your repository’s data and security features. The dependency graph powers features like SBOMs, dependency…
Self-hosted runner network communication requirements GitHub has introduced fully qualified and wildcard domains into a new actions_inbound section within the meta API. This enhancement provides customers with a streamlined way…
CodeQL is the static analysis engine behind GitHub code scanning, which identifies and remediates security issues in your code. We’ve recently released CodeQL 2.21.2, which now supports Swift 6.1. With…
GitHub takes the Global Accessibility Awareness Day (GAAD) pledge.
Delegated alert dismissal, released in March 2025, allows you to require a review process before secret scanning alerts are dismissed. Secret Protection customers can now manage and review their dismissal…
GitHub Enterprise Cloud with data residency in the US is now generally available, allowing GitHub Enterprise Cloud customers greater flexibility in choosing where their code and repository data are stored.…
Curious about how AI models perform in real-world scenarios with GitHub Copilot? Same. We made a live video demo to find out, and wrote up our key takeaways.
SKU-level budgets are now available for all metered GitHub products. Administrators and billing managers can now set budgets for specific SKUs within a product. This gives you greater flexibility and…
Three maintainers share their tips for gracefully sunsetting open source projects.
GitHub’s dependency graph builds a tree of information about the packages your repository’s code depends on. This capability powers SBOM generation, Dependabot security updates, and more. There are three ways…
Build what’s next on GitHub, the place for anyone from anywhere to build anything.
Join us October 28-29 in San Francisco or online for GitHub Universe, our flagship developer event uniting people, agents, and the world’s code.