
Security updates for apps and API access
Stricter requirements are being enforced for application authentication and cross-organization access
Stricter requirements are being enforced for application authentication and cross-organization access
The ability to allow enterprise administrators to see and manage repositories in the user namespace of Enterprise Managed Users (EMU) is now generally available. This feature set increases visibility of…
GitHub Team plans can now configure and enforce organization-level rulesets! Previously, this powerful governance capability was limited to Enterprise plans, but now Team plan customers can scale their use of…
GitHub now automatically computes and displays SHA256 checksums (digests) for all uploaded release assets. These digests are generated at upload time, immutable, and let you verify that downloaded assets haven’t…
Get insights on the latest trends from GitHub experts while catching up on these exciting new projects.
Plus, considerations in updating one of GitHub’s oldest and most heavily used features.
CodeQL version 2.21.0 has been released and includes TypeScript 5.8 support, a new Java query to detect exposed Spring Boot actuators, and support for new JavaScript libraries. TypeScript 5.8 support…
Explore the iterative development journey of GitHub’s sub-issues feature. Learn how we leveraged sub-issues to build and refine sub-issues, breaking down larger tasks into smaller, manageable ones.
GitHub’s dependency graph now supports a wider range of package ecosystems, including transitive path information and the registered name of the ecosystem. This change increases the accuracy and usefulness of…
Enterprise Cloud Importer (ECI) and the GraphQL endpoints for importing migration data to GitHub Enterprise Cloud (GHEC) from an archive will be closing down today, March 31, 2025. These tools…
The cvss field for GitHub security advisories in the REST and GraphQL APIs will be deprecated in favor of the new cvss_severities field. cvss will be removed from the REST…
Following the ship of transitive labeling for npm packages, the same capabilities are now available for Maven packages: Dependabot alerts now contain a direct label if they are associated with…
Today’s changelog announces API support for issues advanced search, timeline events for issue types, and an update on issue types settings. 🔍 API support for issues advanced search You can…
npm’s massive ecosystem of open source packages is one of its greatest strengths. But as a security-conscious developer, it can be tough to keep up with vulnerability reporting and updates…
Today’s changelog brings you a snappier issue creation flow in projects, the ability to convert checklist items to sub-issues, required fields on private repositories, and important updates on tasklist blocks…
How GitHub’s Product Security Engineering team manages our CodeQL implementation at scale and how you can, too.
Discover how to use GitHub Copilot to refactor your code and see samples of it in action.
Following our “Evolving GitHub Issues” announcement we’ve continued to improve the experience based on your feedback, including closing an issue as a duplicate, a REST API for sub-issues, and expanding…
GitHub Enterprise Server 3.15 is now generally available GitHub Enterprise Server 3.15 is now available for download. Some key features & highlights you can find in this release include: Updated…
The GitHub Enterprise Server 3.15 release candidate is here You can now download the GitHub Enterprise Server 3.15 release candidate to try out the new features in this latest version.…
GitHub Issues has been how the world’s best software teams collaborate since it first launched in 2009. Today we are excited to unveil a major evolution of issues and projects,…
Build what’s next on GitHub, the place for anyone from anywhere to build anything.
Last chance: Save $700 on your IRL pass to Universe and join us on Oct. 28-29 in San Francisco.