Keeping secrets out of public repositories
With push protection now enabled by default, GitHub helps open source developers safeguard their secrets, and their reputations.
With push protection now enabled by default, GitHub helps open source developers safeguard their secrets, and their reputations.
Learn how your organization can customize its LLM-based solution through retrieval augmented generation and fine-tuning.
Learn how we’re managing feature releases and establishing best practices within and across teams at GitHub using GitHub Projects.
Repository Rules – configure merge queue rule – public beta
Our most advanced AI offering to date is customized to your organization’s knowledge and codebase, infusing GitHub Copilot throughout the software development lifecycle.
Secret scanning supports user namespace repositories for Enterprise Managed Users
As a proactive measure to protect Github.com availability, GitHub Apps that attempt to create high-complexity scoped installation tokens will receive failures if they would individually reference too many repositories. At…
Explore the capabilities and benefits of AI code generation, and how it can improve the developer experience for your enterprise.
Repo-jacking is a specific type of supply chain attack. This blog post explains what it is, what the risk is, and what you can do to stay safe.
GitHub has been awarded the 2024 Axe Accessibility at Scale Award from Deque Systems. Read more about how we’ve implemented accessibility at scale.
Secret scanning adds validity checks for Mailgun and Mailchimp
The GitHub Enterprise Server 3.12 Release Candidate is available
Repository Custom Properties GA and Ruleset Improvements
Secret scanning adds webhook support for validity checks
More developers will have to fix security issues in the age of shifting left. Here, we break down how SAST tools can help them find and address vulnerabilities.
The Fundamentals program has helped us address tech debt, improve reliability, and enhance observability of our engineering systems.
Secret scanning adds validity checks for Stripe, Telegram, SendGrid, and more
In practice, shifting left has been more about shifting the burden rather than the ability. But AI is bringing its promise closer to reality. Here’s how.
Code scanning can now be enabled on repositories before they contain CodeQL supported languages
Build what’s next on GitHub, the place for anyone from anywhere to build anything.
Get tickets to the 10th anniversary of our global developer event on AI, DevEx, and security.