Level up monitoring and reporting for your enterprise
A high-quality audit log is an essential tool for enterprises to ensure compliance, maintain security, investigate issues, and promote accountability.
A high-quality audit log is an essential tool for enterprises to ensure compliance, maintain security, investigate issues, and promote accountability.
GitHub Advanced Security users can now view alert metrics for custom patterns at the repository, organization, and enterprise levels directly from the custom pattern’s page. Custom patterns with push protection…
GitHub Enterprise Cloud administrators may need to review external identity information via the GraphQL API. Historically, this has required a token with the admin:org or admin:enterprise scope. We’ve taken a…
We now show bypassed branch protection rules in response to Git pushes. These are information messages and are not designed to block workflows. Historically there was no indication after a…
Learn how GitHub’s one, integrated platform–powered by AI and secure at every step—helps developer teams be more productive, collaborative, and efficient.
Today, we’re excited to announce the release of the public beta of the official GitHub Actions VS Code extension, which provides support for authoring and editing workflows and helps you manage workflow runs without leaving your IDE.
Writing secure code is as much of an art as writing functional code, and it is the only way to write quality code. Learn how our Secure Code Game can provide you with hands-on training to spot and fix security issues in your code so that you can build a secure code mindset.
GitHub Copilot is evolving to bring chat and voice interfaces, support pull requests, answer questions on docs, and adopt OpenAI’s GPT-4 for a more personalized developer experience.
Today we are making the granular access token feature on npm generally available. Granular access token, allows you to: Restrict token access to specific packages and/or scopes Grant tokens access…
We announced two weeks ago that we are changing how you receive notifications for secret scanning alerts. From today, those changes are in effect. What action should I take? If…
We’re looking forward to working with policymakers to improve cybersecurity and support developers.
The “Require SSH certificates” policy now allows GitHub apps to call Git APIs using a user-to-server token, bringing them up to parity with OAuth app support. The SSH certificate requirement…
Hear from Grafana Labs’ Armand Grillet about how his team uses GitHub Projects.
GitHub users write a lot of Markdown; so much so that we render 2 billion Markdown files everyday; at peak times, we’re processing 1,300 Markdown files a second! Any opportunity…
Projects on GitHub Mobile are now available for iOS and Android! Find the projects you’re working on through a repository, organization, or from your user profile. You can also easily…
We are open sourcing our own OSPO policies, tools, and guides to help other OSPOs get started.
The Social Impact, Tech for Social Good team is launching a new Open Source Community Manager Program to support digital public goods. This is part of their new Activating Developers initiative.
Learn about using GitHub Advanced Security alerts with vulnerability management tools. Check out the integrations and learn about how to get started.
Code scanning configurations can now be deleted from the code scanning alert page. This could be used to delete stale configurations causing alerts to remain open, or delete old configurations…
Today, we are adding a couple of new improvements to required workflows in GitHub Actions. Blocking direct push: Direct pushes are now blocked on branches of the repositories where required…
Today’s Changelog brings you auto-add and auto-archive workflows for all users to make managing your project a breeze, and tasklists improvements! 🤖 Automatically add and archive project items We previously…
Build what’s next on GitHub, the place for anyone from anywhere to build anything.
Catch up on the GitHub podcast, a show dedicated to the topics, trends, stories and culture in and around the open source developer community on GitHub.