
Admins can require sign off on web-based commits
Organization owners and repository admins can now require developers to sign off on commits made through GitHub’s web interface. Also, it is now easier for developers to complete a signoff…
Organization owners and repository admins can now require developers to sign off on commits made through GitHub’s web interface. Also, it is now easier for developers to complete a signoff…
A personal story about building the feature you want and sharing it with the world.
Custom repository roles are now GA for GitHub.com and Enterprise Server 3.5. Organization admins can create custom repository roles available to all repositories in their organization. Roles can be configured…
The Rust community can now discover, report, and prevent security vulnerabilities.
CI/CD and workflow automation are native capabilities on GitHub platform. Here’s how to start using them and speed up your workflows.
Learn how you can securely manage users with the latest ships for GitHub Enterprise.
Today’s Changelog brings you the release of project webhooks, a first exploration into templates and a host of improvements to GitHub Issues. ☁️🪝 Automate more with project webhooks The first…
Read about all the features you may not have known come on the GitHub Free plan, and how to choose the right plan for you.
During the month of June, we’re holding space for open source maintainers to gather, share, and be celebrated.
In May, we experienced three distinct incidents resulting in significant impact to multiple services across GitHub.com. This report also sheds light into the billing incident that impacted Actions and Codespaces users in April.
GitHub Sponsors is now available in Brazil—an exciting expansion for one of our fastest growing developer communities.
GitHub Enterprise Server 3.5 is available now, including access to the Container registry, the addition of Dependabot, enhanced administrator capabilities, and features for GitHub Advanced Security.
npm’s impact analysis of the attack campaign using stolen OAuth tokens and additional findings.
A two-part story about how GitHub’s Product Security Engineering team rolled out Dependabot internally to track vulnerable dependencies, and how GitHub tracks and prioritizes technical debt.
The enterprise and organization level audit logs now record an event when a secret scanning alert is created, closed, or reopened. This data helps GitHub Advanced Security customers understand actions…
We’re excited to announce some big improvements to our REST API documentation. We know developers rely on this documentation to integrate with GitHub, and we are committed to making it trustworthy, easy to find, and easy to use.
GitHub Sponsors is now available to all developers in India – no more waitlist, you can sign up right away!
It was another record year for our Security Bug Bounty program. We’re excited to highlight some achievements we’ve made together with the bounty community from 2021!
Each month, we highlight open source projects that have shipped major updates. These include everything from world-changing technology to developer tooling, and weekend projects. Here are our top staff picks…
With innersource, it’s important to measure both the amount of innersource activity and the quality of the code being created. Here’s how.
Our newly available ISO/IEC 27001:2013 Certification report can be downloaded now. For enterprises, administrators may download this report by navigating to the Compliance tab of the enterprise account: https://github.com/enterprises/”your-enterprise”/settings/compliance. For…
Build what’s next on GitHub, the place for anyone from anywhere to build anything.
Last chance: Save $700 on your IRL pass to Universe and join us on Oct. 28-29 in San Francisco.