3 common DevOps antipatterns and cloud native strategies that can help
Explore how GitHub and cloud native strategies can help you address common DevOps pipeline and team antipatterns.
Explore how GitHub and cloud native strategies can help you address common DevOps pipeline and team antipatterns.
GitHub Enterprise has evolved to support the needs of enterprise administrators, corporate security teams, and individual developers who contribute to open source.
Last year, we launched Ruby analysis support in beta for GitHub code scanning. Today, we’re announcing the general availability of this feature — covering even more vulnerabilities in Ruby code.…
This post is the second part in a series about ActiveRecord::Encryption that shows how GitHub upgrades previously encrypted and unencrypted columns to ActiveRecord::Encryption.
You may know that GitHub encrypts your source code at rest, but you may not have known that we encrypt sensitive database columns as well. Read about our column encryption strategy and our decision to adopt the Rails column encryption standard.
The GitHub Actions team has done lots of work to improve the performance and resource consumption of Actions on GHES in the past year.
Today, we are announcing the public beta of larger GitHub hosted runners for GitHub Actions for Team and Enterprise plans 🎉 🎉 The new larger runners provide new capabilities for…
In June, we experienced four incidents resulting in significant impact to multiple GitHub.com services. This report also sheds light into an incident that impacted several GitHub.com services in May.
How can you robustly assert and identify a user’s identity?
A personal story about building the feature you want and sharing it with the world.
A two-part story about how GitHub’s Product Security Engineering team rolled out Dependabot internally to track vulnerable dependencies, and how GitHub tracks and prioritizes technical debt.
The history of pre-receive hooks, how we discovered that the performance was problematic, and how we went about safely replacing them.
How we sped up GitHub.com by moving slow, non-critical code into rack.after_reply.
Practical tips on how to apply OWASP Top 10 Proactive Control C4.
A picture tells a thousand words. Now you can quickly create and edit diagrams in markdown using words with Mermaid support in your Markdown files.
A deep dive into how GitHub adds support for new languages to CodeQL.
In this post, I’ll discuss how to apply OWASP Proactive Control C2: Leverage security frameworks and libraries.
Codespaces is a great tool for technical hiring exercises and helps level the playing field for candidates.
The new sparse index feature makes it feel like you are working in a small repository when working in a focused portion of a monorepo.
In 2019, to meet GitHub’s growth and availability challenges, we set a plan in motion to improve our tooling and ability to partition relational databases.
Applications are now open for the MLH Fellowship: GitHub Externship Track. Apply by September 13.
Build what’s next on GitHub, the place for anyone from anywhere to build anything.
Join us October 28-29 in San Francisco or online for GitHub Universe, our flagship developer event uniting people, agents, and the world’s code.