Zuplo is now a GitHub secret scanning partner
GitHub secret scanning protects users by searching repositories for known types of secrets. By identifying and flagging these secrets, our scans help prevent data leaks and fraud. We have partnered…
GitHub secret scanning protects users by searching repositories for known types of secrets. By identifying and flagging these secrets, our scans help prevent data leaks and fraud. We have partnered…
GitHub secret scanning protects users by searching repositories for known types of secrets. By identifying and flagging these secrets, our scans help prevent data leaks and fraud. We have partnered…
Read about the six key themes, and tips for each, that ensure sustainable and healthy open source communities.
A Little Game Called Mario is an open source, collectively developed hell project. Anyone and everyone is welcome to contribute their unique talents to make both the player and developer experience more enjoyable. Find out how the collective leverages GitHub Actions to manage this wonderful little community.
New Actions from Anchore, NowSecure, SBT, and Trivy are now available to create a more comprehensive GitHub Dependency Graph.
Can projects and GitHub Actions be used by your non-developer teams? They absolutely can. Check out how our Security Team uses GitHub to run the department effortlessly.
Previously, when creating an autolink reference for a repository, you could only use a numeric identifier in the <num> parameter. This format didn’t support integration with platforms that use alphanumeric…
High-quality Git commits are the key to a maintainable and collaborative open- or closed-source project. Learn strategies to improve and use commits to streamline your development process.
When using the GraphQL API, you can now filter Dependabot alerts by the scope of the dependency affected. The possible scopes are DEVELOPMENT or RUNTIME. Dependency scope information is available…
Monorepo performance can suffer due to the sheer number of files in your working directory. Git’s new builtin file system monitor makes it easy to speed up monorepo performance.
Previously, three aspects of repository forks caused friction to innersource collaboration and administration: Repositories could not be forked within a single organization. Repositories with internal visibility could not be forked…
The GitHub Advisory Database now includes curated security advisories on Erlang [Hex], Elixir, and more. This brings the Advisory Database to nine supported ecosystems, including: Composer, Go, Maven, npm, NuGet,…
We’re excited to announce that the GitHub Advisory Database now includes curated security advisories on Erlang, Elixir, and more.
The open source Git project just released Git 2.37. Take a look at some of our highlights from the latest release.
You can now get more transparency and control over dependency caching in your actions workflows. Actions users who use actions/cache to make jobs faster on GitHub Actions can now use…
Today, we’re releasing capabilities that will enable developers and organizations to efficiently manage and confidently scale with Codespaces. Retention setting for all individuals To enable auto-cleanup of unused codespaces, inactive…
This marks 1️⃣ year since our initial private beta announcement! 🎉 Today’s Changelog brings you the ability to bulk add items to projects and GraphQL API improvements! 🪷 Bulk add…
GitHub Advanced Security customers can now use cursors to paginate over alert results they retrieve via the repository and organization level REST APIs. Paginating with cursors, using the new before…
We’re releasing exciting functionalities that will enable organizations to confidently manage and scale with Codespaces.
GitHub secret scanning protects users by searching repositories for known types of secrets. By identifying and flagging these secrets, we help protect users from data leaks and fraud associated with…
GitHub is excited to announce the release of CodeQL queries that implement the standards CERT C++ and AUTOSAR C++. These queries can aid developers looking to demonstrate ISO 26262 Part 6 process compliance.
Build what’s next on GitHub, the place for anyone from anywhere to build anything.
Catch up on the GitHub podcast, a show dedicated to the topics, trends, stories and culture in and around the open source developer community on GitHub.