How GitHub’s agentic security principles make our AI agents as secure as possible
Learn more about the agentic security principles that we use to build secure AI products—and how you can apply them to your own agents.
Learn more about the agentic security principles that we use to build secure AI products—and how you can apply them to your own agents.
Log4Shell proved that open source security isn’t guaranteed and isn’t just a code problem. It’s about supporting, enabling, and empowering the people behind the projects that build our digital infrastructure.
GitHub is introducing post-quantum secure key exchange methods for SSH access to better protect Git data in transit.
When a chat conversation is poisoned by indirect prompt injection, it can result in the exposure of GitHub tokens, confidential files, or even the execution of arbitrary code without the user’s explicit consent. In this blog post, we’ll explain which VS Code features may reduce these risks.
Strengthen your repositories against actions workflow injections — one of the most common vulnerabilities.
Learn how to leverage GitHub Copilot to make your code more secure.
Explore insights into open source community growth, innovation, and inclusivity with an updated survey dataset.
Applications for the new GitHub Secure Open Source Fund are now open! Applications will be reviewed on a rolling basis until they close on January 7 at 11:59 pm PT. Programming and funding will begin in early 2025.
Now in public beta for GitHub Advanced Security customers, code scanning autofix helps developers remediate more than two-thirds of supported alerts with little or no editing.
A peek under the hood of GitHub Advanced Security code scanning autofix.
The Fundamentals program has helped us address tech debt, improve reliability, and enhance observability of our engineering systems.
We’ve added new improvements to default setup, including automatically scheduling scans on repositories and support for all CodeQL covered languages.
GitHub is announcing general availability of GitHub Copilot Chat and previews of the new GitHub Copilot Enterprise offering, new AI-powered security features, and the GitHub Copilot Partner Program.
Gain actionable insights about the intersection of AI and human skills, while tackling ethics, accessibility, and productivity at these GitHub Universe sessions.
Get a sneak peek into the must-attend sessions, speakers, workshops, and GitHub certifications available at our global developer event.
Build what’s next on GitHub, the place for anyone from anywhere to build anything.
Catch up on the GitHub podcast, a show dedicated to the topics, trends, stories and culture in and around the open source developer community on GitHub.