News

The Git Hub Blog
github. blog > changelog > 2026-04-14-oidc-support-for-dependabot-and-code-scanning

OIDC support for Dependabot and code scanning - Git Hub Changelog

10+ hour, 38+ min ago  (185+ words) OIDC support for Dependabot and code scanning'The Git Hub Blog Dependabot and code scanning now support Open ID Connect (OIDC) authentication for private registries configured at the organization level, eliminating the need to store long-lived credentials as repository secrets. Organization…...

The Git Hub Blog
github. blog > changelog > 2026-04-14-secret-scanning-pattern-updates-and-product-improvements

Secret scanning pattern updates and product improvements - Git Hub Changelog

13+ hour, 49+ min ago  (570+ words) This week, we're rolling out several improvements to our detection coverage, APIs, and workflows. These improvements strengthen our continued investment in the developer experience of our secret scanning features. Built by developers, for developers. Secret scanning now automatically detects the…...

The Git Hub Blog
github. blog > security > application-security > how-exposed-is-your-code-find-out-in-minutes-for-free

How exposed is your code? Find out in minutes'for free

16+ hour, 7+ min ago  (1123+ words) Learn about artificial intelligence and machine learning across the Git Hub ecosystem and the wider industry. Learn how to build with generative AI. Change how you work with Git Hub Copilot. Everything developers need to know about LLMs. Machine learning…...

The Git Hub Blog
github. blog > changelog > 2026-04-09-ask-copilot-in-security-assessments-now-available

Ask Copilot in security assessments now available - Git Hub Changelog

5+ day, 11+ hour ago  (83+ words) Ask Copilot in security assessments now available'The Git Hub Blog Organization admins and security managers can now jump into a Copilot experience directly from secret risk assessment or Code Security risk assessment results to get contextual explanations and guided next…...

The Git Hub Blog
github. blog > changelog > 2026-04-08-secret-scanning-improvements-to-alert-apis-webhooks-and-delegated-workflows

Secret scanning improvements to alert APIs, webhooks, and delegated workflows - Git Hub Changelog

6+ day, 11+ hour ago  (279+ words) This week, we're rolling out several improvements to our APIs, webhooks, and delegated workflows. These improvements strengthen our continued investment in the developer experience of our secret scanning features. Built by developers, for developers. Secret scanning has new API filters,…...

The Git Hub Blog
github. blog > changelog > 2026-04-08-code-security-risk-assessment-available-for-organizations

Code Security risk assessment available for organizations - Git Hub Changelog

6+ day, 14+ hour ago  (156+ words) Code Security risk assessment available for organizations'The Git Hub Blog Organization admins and security managers can now run a free Code Security risk assessment to review security vulnerabilities across their organization. The assessment summarizes vulnerabilities by severity, rule type, and…...

The Git Hub Blog
github. blog > changelog > 2026-03-31-github-secret-scanning-nine-new-types-and-more

Git Hub secret scanning " coverage update - Git Hub Changelog

2+ week, 14+ hour ago  (284+ words) Git Hub secret scanning continually updates its detectors, validators, and analyzers. Here's what's new. Missed our last update? Catch up on recently added detectors or see the full list of supported secrets in our product documentation. Secret scanning now automatically…...

The Git Hub Blog
github. blog > changelog > 2026-03-24-upcoming-deprecation-of-security-related-organization-api-fields

Upcoming deprecation of security-related organization API fields - Git Hub Changelog

3+ week, 9+ hour ago  (81+ words) On April 21, 2026, we're deprecating and removing the following fields from the get an organization and update an organization REST API endpoints: Git Hub Code Security configurations now replace this functionality, providing a more comprehensive and flexible way to manage security…...

The Git Hub Blog
github. blog > changelog > 2026-03-26-credential-revocation-api-now-supports-github-oauth-and-github-app-credentials

Credential revocation API now supports Git Hub OAuth and Git Hub app credentials - Git Hub Changelog

2+ week, 5+ day ago  (197+ words) We've extended the Credential revocation API to support additional token types, enabling you to programmatically revoke any exposed credentials found on repositories or elsewhere. This helps you quickly limit the impact of credential exposure and improve the security of the…...

The Git Hub Blog
github. blog > security > supply-chain-security > a-year-of-open-source-vulnerability-trends-cves-advisories-and-malware

A year of open source vulnerability trends: CVEs, advisories, and malware

2+ week, 5+ day ago  (1530+ words) Learn about artificial intelligence and machine learning across the Git Hub ecosystem and the wider industry. Learn how to build with generative AI. Change how you work with Git Hub Copilot. Everything developers need to know about LLMs. Machine learning…...