
How we’re using projects to build projects
At GitHub we use GitHub to build our own products, and the new projects experience is no different. Check out how our team uses projects to build powerful project planning for developers.
1,681 articles from GitHub.

At GitHub we use GitHub to build our own products, and the new projects experience is no different. Check out how our team uses projects to build powerful project planning for developers.

GitHub’s Information Security Management System (ISMS) has been certified against ISO 27001:2013, an internationally recognized standard for security program best practices.

This year, thousands of students from around the world came together and redefined the world we live in, how we learn, and how we move forward. We are honored to…

Introduction Open Sauced, GitHub’s Explore page, Hacktoberfest, and First Timers Only help folks discover open source projects. This monthly series–Open Source Monthly—will add to these efforts by helping: First-time contributors…

Late last year, in response to an unprecedented series of account takeovers resulting from the compromise of developer accounts without 2FA enabled, we committed to a variety of enhancements to…

You can now output and group custom Markdown content on the Actions run summary page.

Teachers, it is now your turn to join GitHub Global Campus with our student community! Get access to exclusive benefits, programs, and the Power of Codespaces at no cost in GitHub Classroom!

We’re taking a look at some of the most common security vulnerabilities and detailing how developers can best protect themselves.

20 of our favorite games plus source code from the latest Ludum Dare competition.

Teaching is a great way to not only help others but to better learn a topic yourself.

In April, we experienced three distinct incidents resulting in significant impact and degraded state of availability for Codespaces and GitHub Packages.

GitHub will require all users who contribute code on GitHub.com to enable one or more forms of two-factor authentication (2FA) by the end of 2023.

This is the second and final post in a series describing friendly forks and alternative strategies for managing them.

Thanks to the efforts of the Elixir community, GitHub supports code navigation for Elixir repositories. Read how favorite language can add this support too!

These days software is subject to an ever-changing threat landscape. Check out the many ways you can keep your projects secure on GitHub today.

GitHub Desktop 3.0 brings better integration with your GitHub Pull Requests. You can now receive real time notifications and review the status of your check runs for your pull request.

This is the first post in a two-part series describing friendly forks and alternative strategies for managing them. Stay tuned for part two coming in May!

The ZX Spectrum, one of the best-selling microcomputers of all time, celebrates its 40 years anniversary today. Read more about how the community is still active – creating new content, archiving old content, and hacking on all sorts of hardware.

Do you worry that a CVE will hurt the reputation of your project? In reality, CVEs are a tracking number, and nothing more. Here’s how we think of them at GitHub.

From plug-and-play automations to protected branches, here are simple ways any developer can build more secure software on GitHub—all with a free account.

We’re kicking off InFocus, a global virtual event focused on accelerating, securing, and improving the way software development teams work.

The history of pre-receive hooks, how we discovered that the performance was problematic, and how we went about safely replacing them.

Organization profiles can now display custom content visible only to members of the organization. A new Member view can be tailored to show an alternative README and pinned private repositories.

We’re releasing exciting improvements that will streamline your Codespaces experience when working with multi-repository projects and monorepos.

Introducing CodeQL packs to help you codify and share your knowledge of vulnerabilities.

Another new release of Git is here! Take a look at some of our highlights on what’s new in Git 2.36.

On April 12, GitHub Security began an investigation that uncovered evidence that an attacker abused stolen OAuth user tokens issued to two third-party OAuth integrators, Heroku and Travis-CI, to download data from dozens of organizations, including npm. Read on to learn more about the impact to GitHub, npm, and our users.

Upgrade your local installation of Git, especially if you are using Git for Windows, or you use Git on a multi-user machine.

Today, we’re excited to bring you a few new features that will help you communicate, collaborate, and connect seamlessly with teams and communities about the software you’re building with the help of GitHub Discussions.

How we sped up GitHub.com by moving slow, non-critical code into rack.after_reply.

Each month, we highlight open source projects that have shipped major updates. These include everything from world-changing technology to developer tooling, and weekend projects. Here are our top staff picks…

Ensuring secure access to your source code is more important than ever. Git Credential Manager helps make that easy.

Learn how to build packages with SLSA 3 provenance using GitHub Actions.

In March, we experienced several incidents resulting in significant impact to multiple GitHub services.

The new dependency review action and API prevents the introduction of known supply chain vulnerabilities into your code.

We want to take away the pain and effort of keeping your code secure, so check out how Dependabot empowers developers to keep to their projects secure.

From automating builds and releases to taking care of large-scale regression testing, here are a few ways we use GitHub Actions to build GitHub.

Organizations with GitHub Advanced Security can now proactively protect against secret leaks with secret scanning’s new push protection feature.

We believe our technical interviews should be as similar as possible to the way we work at GitHub.

GitHub Copilot is now available from Visual Studio 2022 for everyone in the technical preview.

Securing your projects is no easy task, but end-to-end supply chain security is more top of mind than ever. We’ve seen bad actors expand their focus to taking over user…

GitHub Education is fired up for the return of .Tech Domains developer community competition: Break The Code 2. We’ve hacked in some new enigmas, cheat codes, and easter eggs for digital sleuths to uncover!

Over the past few weeks, we have experienced multiple incidents due to the health of our database. We wanted to share what we know about these incidents while our team continues to address them.

You can now enforce consistent usage of self-hosted runner groups across your organization and enterprise.

Today, we are rolling out a new beta version of GitHub’s home feed, making it easier to discover projects, developers and more across GitHub.

If you’re a GHES customer with heavy read traffic on your monorepo, check out the repository cache, especially if you have CI workloads distributed around the world.

You can now create a branch to work on an issue directly from the issue page so that it’s easier to get started right away.

If there’s one habit that can make software more secure, it’s probably input validation. Here’s how to apply OWASP Proactive Control C5 (Validate All Inputs) to your code.

Our community has shipped lots of open source project updates in the last month. Here’s a few of our staff picks.

It is now possible to re-run only failed jobs or a single job in GitHub Actions workflows.

We’ve introduced several new features to help enterprise owners more easily manage their accounts, including two features now in public beta.

In February, we experienced one incident resulting in significant impact to multiple GitHub services.

As the global response to the tragedies in Ukraine and other impacted regions continues to evolve, I wanted to share with our community an expansion of the message that I shared earlier this week with our Hubbers.

Explore and understand your overall GitHub-hosted Actions runner capacity with the new runner view.

The ability to prebuild codespaces is entering public beta. Enable fast environment creation times, regardless of the size and complexity of your repositories.

GitHub Actions workflows in the Security category will now appear among the workflow recommendations based on a repository’s content.

Anyone can now provide additional information to further the community’s understanding and awareness of security advisories.

Today we launched new code scanning analysis features powered by machine learning. The experimental analysis finds more of the most common types of vulnerabilities.

A behind-the-scenes peek into the machine learning framework powering new code scanning security alerts.

Tips from our developer advocates on how and why to find a mentor.