
Release Radar
We’re here to bring you the latest and greatest releases for December 2020. These are exciting new releases from some of the coolest projects around. There’s everything from world-changing tech…
1,681 articles from GitHub.

We’re here to bring you the latest and greatest releases for December 2020. These are exciting new releases from some of the coolest projects around. There’s everything from world-changing tech…

GitHub Universe is almost here. For more on what to expect from this year’s stream, we sat down with virtual host, Brian Douglas, for a quick Q&A on GitHub Actions,…

To best apply DevSecOps principles to improve the security of your supply chain, you should ask your developers to declare your dependencies in code; and in turn provide your developers with maintained ‘golden’ artifacts and automated downstream actions so they can focus on code.

GitHub’s team delves into answering the question “what are operations roles in the development and operations (DevOps) environments”. From automating the role of QA in DevOps and more for smaller, faster delivery cycles.

In our ongoing “Building GitHub” series, we talk about some of the projects we’re working on to improve how efficiently we build GitHub, as well as increase GitHub’s availability, stability,…

The year 2020 has upended nearly every aspect of society. In a panel for GitHub Satellite back in May, we briefly covered some of the ways in which our social…

Introduction In November, we experienced two incidents resulting in significant impact and degraded state of availability for issues, pull requests, and GitHub Actions services. November 2 12:00 UTC (lasting 32…

Change is inevitable, and this year, it has been inescapable. We’ve had to find new ways to relate, learn, and balance both work and life at home. One thing has…

GitHub has the privilege of partnering with thousands of organizations to improve their DevOps practices, from established enterprises transforming the way they work to born-in-the-cloud businesses. We often connect developers,…

Learn about nbdev, a new literate programming environment for Python.

Earlier this year, we upgraded the notifications experience on GitHub, focusing on filters that get you straight to the updates that matter most to you. Just last week, we shipped…

The Digital Millennium Copyright Act (DMCA) is a 22-year old United States law meant to strike a complicated balance between art, code, and speech on the net — impacting users…

This blog describes a security vulnerability in the infrastructure that supports Germany’s COVID-19 contact tracing efforts. The mobile (Android/iOS) apps are not affected by the vulnerability and do not collect and/or transmit any personal data other than the device’s IP address. The infrastructure takes active measures to disassociate true positives from client IP addresses.

The GitHub Archive Program announces its latest milestone: storing collections of the most popular and depended upon open source repositories in beautiful art cases featuring 3D-printed and AI-generated artwork in significant libraries around the world.

The latest version of GitHub Desktop includes split diffs, PRs with Actions status, more control over stashing, and discarding changes from files.

As part of GitHub’s commitment to developers, we open source the policies that govern our platform and welcome feedback at any time in our site-policy repository. When we make material…

We’re here to bring you the latest and greatest releases for November 2020. These are exciting new releases from some of the coolest projects around. There’s everything from world-changing tech…

Today we reinstated youtube-dl, a popular project on GitHub, after we received additional information about the project that enabled us to reverse a Digital Millennium Copyright Act (DMCA) takedown.

Today in America, it’s Veterans Day, a federal holiday to honor those who have served in the U.S. Armed Forces. As a veteran myself, I know that honoring veterans is…

Ubuntu 20.04 local privilege escalation using vulnerabilities in gdm3 and accountsservice (CVE-2020-16125, CVE-2020-16126, CVE-2020-16127)

In October, we experienced one incident resulting in significant impact and degraded state of availability for multiple services.

Closing that priority issue you’re working on can wait—put down your keyboard and vote! Millions of you already have, and your vote in national and local elections may just impact…

The theme for this year’s Game Off is MOONSHOT. moonshot – noun an extremely ambitious and innovative project the act of launching a spacecraft to the moon a hit or…

WARNING: This post contains zombies, werewolves, extra dimensional beings, mummies, and more! Proceed at your own risk. Trick or treat yourself to some fangtastic Halloween-themed games this weekend. These were…

GitHub Actions gives you the power to automate your workflow. Connect with the tools you know and love. Have more freedom to innovate and be creative. Deploy to any cloud,…

This is the second post in our series on DevOps fundamentals. For a guide to what DevOps is and answers to common DevOps myths check out part one. What role…

Using deferred compliance in GitHub’s CI process to improve developer productivity.

An introduction to our blog series on GitHub’s investments in technical excellence.

Game Off, our annual game jam (a hackathon for building games) returns this weekend. Participants will be given a secret theme on November 1 and will have the entire month…

We’re thrilled to announce an opportunity to connect with employees at GitHub during GitHub Universe. This year, Universe will take place virtually December 8-10 and we’d love to “see” you…

In this blog post we demonstrate how to integrate the GitHub Advanced Security code scanning capability into our Azure DevOps Pipelines. We provide code snippets and examples that can guide you or your developers working to integrate Code Scanning into any 3rd Party CI tool.

In this post I’ll give details about how to exploit CVE-2020-6449, a use-after-free (UAF) in the WebAudio module of Chrome that I discovered in March 2020. I’ll give an outline of the general strategy to exploit this type of UAF to achieve a sandboxed RCE in Chrome by a single click (and perhaps a 2 minute wait) on a malicious website.

How GitHub measures and improves reliability, security, and developer happiness with automated deployments.

November 3 is election day in the U.S. Early voting is available in most states. If you haven’t yet, make a plan to vote. If you’re an employer in the…

npm is the world’s largest package registry, powering the world’s largest development community—JavaScript. Without them, npm would not be where it is today, and we know that maintaining open lines…

Outubro é um mês especial no mundo do desenvolvimento de software. Há 7 anos a Hacktoberfest — um festival que celebra a comunidade open source — incentiva pessoas desenvolvedoras a…

Like our global community, we’ve had a year of challenges and extremes at GitHub, and I’m grateful everyday for our culture as our foundation of strength and resilience. We started…

@demetris11 embarks on a journey of curiosity and discovery in her new role overseeing DI&B strategy at GitHub

The open source Git project just released Git 2.29 with features and bug fixes from over 89 contributors, 24 of them new. Last time we caught up with you, Git 2.28 had just been…

GitHub представляет нашу первую виртуальную встречу! Первая встреча пройдет во вторник, 17-го ноября, с 19:00 до 21:00 по Московскому времени. Наша ведущая и докладчик, Саша Розенбаум, менеджер по продукту из…

We regularly update our policies to reflect the evolution of our products, changing legal requirements, and user feedback. In this update, we’ve made some changes to our Terms of Service,…

It’s time for Major League Hacking’s (MLH) annual Local Hack Day: Learn, a worldwide celebration of learning. Do you have a framework that you have wanted to try? Or perhaps…

This article originally appeared in TechCrunch, and is republished here with permission. The Supreme Court heard arguments October 7 in Google v. Oracle. This case raises a fundamental question for…

This is our second post on cloud deployment with containers. Looking for more? Join our upcoming GitHub Actions webcast with Sarah, Solutions Engineer Pavan Ravipati, and Senior Product Manager Kayla…

This is a guest post by Jimmy Whitaker, senior data science evangelist at Pachyderm In the last few years, DevOps has begun to shift—from a culture of continuous integration and…

A lot of work went into figuring out how to sync a public and private docs repo.

In the newest version of GitHub for mobile, we’re shipping a bunch of features that make code review easier, faster, and more productive.

We’re releasing v7.0.0 of the npm CLI, which includes exciting new features such as Workspaces, automatically installed peer deps, and more!

The ninth annual js13kGames competition wrapped up last weekend with over 220 games submitted. All created in a month and in less than 13kB of JavaScript. For anyone not in…

We’re here to bring you the latest and greatest releases for October 2020. These are exciting new releases from some of the coolest projects around. There’s everything from world-changing tech,…

See this post in action during GitHub Demo Days on October 16. What makes a project successful? For developers building cloud-native applications, successful projects thrive on transparent, consistent, and rigorous…

In September, we experienced one incident resulting in significant impact to the GitHub Pages service.

By now, most people in technology are familiar with the term DevOps. What we call “DevOps” will often differ between organizations, yet one thing remains the same: DevOps is defined…

Today, we’re excited to open source GitHub Docs at http://github.com/github/docs. Being a developer means always learning, and great docs can be like rocket fuel. They’re there when you need them,…

Last week we launched code scanning out of beta and have since announced integrations with static analysis and developer security training solutions. By expanding our GitHub security ecosystem, developers can…

As policymakers grapple with how to address hate speech and disinformation on the internet, they’re eying the legal structure underpinning collaborative software development: legal safe harbors. These safe harbors protect…

Limit use of external actions within Actions workflow for enterprises, organizations, and repositories.

Last week, we launched code scanning for all open source and enterprise developers, and we promised we’d share more on our extensibility capabilities and the GitHub security ecosystem. Today, we’re…

GitHub Actions gives you the power to automate your workflow. Connect with the tools you know and love. Have more freedom to innovate and be creative. Deploy to any cloud,…

This post is the second in our series on using GitHub for MLOps and data science. Just joining in? Get started with part one. Most continuous integration (CI) tools only…