GHAS customers can publish private security advisories and Dependabot updates [GA]
- Langage dominant
- Aucune donnée de langage
- Étoiles
- 8.9k
- Forks
- 1.8k
- Métriques de merge des PR
- Aucune PR mergée en 30 j
Description
### Value Prop
With this update, enterprises using GitHub Advanced Security can now publish private security advisories and trigger Dependabot updates that are scoped only to their internal repositories. This empowers organizations to manage vulnerabilities for internal or pre-release packages, ensuring that both producers and consumers within the enterprise stay protected without exposing sensitive information publicly.
### Expected Outcome
By enabling private advisories and internal Dependabot updates, organizations can respond faster to security issues in their own software supply chain. This helps teams keep their code secure and up to date, while maintaining control over when and how vulnerabilities are disclosed.
Guide de contribution
Ouvrir le guide de contribution
Évaluation
Cette issue n'a pas encore été évaluée.