Skip to main content
GitHub Docs
Version:
Enterprise Server 3.22
Search or ask Copilot
Search or ask
Copilot
Select language: current language is English
Search or ask Copilot
Search or ask
Copilot
Open menu
Collapse sidebar
Expand sidebar
Scroll breadcrumbs left
Home
Security and code quality
Reference
Scroll breadcrumbs right
Security and code quality
Getting started
GitHub security features
Secure repository quickstart
Concepts
Secret security
Secret leakage risks
Secret scanning
Push protection
Secret security with GitHub
Secret scanning alerts
Custom patterns
Validity checks
Delegated bypass
Bypass requests
Secret types
Push protection metrics
Command line push protection
Push protection from the REST API
Code scanning
Code scanning
Code scanning alerts
Setup types
Integration with code scanning
SARIF files
Alert tracking with issues
Merge protection
CodeQL
CodeQL code scanning
CodeQL for compiled languages
CodeQL query suites
Custom queries
CodeQL CLI
CodeQL for VS Code
CodeQL workspaces
Query reference files
Query packs
Tool status page
Pull request alert metrics
Repository properties
Supply chain security
Supply chain security
Dependency best practices
Dependency graph
Dependency graph data
Dependency review
Dependabot alerts
Malware alerts
Dependabot alert metrics
Dependabot security updates
Dependabot version updates
Dependabot pull requests
Multi-ecosystem updates
dependabot.yml file
Dependabot auto-triage rules
Dependabot job logs
Immutable releases
Vulnerability reporting and management
GitHub Advisory database
Global security advisories
Vulnerability exposure
Security at scale
Select pilot repositories
Organization security
Security overview
Audit security alerts
Delegated alert dismissal
Supply chain security
How-tos
Secure at scale
Configure enterprise security
Establish complete coverage
Enable GitHub Advanced Security
Create custom configuration
Apply custom configuration
Configure additional settings
Manage your coverage
Edit custom configuration
Delete custom configuration
Configure specific tools
Enable dependency graph
Configure code scanning
Configure dependency review
Configure secret scanning
View vulnerability data
Configure limited internet access
Configure VNET
Configure organization security
Establish complete coverage
Create custom configuration
Apply custom configuration
Configure global settings
Manage your coverage
Edit custom configuration
Filter repositories
Detach security configuration
Delete custom configuration
Configure specific tools
Assess your secret risk
View risk report
Estimate price
Protect your secrets
Code scanning at scale
CodeQL advanced setup at scale
Enforce dependency review
Manage usage and access
Give access to private registries
Manage paid GHAS use
Secure your secrets
Detect secret leaks
Enable secret scanning
Enable for generic patterns
Customize leak detection
Define custom patterns
Manage custom patterns
Exclude folders and files
Enable validity checks
Prevent future leaks
Enable push protection
Work with leak prevention
Push protection on the command line
Push protection in the GitHub UI
Manage bypass requests
Enable delegated bypass
Grant exemptions
Manage bypass requests
Review bypass requests
Find and fix code vulnerabilities
Configure code scanning
Configure code scanning
Configure advanced setup
Manage your configuration
Edit default setup
Use tool status page
Set merge protection
CodeQL for compiled languages
Scan from the command line
Set up CodeQL CLI
Write custom queries
Publish and use packs
Test custom queries
Test query help files
Download databases
Check out source code
Speed up PR scans
Specify command options
Create database bundles
Scan from VS Code
Install CodeQL for VS Code
Manage CodeQL databases
Run CodeQL queries
Explore data flow
Use the model editor
Create custom query
Manage CodeQL packs
Explore code structure
Test CodeQL queries
Customize settings
Set up CodeQL workspace
Manage CodeQL CLI
Access logs
Integrate with existing tools
Use with existing CI system
Upload SARIF file
Secure your supply chain
Secure your dependencies
Configure Dependabot alerts
Configure malware alerts
Configure security updates
Configure version updates
Auto-update actions
Configure multi-ecosystem updates
Enable dependency graph
Explore dependencies
Use dependency submission API
Verify release integrity
Manage your dependency security
Auto-triage Dependabot alerts
Prioritize with preset rules
Customize Dependabot PRs
Control dependency update
Configure dependency review action
Configure Dependabot notifications