How to define security requirements for your OSS project
Defining your security requirements is the most important proactive control you can implement for your project. Here’s how.

Defining your security requirements is the most important proactive control you can implement for your project. Here’s how.
Last week, GitHub joined the Internet Governance Forum to spread awareness of developers’ initiatives and public policy interests.
Precise code navigation is powered by stack graphs, a new open source framework that lets you define the name binding rules for a programming language.
Today we’re introducing enhanced login verification to the npm registry, and we will begin a staged rollout to maintainers beginning Dec 7.
The end of the year is getting closer, and our communities are busy working away on their projects. While you’ve all been busy maintaining open source projects and shipping releases, we’ve created a new open
Are you a student in India? Applications are open for the GitHub Externships Winter Cohort!
We’re sharing details of recent incidents on the npm registry, our investigations, and how we’re continuing to invest in the security of npm.
To celebrate this most recent release, here’s GitHub’s look at some of the most interesting features and changes introduced since last time.
What an incredible month it’s been for GitHub and our communities. Whilst we’ve been busy with GitHub Universe, our communities have been busy coding. It’s been a successful year for Hacktoberfest, with many first-time contributors
The new sparse index feature makes it feel like you are working in a small repository when working in a focused portion of a monorepo.