Security campaigns are now generally available to help address security debt at scale #155613
Replies: 5 comments 7 replies
-
|
Thanks for sharing! This update from GitHub is a big step forward in making secure development more manageable at scale. |
Beta Was this translation helpful? Give feedback.
-
|
Hello, This is a great feature to track remediation for targeted vulnerabilities. We would like to request for a few features, that would help us get more engagement:
Thank You. The feature is a great start for proactive tracking! |
Beta Was this translation helpful? Give feedback.
-
|
Our teams like the new Security Campaigns feature added to github. Is there any plan to add Dependabot and Secret scanning as well? These would be valuable for our teams. |
Beta Was this translation helpful? Give feedback.
-
|
How can we better enforce exclusions for the GitHub Copilot LLM, similar to how we currently exclude content in the IDE? Based on GitHub’s documentation, it appears exclusions may currently apply only to the Visual Studio IDE. Can we confirm if this limitation applies across all environments? |
Beta Was this translation helpful? Give feedback.
-
|
it would be great if the campaign alert was really visible, it can only be seen in security tab as far as i can tell. This defeats the purpose of trying to drive them to go check security - if they don't happen to go to the security tab they won't see it, |
Beta Was this translation helpful? Give feedback.
Uh oh!
There was an error while loading. Please reload this page.
Uh oh!
There was an error while loading. Please reload this page.
-
Security campaigns with Copilot Autofix are now generally available. As part of GitHub Code Security, you can use security campaigns to prioritize and rapidly reduce your backlog of application security debt. Copilot Autofix generates contextual explanations and fixes for historical code scanning alerts in a security campaign, which help developers and security teams collaborate to fix vulnerabilities with speed and confidence.
Starting today, you can also access these new features to plan and manage security campaigns more effectively:
Security campaigns are available for users of GitHub Code Security on GitHub Enterprise Cloud. For more information about security campaigns, see About security campaigns in the GitHub documentation.
To learn more, please check out our blog announcement.
🚀 Interested in learning more about the Code Security Community here at GitHub? Check out our latest community check-in: Behind the Firewall: Checking into the Code Security Community 🤖🪐.
🧠 Looking to up-level your own security knowledge? Take the GitHub Advanced Security certification. We even have a prep course on the community to help you study!
Beta Was this translation helpful? Give feedback.
All reactions