/Justin Hutchings

Best Practices To Keep Your Projects Secure On GitHub tl;dr: "With Dependabot, not only can you catch vulnerable dependencies, but you can fix them as well. It automatically checks your dependency files for outdated requirements and opens individual pull requests for any it finds. It then notifies you and suggests fixes."

featured in #315


Code Scanning Is Now Available! tl;dr: "A developer-first, GitHub-native approach to easily find security vulnerabilities before they reach production."

featured in #209