GitHub Advanced Security

Native GitHub code scanning, secret scanning, and Copilot Autofix

About GitHub Advanced Security

GitHub Advanced Security adds code scanning powered by CodeQL, secret scanning, and dependency review to GitHub repositories. Copilot Autofix uses large language models with CodeQL results and codebase context to generate fix suggestions for vulnerabilities, with security campaigns that batch-remediate up to 1,000 historical alerts. It is aimed at organizations that already host code on GitHub.