GitHub is boosting the security capabilities of its software development platform, introducing a new open source project dependency graphs and promising alerts when bad actors show up in those graphs.
If you’re working with dependencies on your GitHub-hosted projects, you’ll be happy to know that the repo platform will now alert you about vulnerabilities in things like React, so you’re aware of ...