Back to feed
Dev.to
Dev.to
5/12/2026
GitHub Weekly: Security Scanning Hits Your IDE, Enterprise Migrations Go Live

GitHub Weekly: Security Scanning Hits Your IDE, Enterprise Migrations Go Live

Short summary

GitHub shipped Secret Scanning to MCP general availability, letting developers scan uncommitted code for exposed credentials directly in VS Code before commit. Dependency scanning via MCP entered public preview with integrated CVE checking. Enterprise Live Migrations (ELM) hit public preview for zero-downtime GHES-to-Cloud migrations of massive monorepos.

  • Secret Scanning via MCP now GA—scan for exposed credentials in VS Code before commit
  • Dependency scanning via MCP in public preview with CVE database integration
  • Enterprise Live Migrations (ELM) enable zero-downtime GHES-to-Cloud migration for massive repos

Generated with AI, which can make mistakes.

Is this a good recommendation for you?

Explore more