Dev.to
5/12/2026

GitHub Weekly: Security Scanning Hits Your IDE, Enterprise Migrations Go Live
Short summary
GitHub shipped Secret Scanning to MCP general availability, letting developers scan uncommitted code for exposed credentials directly in VS Code before commit. Dependency scanning via MCP entered public preview with integrated CVE checking. Enterprise Live Migrations (ELM) hit public preview for zero-downtime GHES-to-Cloud migrations of massive monorepos.
- •Secret Scanning via MCP now GA—scan for exposed credentials in VS Code before commit
- •Dependency scanning via MCP in public preview with CVE database integration
- •Enterprise Live Migrations (ELM) enable zero-downtime GHES-to-Cloud migration for massive repos
Generated with AI, which can make mistakes.
Is this a good recommendation for you?

