Dependabot

3 videos across 2 channels

Dependabot is GitHub’s automated dependency updater that helps keep libraries and tools current and secure. In security workflows, it pairs with alerts and code-scanning to surface vulnerable or outdated packages and turn fixes into pull requests you can review and merge. As part of a broader move toward proactive maintenance, it’s highlighted alongside other tools that monitor, analyze, and patch codebases with minimal disruption.

Rubber Duck Thursday! thumbnail

Rubber Duck Thursday!

The video is a live GitHub Copilot stream where the host demos new features, discusses auto mode, and explores how AI ag

01:05:17
Getting started with GitHub security | GitHub for Beginners thumbnail

Getting started with GitHub security | GitHub for Beginners

The video explains why GitHub security matters and walks through using GitHub Advanced Security tools (Secret Scanning,

00:05:02
How Composer Changed PHP Forever: Origin Story & What's Next thumbnail

How Composer Changed PHP Forever: Origin Story & What's Next

The discussion centers on Composer, the PHP package manager, and how it evolved from a practical tool for their own proj

00:06:07