Skip to main content

Enterprise Server 3.20 is currently available as a release candidate.

Reference for supply chain security

Find information to apply to your work with Dependabot and the dependency graph.

Dependabot options reference

Detailed information for all the options you can use to customize how Dependabot maintains your repositories.

Dependabot alert filters

Dependabot alerts filters help you prioritize and manage alerts for vulnerable dependencies in your repositories.

Supported ecosystems and manifests for dependency scope

Dependabot alerts supports a variety of ecosystems and manifests for dependency scope.

Dependabot pull request comment commands

Dependabot responds to commands in comments on its pull requests, making it easy to triage and manage dependency updates.

Dependabot supported ecosystems and repositories

Dependabot supports a variety of ecosystems and repositories

Dependabot security updates reference

Find usage information for Dependabot security updates.

Dependency graph supported package ecosystems

Dependency graph supports a variety of ecosystems.

Dependabot on GitHub Actions

Detailed information on using Dependabot with GitHub Actions.

CWEs used by GitHub's preset Dependabot rules

GitHub uses industry-standard criteria to help you filter Dependabot alerts.

Troubleshoot Dependabot

Resolve dependency security issues with error codes, diagnostic information, and solutions for common problems.