back to article GitHub slurps open-source bug zapping automator Dependabot, chucks cash at devs

GitHub has acquired Dependabot, a tool that helps developers avoid introducing security issues via bugs in open-source libraries. Dependabot automates checks for out-of-date or insecure libraries on which a project depends, and generates pull requests to update them. GitHub CEO Nat Friedman on stage at the Satellite event in …

  1. Bronek Kozicki


    That actually is something which could help a lot. Round of applause and a beer for authors, on an assumption that it actually works.

