Skip to main content

About supply chain security for your enterprise

You can enable features that help your developers understand and update the dependencies their code relies on.

You can allow users to identify their projects' dependencies by using the dependency graph for your enterprise. For more information, see "About the dependency graph."

You can also allow users on your enterprise to find and fix vulnerabilities in their code dependencies by enabling Dependabot alerts. For more information, see "Enabling Dependabot for your enterprise."

After you enable Dependabot alerts, you can view vulnerability data from the GitHub Advisory Database on your enterprise and manually sync the data. For more information, see "Viewing the vulnerability data for your enterprise."