GitHub's gh secure: one command enables all free security settings on public repos

0xkarasy · x · 2026-09-18

GitHub Security Lab released gh secure, a GitHub CLI extension that enables security features on repositories following best practices with a single command, promising project hardening in about two minutes.

What it covers: preventing malicious actors from exploiting vulnerabilities, blocking secrets from leaking, guarding against publicly known dependency vulnerabilities, preventing unwanted access and modifications, and keeping vulnerability details private via private reporting until fixed. Everything is free for open source, requires no security expertise—only admin access to the repo. The project is open source at GitHubSecurityLab/gh-secure.

Original post →

More from coding & agent

coding & agent channel →