Last 7 days
11
Features: 11
Changes: 0
Fixes: 0
Deprecations: 0
Code hosting, collaboration, Actions, packages, and security.
Latest GitHub changelog updates, official release notes, breaking changes, security patches, pricing changes, and developer reactions in one product feed.
Follow this GitHub release-notes page to spot useful features, risky migrations, noisy announcements, and source links before they hit your backlog.
Changes.Watch links back to official changelog and release-note sources so summaries stay easy to verify.
Rolling windows show how many product updates landed in the last 7, 30, 90, and 365 days, grouped by existing changelog semantics.
11
77
242
244
Users can now pin saved issue views directly in the repository’s issues sidebar for one‑click access
Adds Windows 11 arm64 runner image with Visual Studio 2026 to GitHub‑hosted runners
Introduce a new "Mitigated" dismissal reason for code scanning alerts, enabling dismissal when external controls reduce risk.
Introduces a dedicated workflow path for CodeQL code‑quality actions
Adds audit log events for enabling, disabling, and updating GitHub Code Quality settings per repository
Introduces source modeling for JavaScript, TypeScript, and Vue in CodeQL.
Add a Trends tab to the organization-level Code Quality dashboard for viewing code quality changes over time
Added enterprise‑managed settings to GitHub Copilot for JetBrains for plugin governance, MCP server access, OpenTelemetry, and permission modes.
Introduce token-type and user-specific actions to deauthorize and revoke credentials during security incidents.
Adds support for multiple redirect URIs in OAuth apps
Grok 4.6, xAI’s latest reasoning model, is now rolling out in GitHub Copilot.
Added new AI models for GitHub Copilot
GitHub now pulls license data from package registries such as npmjs.org and PyPI
You can block or unblock users directly from pull request and issue comments in personal repositories.
Gemini 3.7 Flash model is now integrated into GitHub Copilot
Introduced Agent Plugins 1.0, allowing a single plugin build to run across all compatible agent clients
Rule insights dashboard is now publicly previewed for organizations
Introduces GitHub Enterprise Server 3.22 release candidate with new platform capabilities
Introduces persistent memory for Copilot sessions in JetBrains IDEs
Added ability to convert existing branch protection rules into repository rulesets directly from repository settings.
MAI-Code-1-Flash will be deprecated on September 10 2026 concurrent with the release of MAI-Code-1.1-Flash.
MAI-Code-1.1-Flash, the latest small-tier coding model, is now available in GitHub Copilot.
Added per-model token breakdown to the AI usage report, displaying input, output, and cache tokens for each model.
Added quick access to recent Copilot Chat conversations on github.com
Added support for automatic recurring payments for Indian customers using saved credit cards
GitHub will remove support for custom thread subscription settings
Added context‑aware resume and organization features across the desktop app, CLI, and VS Code extensions.
Enterprise owners can now install public third‑party GitHub Apps on their enterprise account
Added a “Potential return on investment” section to the Copilot impact dashboard
Introduce Lite and Balanced effort levels for GitHub Copilot code review, now generally available
Extends the Copilot usage metrics API to include activity from GitHub agent apps such as Claude and Codex.
Adds the “Relates to” issue relationship, graduating from public preview to general availability
Expanded secret scanning to block additional secret types via push protection
GitHub Code Quality no longer automatically adds a Copilot reviewer when enabled on a repository.
Added enterprise-managed settings keys `allowedMcpServers` and `deniedMcpServers` for centrally controlling which MCP servers GitHub Copilot can use.
Add ability to configure pull request limits at the organization level
Kimi K3 model added to GitHub Copilot
Add the `github-codeql-config-file` repository property to specify a custom CodeQL configuration for the default code scanning setup.
The GitHub Copilot Billing Preview app has been retired and is no longer available.
GitHub Spark stops accepting new users and creation of new apps starting August 4 2026
Add new `pull-request-branch-name` options in .github/dependabot.yml to customize Dependabot PR branch prefixes and maximum length.
Adds a new option in Code Quality settings to automatically enable code coverage
Add support for Swift 6.3.3 in CodeQL analysis.
Add ability to set the reasoning level for Copilot cloud agent tasks
Allows enterprise admins to assign team‑specific managed settings via per‑team configuration files
Add Copilot cloud agent automations that run when an issue or PR comment is created
Users with the triage role can now create issues even when a repository restricts issue creation to collaborators
Migrations from GitLab.com and self‑managed instances to GitHub Enterprise Cloud are now generally available via GitHub Enterprise Importer.
Deprecates specified GitHub Copilot models across all experiences (Chat, inline edits, ask, agent modes, code completions).
Deprecated Gemini 2.5 Pro and Gemini 3 Flash models across all GitHub Copilot experiences.
Introduces public preview of user‑based model policy targeting for GitHub Enterprise customers with Copilot Business or Enterprise licenses
Granular access tokens that could bypass 2FA can no longer perform sensitive account, organization, or package management actions.
Retired GitHub Models on July 30 2026, disabling the playground, model catalog, inference API, and BYOK for all customers.
Add self-repository syntax ($/) for referencing actions or reusable workflows within the same repository
Introduces public preview of stacked pull requests, allowing large changes to be split into ordered, reviewable PR layers
Introduced a new Copilot agent built on the Copilot SDK for Visual Studio.
Adds ability for admins to restrict remote‑controlled Copilot sessions to managed devices only
Enhanced agent integration for smoother AI-assisted workflows
Copilot code review now fully supports agent skills and MCP servers for all Pro, Pro+, Business, and Enterprise plans
Adds a global default enablement policy for GA Copilot models on Business and Enterprise plans
Updated CodeQL to version 2.26.1
Expanded Copilot app usage metrics to cover additional API report rollups.
Introduces automatic malware scanning of packages at publish time to enhance supply‑chain security.
Grok 4.5, xAI’s latest reasoning model, is now rolling out in GitHub Copilot.
Dependabot now ingests malware advisories from the OpenSSF malicious‑packages repository
GitHub Actions now automatically holds potentially malicious workflows for manual approval before execution.
Adds ability to connect MCP servers and custom agents in Claude agent flows
Introduce a dedicated policy for the GitHub Copilot app
Adds enterprise‑managed settings for the GitHub Copilot app and cloud agent.
Claude Opus 5, Anthropic's newest model, is now integrated into GitHub Copilot.
Introduces the generally available Copilot cloud agent integration for Linear
Added support for the upcoming stateless MCP protocol (effective 28 July 2026).
Added ability to invoke Copilot cloud agent from GitHub Mobile to investigate and automatically fix failing GitHub Actions checks on a pull request.
Adds public preview of multi-select fields for Projects and Issues
Introduces public preview of automation controls for GitHub Issues (labeling, typing, assigning, closing).
Introduced a new Copilot usage metrics impact dashboard for enterprise administrators and organization owners
GitHub Enterprise Server will reject support bundle uploads starting August 18 2026
Gemini 3.6 Flash model is now integrated into GitHub Copilot.
Added UI controls to create and edit AI credit pools for cost centers
Added UI for Copilot Business and Enterprise users to view AI credit usage per billing cycle
GitHub Code Quality is now generally available on Enterprise Cloud and Team plans
Adds repository-level GitHub Copilot usage metrics via new REST API endpoints
Adds GitHub Copilot app usage data to the usage metrics API for enterprise and organization reports
Added firewall integration for Copilot code review to enhance security
Adds a 'Fix with Copilot' button to GitHub Mobile pull request views, enabling Copilot cloud agent fixes directly from mobile.
Added advanced search to the Projects filter bar with logical AND/OR operators.
Admins can archive pull requests, which closes and locks them to remove from public view.
Added new REST API endpoints for GitHub Enterprise Cloud admins to manage Visual Studio Subscription assignments
Added public preview of Xcode 27 runner image on GitHub‑hosted macOS runners
Added Resend as a GitHub secret scanning partner, expanding coverage
Added usage dashboards in Visual Studio for clearer insight into Copilot usage
Added BYOK (Bring Your Own Key) support across all Copilot for JetBrains tiers, letting users manage their own encryption keys
GitHub code scanning now shows AI-powered security detections directly on pull requests.
Adds a default three‑day cooldown before Dependabot opens version‑update PRs.
Introduces the /security-review slash command to run security reviews on in‑flight code changes directly from the GitHub Copilot app.
Adds REST API endpoints to list, create, and edit secret scanning custom patterns
Introduced a public preview that displays the number of active committers on repositories using GitHub Code Quality.
Split the previous combined SSO & Organizations settings page into separate SSO and Organizations pages.
Added support for Kotlin 2.4.0 in CodeQL queries
Rename secret scanning detector types for clearer, more descriptive names
Added a new REST API endpoint to retrieve each user's progress in multi-user budgets.
Added filter options for Copilot sessions in GitHub Mobile
Introduces a GA pull requests dashboard at github.com/pulls
Introduces the GPT-5.6 family (Sol, Terra, Luna) to GitHub Copilot
Added organization-level targeting for GitHub Code Quality, allowing owners to enable or disable the feature for specific repositories
Adds a Copilot prompt that generates a high‑level overview of any repository on its home page.
GitHub Advanced Security enterprise customers can now publish innersource security advisories, a generally available feature.
Adds enterprise-managed OpenTelemetry export configuration for GitHub Copilot in VS Code and CLI, letting organizations centrally define collector endpoints
Enterprise admins can push GitHub Copilot settings to devices via native MDM and file‑based configuration
Updated GitHub Copilot integration across VS Code v1.123‑v1.127 released June–early July 2026
Adds cryptographic signature verification for downloaded JDKs to improve security.
npm v12 is now generally available and set as the default latest version
Adds support for fixing pull request merge conflicts directly in GitHub Mobile using the Copilot cloud agent.
GitHub Mobile now receives live notifications for remote Copilot CLI sessions
Added two code‑review velocity metrics to the Copilot usage metrics API
Added Codex as a new agent provider in public preview
Kimi K2.7 model added to Copilot Business and Enterprise plans.
Enterprise admins can now create per‑user budgets directly within the cost center billing UI.
Adds enriched metadata to GitHub secret scanning, giving ownership and impact details for supported secret types.
Adds the ability to restrict which users can dismiss pull request reviews via repository rulesets
GitHub Copilot app is now available across all Copilot plans
Copilot Billing Preview app will be retired on August 3, 2026
Added reporting of suggested lines of code to the Copilot CLI usage metrics
Deprecating Gemini 2.5 Pro and Gemini 3 Flash across all GitHub Copilot experiences (Chat, inline edits, ask/agent modes, and code completions).
Copilot CLI can now authenticate using the built‑in GITHUB_TOKEN within GitHub Actions
Public preview of Copilot agent session streaming for GitHub Enterprise Cloud customers
Added AI credit pool support for cost centers, allowing caps on monthly included AI credit usage.
Issue fields are now generally available for all GitHub organizations on Free, Team, Enterprise, and Enterprise Cloud with data residency plans.
Introduces public secret scanning monitoring for enterprise accounts.
Enterprise admins can set "model": "auto" in managed-settings.json to enable auto model selection by default.
GitHub Models will be fully retired on July 30 2026.
Introduces GA of managed‑settings.json for GitHub Enterprise Cloud
Adds secret scanning validators for Asana, IBM, and MessageBird
Introduces Microsoft C++ Language Server as a Copilot Plugins marketplace plugin
Kimi K2.7 Code open‑weight model is now generally available in GitHub Copilot.
Copilot Vision launched as generally available.
Added support for setting AI credit session limits in the Copilot CLI to cap agent spending per session.
GitHub Copilot's browser tools for VS Code are now generally available.
Copilot CLI now automatically selects the optimal model for each task
General availability of Anthropic's Claude Sonnet 5 model in GitHub Copilot.
Introduce branch rulesets to enforce minimum code coverage thresholds on pull requests
Added a sidebar table of contents to release pages for easier navigation.
Integrates GitHub Copilot Agent into JetBrains AI Assistant, enabling Copilot features within JetBrains IDEs.
Introduces public preview of open source license compliance for enterprises
Dependabot stops automatically generating .npmrc settings for private npm registries.
GitHub will retain data for closed Dependabot security alerts for a defined period starting August 25, 2026.
Introduce access restrictions to several public API endpoints, requiring authentication or specific permissions.
Admins can set a per‑user AI credit budget for each member of a cost center
Claude Opus 4.8 fast mode is now available in preview on GitHub Copilot.
Admins can now restrict issue creation to collaborators with write access.
Adds total merge count per AI adoption phase to enterprise and organization reports
GitHub Actions now issues read‑only cache tokens for workflow events triggered without write permissions.
MAI-Code-1-Flash, Microsoft’s in‑house coding model, is now generally available for GitHub Copilot Business and Enterprise users
Added Git worktree support, allowing multiple workspaces per repository directly in GitHub Desktop.
Copilot code review now leverages built‑in file exploration tools from the Copilot CLI/SDK.
Enterprises can now restrict which plugins users install in GitHub Copilot CLI and VS Code via the new strictKnownMarketplaces setting
Introduces saved views for repository issue pages, allowing teams to create and share custom filtered views (public preview).
Admins can disable standard GitHub-hosted runner labels (e.g., ubuntu-latest) to limit runner usage
GitHub Actions now allows steps to execute concurrently using background processes
Introduces a temporary preventive safeguard for high‑impact npm accounts.
GitHub-hosted larger runners now support Red Hat Enterprise Linux (RHEL) 9 and RHEL 10 images in public preview.
GitHub Copilot for Jira reaches general availability after public preview
Enterprise teams can be added as resources in cost centers.
Introduces break‑glass capability for GitHub Enterprise owners to instantly revoke all credentials of a compromised account
Copilot Free and Student plans now default to auto model selection
Secret scanning now captures extended metadata for Replicate secrets
Added public preview read‑only REST endpoints for fetching repository‑level Code Quality findings.
Dependabot can now read private GitHub Packages registries without using a personal access token.
Introduces a GA tabbed terminal UI for GitHub Copilot CLI
Dependabot drops support for Python 3.9 now that it has reached end-of-life.
Added BYOK support to the GitHub Copilot app, enabling use of your own keys.
Added support for organization and enterprise agents from GitHub.
Added per-user daily AI credit consumption data to the Copilot usage metrics API.
Opus 4.6 (fast) is being deprecated across all GitHub Copilot experiences (Chat, inline edits, ask, agent mode, and code completions).
MAI‑Code‑1‑Flash model is now available across additional GitHub Copilot surfaces.
Added support for repository-level AGENTS.md files in Copilot code review
Introduce public preview of automatic duplicate issue detection to help maintainers triage efficiently
Pull request author search now includes PRs created by the Copilot cloud agent on behalf of a user.
Introduces a repository switcher in the global navigation for quick repository jumps
Introduces the ability to build new custom GitHub Actions runner images using existing custom images as a base.
Updated the checkout action to use safer default behavior for pull_request_target events, reducing token and secret exposure
Introduces workflow execution protections in public preview for GitHub Enterprise, organizations, and repositories.
Release notes now automatically list all pull requests merged since the previous release.
Introduces two new GitHub CLI commands, `gh repo read-file` and `gh repo read-dir`, to view remote file contents and directory listings without cloning the repository.
Added new partner integrations, expanding secret scanning detection coverage.
Enterprise admins can now disable bypass permissions for Copilot via enterprise-managed settings
Auto mode for Copilot Chat is now generally available to all users on GitHub.com and the mobile app.
Adds a limit on how many open pull requests a user without write access can create in a repository
Introduces Agent Finder, a new capability that automatically selects appropriate agents, skills, and tools for GitHub Copilot.
Sign-ups for Copilot Student, Pro, Pro+, and Max plans will resume gradually over the next weeks.
GitHub Copilot app is now generally available on macOS, Windows, and Linux.
Added server‑side telemetry to Copilot usage metrics.
Introduces organization runner controls for Copilot code review
GitHub Actions will enforce minimum version requirements for self‑hosted runners on GitHub.com and Enterprise Cloud
Adds organization custom properties for enhanced policy management.
GitHub Actions bot can now open pull requests that are allowed to run CI/CD workflows
AI usage reports now include GitHub AI Credits data in standard report fields.
Introduces a unified /settings command for Copilot CLI configuration.
Introduces two new GitHub‑hosted runner images available in public preview
Introduces GitHub Agentic Workflows in public preview.
GitHub Agentic Workflows can now authenticate using the built‑in GITHUB_TOKEN from GitHub Actions
Adds a new `gh discussion` command group to the GitHub CLI.
Added support for issue types in the GitHub CLI
Improved handoff between Copilot Chat and the web-based Copilot cloud agent
Maximum cost centers per enterprise increased from 250 to 500
Added incremental analysis for CodeQL scans on pull requests for Go and C/C++, improving scan speed.
Added a /security-review command to the GitHub Copilot CLI for running security reviews on code changes.
Dependabot now supports version updates for Deno projects via a .github/dependabot.yml entry
Introduces security‑focused default changes to npm install in upcoming v12
Claude Fable 5, Anthropic's first Mythos-class model for long‑horizon autonomous coding and knowledge‑work, is now generally available in GitHub Copilot.
Introduces scheduled security scans for repositories inactive for six months or more.
Security validation for third‑party coding agents is now generally available.
Adds support for native IP allow list enforcement on Enterprise Managed User (EMU) namespaces.
Deprecate GPT-5.2 and GPT-5.2-Codex models across GitHub Copilot experiences.
Adds support for Swift 6.3.2 in CodeQL
Added a one‑click “Fix with Copilot” button for failed GitHub Actions jobs for Copilot Pro, Pro+, and Max users
Adds the Agent Tasks REST API for Copilot Pro, Pro+, and Max, enabling programmatic start and tracking of cloud agent tasks.
Introduces one‑million‑token context windows for GitHub Copilot
Added enhanced planning, code review, and work‑management tooling in GitHub Copilot for Visual Studio 2026.
Enterprise Teams is now generally available on GitHub Enterprise Cloud.
GitHub Copilot Chat now offers enhanced context for diff and pull‑request discussions directly on github.com.
Added Agents feature in VS Code stable releases v1.120‑v1.123
Deprecate GPT-4.1 across all GitHub Copilot experiences (Chat, inline edits, ask/agent modes, code completions).
Expanded technical preview of the GitHub Copilot app to all existing Copilot Pro, Pro+, Business, and Enterprise customers
GitHub Copilot SDK reaches general availability with a stable, production‑ready API.
Added an experimental terminal UI with tab support
Introduced public preview of sandboxed execution environments for GitHub Copilot, available both locally and in the cloud.
Introduces GitHub Copilot code review for Azure Repos in technical preview
Copilot code review now adapts to your team’s tools and standards
Introduces AI-powered agent apps from GitHub partners that can be installed via the GitHub Marketplace.
Adds Copilot CLI support to JetBrains IDEs, enabling command‑line AI interactions directly within the IDE.
Gemini 3.1 Pro (Preview) and Gemini 3.5 Flash models are now supported
Adds AI adoption cohorts to the Copilot usage metrics API, classifying each engaged user by how they use Copilot
Updates CodeQL to version 2.25.5.
Imported from changelog source; review and generate a concise summary before publishing.
Claude Opus 4.8 model is now generally available in GitHub Copilot
Added granular deletion controls for Copilot Memory entries
Adds a public preview Repository Enablement API for GitHub Code Quality.
Enterprise owners can now define model rules to restrict which GitHub Copilot models are accessible per organization.
Dependabot now supports the sbt ecosystem for version updates
Added ability to sort secret scanning approval requests by order (ascending/descending) in the UI.
New sign-ups for GitHub Classroom are disabled as the service transitions to partner solutions.
Cache access is tightened for workflows triggered by forked pull requests.
Secret scanning recognizes more provider token patterns.