We use GitHub Advanced Security to secure data for multiple applications. It ensures user passwords or sensitive information are not accidentally exposed in code or reports. It scans the project's dependencies and checks if they are up-to-date and free from known security vulnerabilities.
Integration and Solution Architect at a government with 501-1,000 employees
Provides essential data security features but its dashboard needs improvement
Pros and Cons
- "It ensures user passwords or sensitive information are not accidentally exposed in code or reports."
- "There could be a centralized dashboard to view reports of all the projects on one platform."
What is our primary use case?
What is most valuable?
GitHub Advanced Security is part of the Azure DevOps ecosystem. So, all the dashboards and information stay in our environment. We are not required to integrate it with any external security solution.
What needs improvement?
There could be a centralized dashboard to view reports of all the projects on one platform.
What other advice do I have?
I rate GitHub Advanced Security a seven out of ten.
Disclosure: I am a real user, and this review is based on my own experience and opinions.


Buyer's Guide
Download our free GitHub Advanced Security Report and get advice and tips from experienced pros
sharing their opinions.
Updated: April 2025
Product Categories
Application Security ToolsPopular Comparisons
SonarQube Server (formerly SonarQube)
Checkmarx One
Fortify on Demand
Sonatype Lifecycle
Qualys Web Application Scanning
GitGuardian Platform
Fortify Application Defender
Contrast Security Assess
Buyer's Guide
Download our free GitHub Advanced Security Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- If you had to both encrypt and compress data during transmission, which would you do first and why?
- When evaluating Application Security, what aspect do you think is the most important to look for?
- What are the Top 5 cybersecurity trends in 2022?
- What are the threats associated with using ‘bogus’ cybersecurity tools?
- We're evaluating Tripwire, what else should we consider?
- Which application security solutions include both vulnerability scans and quality checks?
- Is SonarQube the best tool for static analysis?
- Why Do I Need Application Security Software?
- Which Email Security enterprise solution would you choose: Cisco Secure Email vs Forcepoint Email Security vs Barracuda Email Security Gateway?
- SAST vs. DAST: Which is better for application security testing?