megachangelog
Feature

Secret scanning adds detectors for Lovable, Supabase, and more

GitHub's secret scanning now detects additional secret types from Lovable Labs, Pydantic Services Inc., and Supabase, expanding coverage for partner integrations.

Secret scanning now detects new secret types from Lovable Labs, Pydantic Services Inc., and Supabase.

New secret scanning partner

The following provider joined the secret scanning partnership program. When one of their secrets is found in a public repository, GitHub forwards it to the partner so they can revoke or rotate the credential before it can be abused.

Provider Secret type
Lovable Labs lovable_api_key

Detectors added

Secret scanning now automatically detects the following new secret types in your repositories.

Provider Secret type
Lovable Labs lovable_api_key
Pydantic Services Inc. logfire_token
Pydantic Services Inc. pydantic_ai_gateway_api_key
Supabase supabase_oauth_access_token
Supabase supabase_scoped_personal_access_token

Partner secrets are automatically reported to the secret issuer when found in public repositories through the secret scanning partnership program. User secrets generate secret scanning alerts when found in public or private repositories.

Learn more

Learn more about secret scanning and see the full list of supported secrets in our documentation. Let us know what you think in the community discussion.

The post Secret scanning adds detectors for Lovable, Supabase, and more appeared first on The GitHub Blog.

securitysecret-scanningintegrationsdetection

Source: original entry ↗

More from GitHub

Follow GitHub to get its new changes in your feed and email digest.

Announcement

Claude Haiku 5.5 now available in GitHub Copilot

Claude Haiku 5.5, Anthropic's lightweight model, is now generally available in GitHub Copilot for fast, high-volume tasks like subagents, quick edits, and terminal operations.

copilotaimodelsannouncement
Feature

Purpose-built model for leaked secret detection

GitHub introduced a new purpose-built model for detecting leaked secrets that provides context-aware detection to keep pace with modern software development practices, including AI-assisted coding.

securitysecret-detectionaiprotection
Announcement

Local sandboxing for GitHub Copilot now generally available

GitHub Copilot's local sandboxing feature is now generally available across GitHub Copilot CLI, the GitHub Copilot app, and VS Code sessions using Agent Host, providing developers with a secure environment for testing and development.

copilotaisecuritysandboxvscode
See all GitHub changes →