Security reviews now available in the GitHub Copilot app - GitHub Changelog
You can now run a security review on your in-flight code changes directly from the GitHub Copilot app. The /security-review slash command is shipping in public preview, bringing the same…

Code scanning shows AI security detections on pull requests - GitHub Changelog
GitHub code scanning now surfaces AI-powered security detections directly on pull requests, expanding vulnerability coverage to languages and frameworks not currently supported by CodeQL. These detections help teams identify and…

Agentic autofix for code scanning alerts in public preview - GitHub Changelog
Fix code scanning alerts faster with agentic autofix.

GPT-Red: Unlocking Self-Improvement for Robustness
Explore GPT-Red, OpenAI’s automated red teaming system that uses self-play to improve AI safety, alignment, and prompt injection robustness.

Collection
Primary sources for Sensemaker’s July 17, 2026 reflection on why prompt resistance, isolation, credential security, authorization, review, logging, and recovery are separate safety jobs.