No more typing reviews! Try our Samantha, our new voice AI agent.
GitHub Advanced Security Logo

GitHub Advanced Security pros and cons

Vendor: GitHub
4.3 out of 5

Pros & Cons summary

Buyer's Guide

Get pricing advice, tips, use cases and valuable features from real users of this product.
Get the report

Prominent pros & cons

PROS

GitHub Advanced Security prevents accidental exposure of user passwords or sensitive information in code or reports.
It provides security and dependency scans with a focus on cost-effectiveness.
GitHub Advanced Security is known for its scalability, handling new applications with ease.
Its integration with AI, particularly CodeQL, reduces false positives, enhancing reliability.
Flexible and feature-rich, GitHub Advanced Security offers a variety of options compared to other tools.

CONS

There is a lack of a centralized dashboard for viewing reports across all projects.
The deployment process is challenging and requires improvement.
Support for additional programming languages is needed.
Open-source security vulnerabilities updates are not timely.
More customization options for vulnerability scans are required.
 

GitHub Advanced Security Pros review quotes

Devendiran Kandan - PeerSpot reviewer
DevOps Engineer at a tech vendor with 1,001-5,000 employees
Dec 2, 2025
GitHub Advanced Security's secret scanning is good.
AS
Delivery Head at Newt
Aug 19, 2025
The best features of GitHub Advanced Security are its flexibility and the multiple options it has compared to other tools.
Sabna Sainudeen - PeerSpot reviewer
Director, Application Security at Carlsberg
Feb 5, 2025
GitHub Advanced Security is a very developer-friendly solution that is integrated within my development environment.
Learn what your peers think about GitHub Advanced Security. Get advice and tips from experienced pros sharing their opinions. Updated: April 2026.
893,164 professionals have used our research since 2012.
reviewer2395785 - PeerSpot reviewer
Senior Solution Architect at a manufacturing company with 10,001+ employees
Jul 1, 2024
GitHub Advanced Security uses artificial intelligence in the backend, specifically CodeQL, to analyze code and provide fewer but more reliable findings, so there are less false positives.
MA
AppSec engineer at EastNets Holding Ltd.
May 7, 2025
GitHub Advanced Security is ten out of ten scalable.
AV
DevOps Engineer at Alm Brand
Mar 31, 2025
The initial setup was straightforward and completed in a matter of minutes.
PA
Assistant General Manager at Air India Limited
Feb 5, 2024
It is a stable solution...It is a scalable solution as it can handle new applications along with the analysis part.
reviewer2301468 - PeerSpot reviewer
Technical Program Manager at a healthcare company with 10,001+ employees
Nov 6, 2023
The most valuable is the developer experience and the extensibility of the overall ecosystem.
VN
Technical Consultant at Canarys Automations Pvt. Ltd.
Jan 24, 2024
Dependency scanning is a valuable feature.
reviewer2267097 - PeerSpot reviewer
Integration and Solution Architect at a government with 501-1,000 employees
Sep 6, 2023
It ensures user passwords or sensitive information are not accidentally exposed in code or reports.
 

GitHub Advanced Security Cons review quotes

Devendiran Kandan - PeerSpot reviewer
DevOps Engineer at a tech vendor with 1,001-5,000 employees
Dec 2, 2025
We used additional third-party solutions, but we replaced them with GitHub Advanced Security, even though I do not have a very good opinion about GitHub Advanced Security.
AS
Delivery Head at Newt
Aug 19, 2025
An area of GitHub Advanced Security that has room for improvement is customization.
Sabna Sainudeen - PeerSpot reviewer
Director, Application Security at Carlsberg
Feb 5, 2025
Open-source security vulnerabilities are not getting updated in a timely manner.
Learn what your peers think about GitHub Advanced Security. Get advice and tips from experienced pros sharing their opinions. Updated: April 2026.
893,164 professionals have used our research since 2012.
reviewer2395785 - PeerSpot reviewer
Senior Solution Architect at a manufacturing company with 10,001+ employees
Jul 1, 2024
Maybe make it compatible with more programming languages. Have a customized ruleset where the end-user can create their own rules for scanning.
MA
AppSec engineer at EastNets Holding Ltd.
May 7, 2025
The reporting feature might need improvement. While it integrates seamlessly with my workflow, it doesn't provide management with oversight, such as statistics and the number of vulnerabilities.
AV
DevOps Engineer at Alm Brand
Mar 31, 2025
For GitHub Advanced Security, I would like to see more support for various programming languages.
PA
Assistant General Manager at Air India Limited
Feb 5, 2024
The deployment part of the product is an area of concern that needs to be made easier from an improvement perspective.
reviewer2301468 - PeerSpot reviewer
Technical Program Manager at a healthcare company with 10,001+ employees
Nov 6, 2023
A more refined approach, categorizing and emphasizing specific vulnerabilities, would be beneficial.
VN
Technical Consultant at Canarys Automations Pvt. Ltd.
Jan 24, 2024
The customizations are a little bit difficult.
reviewer2267097 - PeerSpot reviewer
Integration and Solution Architect at a government with 501-1,000 employees
Sep 6, 2023
There could be a centralized dashboard to view reports of all the projects on one platform.