Get started with ease using security workflows!
Blog post from GitHub
GitHub has expanded its "new workflow" experience in GitHub Actions by introducing a Security category, which joins existing categories like Automation, Continuous Integration, and Deployment. This new category recommends workflows based on repository content and includes code scanning workflows to help prevent vulnerabilities from reaching production. These workflows can be scheduled for specific times or triggered by repository events, making it easier for users to discover and configure them directly from the central GitHub Actions interface without needing to navigate to the Security tab. Additionally, users are encouraged to enable GitHub Advanced Security where applicable to optimize these workflows. These enhancements are now available to all GitHub.com and GitHub Enterprise Cloud organizations.