I assume that's why they were acquired. At this point, they were a little bit more of a "feature" than a product. I suspect this tech is driving vuln alerts on repos:
https://github.com/blog/2470-introducing-security-alerts-on-...
https://github.com/blog/2470-introducing-security-alerts-on-...
You don't have to suspect, it's in the article :)
We had nothing to do with that feature! We legit joined just now. But it certainly demonstrated a certain synergy between our skillset and GitHub's feature roadmap ;).
We can’t take credit for the current security offerings - it was the work of our soon-to-be coworkers at GitHub.