Skip to content

Rank #2 of 4 in Code Hosting

GitHub logo

GitHub (Microsoft) · commercial

no public signals

Showcase

GitHub homepage screenshot
homepage · captured Sep 2026 · view live ↗
GitHub docs screenshot
docs · captured Sep 2026 · view live ↗

GitHub ships more than one product — each judged line competes in its own arena on the same stories as everyone else.

LineArenaRankPA Score
GitHubthis pageCode Hosting#2/444/100
GitHub CopilotAI Coding Agents#4/1337/100
GitHub MobileMobile AI Dev Tools#2/614/100

Not yet judged (1 — no arena where they compete): GitHub Actions

Verified integrations

Connections to other tracked products — hover a chip for the verbatim evidence quote behind it.

Appwrite logoAppwriteBackend as a ServiceAsana logoAsanaProject ManagementBase44 logoBase44Vibe-Coding App BuildersBetter Auth logoBetter AuthAuth & IdentityBlink Shell logoBlink ShellMobile AI Dev ToolsBolt.new logoBolt.newVibe-Coding App BuildersCanny logoCannyProduct Feedback & IntentChatGPT logoChatGPTAI AssistantsClaude Agent SDK logoClaude Agent SDKAgent Frameworks & SDKsClaude Code logoClaude CodeAI Coding AgentsClaude Design logoClaude DesignDesign & PrototypingClickUp logoClickUpProject ManagementCline logoClineAI Coding AgentsCodegen logoCodegenSoftware FactoryCodex logoCodexAI Coding AgentsCognee logoCogneeAI Memory LayersCursor logoCursorAI Coding AgentsDatabricks logoDatabricksData Warehouses & LakehousesDevin logoDevinAI Coding AgentsExa logoExaAI Search APIsFirebase logoFirebaseBackend as a ServiceForeloop logoForeloopSoftware FactoryGemini logoGeminiAI AssistantsGemini CLI logoGemini CLIAI Coding AgentsGitHub Copilot logoGitHub CopilotAI Coding AgentsGitLab logoGitLabCode HostingGitleaks logoGitleaksSecurity ScannersGlama logoGlamaMCP Infrastructure & Registriesincident.io logoincident.ioIncident Management & On-callJira logoJiraProject ManagementLangfuse logoLangfuseLLM Evals & ObservabilityLetta logoLettaAI Memory LayersLinear logoLinearProject ManagementLovable logoLovableVibe-Coding App BuildersMeltano logoMeltanoData Pipelines & ELTmise logomisePackage & Toolchain ManagersMissive logoMissiveEmail Clients & Email AIModal Sandboxes logoModal SandboxesAgent Sandboxes & Code Executionmonday.com logomonday.comProject Managementn8n logon8nWorkflow AutomationNeon logoNeonServerless & Developer DatabasesNetlify logoNetlifyEdge & App PlatformsNotion logoNotionProject ManagementOpenCode logoOpenCodeAI Coding AgentsOpenHands logoOpenHandsSoftware FactoryPipedream logoPipedreamWorkflow AutomationProductboard logoProductboardProduct Feedback & IntentPulumi logoPulumiInfrastructure as CodePydantic AI logoPydantic AIAgent Frameworks & SDKsRender logoRenderEdge & App PlatformsRunpod logoRunpodGPU CloudsSentry logoSentryObservability & MonitoringShopify logoShopifyE-commerce PlatformsShortwave logoShortwaveEmail Clients & Email AISkills for Real Engineers logoSkills for Real EngineersAgent Skills & Extensionsskills.sh logoskills.shAgent Skills & ExtensionsSlack logoSlackTeam ChatSnyk logoSnykSecurity ScannersSupermemory logoSupermemoryAI Memory LayersSuperpowers logoSuperpowersAgent Skills & Extensionsv0 logov0Vibe-Coding App BuildersVercel logoVercelEdge & App PlatformsWarp logoWarpTerminalsWorking Copy logoWorking CopyMobile AI Dev ToolsYYLO logoYYLOSoftware Factory

By theme — the product's score on each story themeBy theme

Agenticness — how well agents can access and operate the productAgenticnessevidence →

How well agents can access and operate the product

59.9/100

Automation depth — how much of the product can run unattendedAutomation depthevidence →

How much of the product can run unattended

37.5/100

Ci cd — continuous integration and delivery — pipelines, runners, cachingCi cdevidence →

Continuous integration and delivery — pipelines, runners, caching

43.8/100

Ecosystem integrations — the surrounding ecosystem — integrations, marketplaces, community packagesEcosystem integrationsevidence →

The surrounding ecosystem — integrations, marketplaces, community packages

59.6/100

Governance — stories about governance in this arenaGovernanceevidence →

Stories about governance in this arena

14.4/100

Openness — open source, data portability, and self-hosting storiesOpennessevidence →

Open source, data portability, and self-hosting stories

21.0/100

Privacy posture — data-handling and privacy storiesPrivacy postureevidence →

Data-handling and privacy stories

0.0/100

Project planning — stories about project planning in this arenaProject planningevidence →

Stories about project planning in this arena

37.8/100

Repos collaboration — working on repos together — pull requests, reviews, permissionsRepos collaborationevidence →

Working on repos together — pull requests, reviews, permissions

35.5/100

Security — security posture and hardening storiesSecurityevidence →

Security posture and hardening stories

44.1/100

Self hosting — running it yourself — self-hosted servers, open-source clientsSelf hostingevidence →

Running it yourself — self-hosted servers, open-source clients

0.0/100

Story verdicts — every judged story with its evidenceStory verdicts

?

Sorted by importance (agentic first) (high → low) · 72/72 stories · click a row’s chevron for the rationale and evidence

Connect an agent via an official MCP server G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness3full9/10T

Drive the product through a documented public API G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness3full9/10T

Delegate tasks to a built-in AI assistant inside the product G

Agentic features

ai-native userAgenticness — how well agents can access and operate the productAgenticness3full8/10C

Plug MCP servers into this product so it can use their tools G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness3full8/10C

Use an official CLI G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness2full9/10T

Get AI-generated insights and suggestions from my data inside the product G

Agentic features

ai-native userAgenticness — how well agents can access and operate the productAgenticness2full8/10X

Operate the product with natural-language commands G

Agentic features

ai-native userAgenticness — how well agents can access and operate the productAgenticness2full8/10C

Point an agent at llms.txt or agent-oriented docs G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness2full8/10T

Run the product headlessly / in CI for automation G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness2full8/10T

Set up automations that run autonomously in the background G

Agentic features

ai-native userAgenticness — how well agents can access and operate the productAgenticness2full8/10C

Issue scoped/least-privilege API credentials for an agent G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness2full7/10C

Build against official SDKs G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness2partial5/10T

Download a machine-readable API spec (OpenAPI or equivalent) G

Api quality

ai-native userAgenticness — how well agents can access and operate the productAgenticness2none0/10

Explore an interactive API reference with runnable examples G

Api quality

ai-native userAgenticness — how well agents can access and operate the productAgenticness2none0/10

Rely on versioned APIs with a documented deprecation policy G

Api quality

ai-native userAgenticness — how well agents can access and operate the productAgenticness2none0/10

Subscribe to events via webhooks G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness2noneuntestednone yet

Test against a sandbox environment without touching production data G

Api quality

ai-native userAgenticness — how well agents can access and operate the productAgenticness1partial3/10C

Define CI/CD pipelines as code using a YAML syntax C

Pipeline authoring

developerCi cd — continuous integration and delivery — pipelines, runners, cachingCi cd3full8/10X

Create and manage Git repositories and browse their commit history C

Repo management

developerRepos collaboration — working on repos together — pull requests, reviews, permissionsRepos collaboration3full7/10C

Define rules that trigger actions automatically on events G

ai-native userAutomation depth — how much of the product can run unattendedAutomation depth3full7/10C

Consolidate static analysis, dependency, secret, and dynamic security scanning into one platform C

Vulnerability scanning

devops-leadSecurity — security posture and hardening storiesSecurity3partial6/10C

Propose, discuss, and merge code changes using a pull or merge request workflow C

Repo management

developerRepos collaboration — working on repos together — pull requests, reviews, permissionsRepos collaboration3full6/10C

Run CI/CD jobs on runners hosted by the platform without managing infrastructure C

Runners

devops-leadCi cd — continuous integration and delivery — pipelines, runners, cachingCi cd3partial6/10X

Automatically receive pull requests that update vulnerable dependencies C

Vulnerability scanning

developerSecurity — security posture and hardening storiesSecurity3partial5/10C

Export all of my data in open formats and leave G

ai-native userOpenness — open source, data portability, and self-hosting storiesOpenness3partial5/10X

Track requirements, features, and bugs using issues with milestones, time tracking, and dependencies C

Issue tracking

developerProject planning — stories about project planning in this arenaProject planning3partial3/10C

Install a self-managed instance of the platform without laborious configuration G

Deployment options

devops-leadSelf hosting — running it yourself — self-hosted servers, open-source clientsSelf hosting3noneuntestednone yet

Prevent my data from being used to train AI models G

ai-native userPrivacy posture — data-handling and privacy storiesPrivacy posture3noneuntestednone yet

Review code changes online and respond to inline review comments C

Code review

developerRepos collaboration — working on repos together — pull requests, reviews, permissionsRepos collaboration3noneuntestednone yet

Secure my account with two-factor authentication G

Access security

developerSecurity — security posture and hardening storiesSecurity3noneuntestednone yet

Self-host the core product G

ai-native userOpenness — open source, data portability, and self-hosting storiesOpenness3noneuntestednone yet

Assign the initial code review of a pull request to an AI reviewer for faster turnaround C

Code review

ai-native userRepos collaboration — working on repos together — pull requests, reviews, permissionsRepos collaboration2full9/10C

Extend my stack with third-party apps, actions, and AI models from a marketplace C

Marketplace extensions

developerEcosystem integrations — the surrounding ecosystem — integrations, marketplaces, community packagesEcosystem integrations2full9/10C

Have an AI reviewer analyze code changes and suggest fixes during review C

Code review

ai-native userRepos collaboration — working on repos together — pull requests, reviews, permissionsRepos collaboration2full9/10C

Set up SSH keys to authenticate and connect securely to the platform G

Access security

developerSecurity — security posture and hardening storiesSecurity2full9/10C

Detect and remediate leaked secrets across the organization's repositories C

Vulnerability scanning

devops-leadSecurity — security posture and hardening storiesSecurity2full8/10C

Have AI automatically generate and apply fixes for detected security vulnerabilities C

Vulnerability scanning

ai-native userSecurity — security posture and hardening storiesSecurity2full8/10C

Reuse community-built CI/CD actions or plugins in my pipelines C

Pipeline authoring

developerCi cd — continuous integration and delivery — pipelines, runners, cachingCi cd2full8/10C

Automate application deployments as part of my CI/CD pipeline C

Deployment

developerCi cd — continuous integration and delivery — pipelines, runners, cachingCi cd2full7/10C

Do everything through the API that I can do in the UI G

ai-native userOpenness — open source, data portability, and self-hosting storiesOpenness2partial7/10T

Generate and manage personal access tokens for authenticating to the platform G

Access security

developerSecurity — security posture and hardening storiesSecurity2full7/10C

Organize work from high-level roadmaps to everyday tasks using project boards C

Issue tracking

developerProject planning — stories about project planning in this arenaProject planning2full7/10C

Enforce coding standards and CI/CD policies across all teams and repositories C

Policy enforcement

devops-leadGovernance — stories about governance in this arenaGovernance2partial6/10C

Launch a ready-to-code cloud-based development environment in seconds C

Dev environments

developerCi cd — continuous integration and delivery — pipelines, runners, cachingCi cd2partial5/10C

Perform bulk operations across many items at once G

ai-native userAutomation depth — how much of the product can run unattendedAutomation depth2partial5/10T

Control granular access permissions at the workspace, project, repository, and branch level C

Repo management

devops-leadRepos collaboration — working on repos together — pull requests, reviews, permissionsRepos collaboration2partial4/10C

Automatically update linked issue tracker statuses by referencing issue keys in my commits C

External pm sync

developerProject planning — stories about project planning in this arenaProject planning2partial3/10C

Get centralized visibility into CI/CD workflow runs across the organization C

Runners

devops-leadCi cd — continuous integration and delivery — pipelines, runners, cachingCi cd2partial3/10C

Read the product's source under an open license G

ai-native userOpenness — open source, data portability, and self-hosting storiesOpenness2partial3/10C

Search across repositories to find code, files, and commits C

Repo management

developerRepos collaboration — working on repos together — pull requests, reviews, permissionsRepos collaboration2disputed3/10D

Review large diffs and view third-party code quality reports directly in the review screen C

Code review

developerRepos collaboration — working on repos together — pull requests, reviews, permissionsRepos collaboration2none0/10

Run CI/CD jobs on my own self-hosted or private runners C

Runners

devops-leadCi cd — continuous integration and delivery — pipelines, runners, cachingCi cd2none0/10

Schedule recurring jobs or workflows G

ai-native userAutomation depth — how much of the product can run unattendedAutomation depth2none0/10

Choose where my data is stored (region/residency) G

ai-native userPrivacy posture — data-handling and privacy storiesPrivacy posture2noneuntestednone yet

Control data retention and deletion G

ai-native userPrivacy posture — data-handling and privacy storiesPrivacy posture2noneuntestednone yet

Enforce standardized, customizable merge checks before code can be merged C

Code review

devops-leadRepos collaboration — working on repos together — pull requests, reviews, permissionsRepos collaboration2noneuntestednone yet

Opt out of telemetry and usage tracking G

ai-native userPrivacy posture — data-handling and privacy storiesPrivacy posture2noneuntestednone yet

Publish and consume software packages in multiple package formats from the same platform C

Package registry

open-source-maintainerRepos collaboration — working on repos together — pull requests, reviews, permissionsRepos collaboration2noneuntestednone yet

Restrict repository access to specific IP address ranges C

Access security

devops-leadSecurity — security posture and hardening storiesSecurity2noneuntestednone yet

Run my self-hosted instance on my choice of operating system and architecture, including containers G

Deployment options

devops-leadSelf hosting — running it yourself — self-hosted servers, open-source clientsSelf hosting2noneuntestednone yet

Scale my self-hosted installation using reference architectures supporting tens of thousands of users G

Deployment options

devops-leadSelf hosting — running it yourself — self-hosted servers, open-source clientsSelf hosting2noneuntestednone yet

Use migration tooling to move my code and users from another platform or from self-hosted to cloud C

Deployment options

devops-leadSelf hosting — running it yourself — self-hosted servers, open-source clientsSelf hosting2noneuntestednone yet

Manage projects and assign tasks from my mobile device C

Issue tracking

developerProject planning — stories about project planning in this arenaProject planning1full8/10C

Connect the platform to external CI/CD tools instead of using its native pipelines C

External ci cd integration

devops-leadEcosystem integrations — the surrounding ecosystem — integrations, marketplaces, community packagesEcosystem integrations1full7/10C

Manage external issue tracker items directly within the code hosting UI C

External pm sync

developerProject planning — stories about project planning in this arenaProject planning1partial5/10C

Sync repository notifications and activity with chat tools C

Chat notifications

developerEcosystem integrations — the surrounding ecosystem — integrations, marketplaces, community packagesEcosystem integrations1partial5/10C

Version, review, and roll back my automations G

ai-native userAutomation depth — how much of the product can run unattendedAutomation depth1partial5/10C

Install third-party security scanning integrations directly from a security tab C

Security tool integrations

devops-leadEcosystem integrations — the surrounding ecosystem — integrations, marketplaces, community packagesEcosystem integrations1partial3/10C

Make a single annual commitment and flexibly allocate spend across seat-based and usage-based licensing G

Licensing cost management

devops-leadGovernance — stories about governance in this arenaGovernance1none0/10

Map incidents to deployments and require change approval before releases C

Deployment

devops-leadCi cd — continuous integration and delivery — pipelines, runners, cachingCi cd1none0/10

Access built-in resources to learn the Git version control system C

Onboarding

developerGovernance — stories about governance in this arenaGovernance1noneuntestednone yet

Require automated change approval workflows before code reaches production C

Policy enforcement

devops-leadGovernance — stories about governance in this arenaGovernance1noneuntestednone yet

Opportunities — the stories that would move this product's scores, from its own judged verdictsOpportunitiestop 8 of 44 stories with headroom

What would move GitHub’s scores — derived from its own judged verdicts, biggest headroom first. Each line quotes what the judge found missing; shipping it (or evidencing it publicly) is the fix.

  1. Repos collaboration — working on repos together — pull requests, reviews, permissionsReview code changes online and respond to inline review comments

    nonemoves PA Scoreimpact 30

    Missing: any doc on PR diff view, inline comment threads, review approval/request-changes flow, or reply-to-comment functionality.

  2. Openness — open source, data portability, and self-hosting storiesSelf-host the core product

    nonemoves PA Scoreimpact 30

    GitHub.com is a proprietary hosted SaaS; there is no evidence of a self-hostable core product (GitHub Enterprise Server, which does exist, is not mentioned anywhere in the pack).

  3. Privacy posture — data-handling and privacy storiesPrevent my data from being used to train AI models

    nonemoves PA Scoreimpact 30

    Missing: explicit documentation of an opt-out/setting to exclude user data from AI model training, third-party audits or community confirmation of enforcement.

  4. Self hosting — running it yourself — self-hosted servers, open-source clientsInstall a self-managed instance of the platform without laborious configuration

    nonemoves PA Scoreimpact 30

    GitHub.com is a cloud SaaS product; while GitHub Enterprise Server exists as a self-managed option in reality, the evidence pack contains no mention of a self-hosted/on-prem installable instance or any setup/configuration process for it.

  5. Security — security posture and hardening storiesSecure my account with two-factor authentication

    nonemoves PA Scoreimpact 30

    The evidence pack covers account creation, social login, SSH keys, and fine-grained PAT permissions, but contains no documentation or mention of two-factor authentication setup or enforcement for developer accounts.

  6. Agenticness — how well agents can access and operate the productSubscribe to events via webhooks

    nonemoves agent-readyimpact 30

    The evidence pack covers GitHub Copilot, CLI, REST/GraphQL APIs, MCP servers, and marketplace integrations, but contains no documentation or mention of GitHub's webhooks feature or event subscription mechanism for AI-native/agentic use.

  7. Agenticness — how well agents can access and operate the productExplore an interactive API reference with runnable examples

    nonemoves API qualityimpact 30

    Evidence shows GitHub has REST and GraphQL API documentation (github-docs-40,41,51) and permission references (github-docs-18,19,21,42), but nothing describes an interactive reference with runnable/try-it examples, and the probe for a discoverable OpenAPI spec returned 404s across all candidate paths (github-probe-2), suggesting no machine-readable interactive spec is exposed.

  8. Agenticness — how well agents can access and operate the productDownload a machine-readable API spec (OpenAPI or equivalent)

    nonemoves API qualityimpact 30

    While GitHub documents its REST and GraphQL APIs (github-docs-40/41), the evidence pack shows an explicit probe for a machine-readable OpenAPI/Swagger spec at all standard paths (openapi.json, swagger.json, etc.) returning 404, with no alternate documented location for a downloadable spec.

Showing the top 8 of 44 — every none/partial verdict in the story verdicts table is headroom.

Think a verdict is wrong? Every verdicts-table row has a Flag link — see the methodology.

Coverage map — which docs area, API section, or community source covers which judged storiesCoverage map6 surfaces · 47 covered stories

Where the cited evidence behind each covered verdict came from — the same citations the verdicts table shows, no extra judging.

En docs34 stories

GitHub README31 stories

Claims vs evidence — vendor claims reconciled against independent verdictsClaims vs evidence

0 of 12 testable claims verified · 0 contradictedintegrity 0/100

12 distinct capability claims found in GitHub’s own claimed-docs/GitHub materials, reconciled against our judge’s independent verdicts.

0

Verified

12

Unverified

0

Contradicted

34

Undersold

Unverified (12)
Undersold (34)

Business model

free-tiersubscription-per-seatusage-basedenterprise-custom

Free tier plus per-seat Team/Enterprise plans; usage-based billing for Actions minutes, storage, Codespaces, and Copilot add-ons.

pricing ↗

Score trend

How this product’s scores have moved as evidence and verdicts are re-derived — a point per change, not per day.

PA Score29 (Sep 1 '26)44 (Sep 16 '26)
Agent-ready4 (Aug 28 '26)71 (Sep 16 '26)

Flag

⚑ Flag a verdict

Think a verdict is wrong? Opens a prefilled GitHub issue — or use the ⚑ next to any verdict above.

Badge

Embed this product's score badge →

Hotlinked SVG — always shows the live current score.

For agents

Data

Agent surface uptime llms.txt 100% (30d, checked every 6h since Sep 8 '26)