Skip to content

Enhance your workflow with extensions

Tools from the community and partners to simplify tasks and automate processes

    Warning

    We are deprecating GitHub Copilot Extensions on November 10, 2025, in favor of the Model Context Protocol (MCP). You can read more about this change in our changelog post.

    Dependency management apps

    Secure and manage your third-party dependencies.
    Snyk logo

    Snyk

    App

    Find, fix (and prevent!) known vulnerabilities in your code

    Renovate logo

    Dependency Automation service by Mend.io

    Socket Security logo

    Developer-first security platform that protects your code from both vulnerable and malicious dependencies

    Depfu logo

    Automated dependency updates done right

    Debricked logo

    Automatically identify, fix and prevent vulnerabilities in your open source dependencies

    Grit App logo

    Software maintenance on autopilot

    Repman - PHP Repository Manager logo

    Repman lets you manage private PHP Composer dependencies and speed up Packagist downloads up to 80% with a dedicated CDN

    JS Bundle Analyzer logo

    Keep your webpack bundle optimized over time

    MyGet logo

    Artifact and Package Repositories: Hosted NuGet, npm, Bower, Maven, PHP, VSIX, Python PyPI & RubyGems feeds

    Git X-Modules logo

    A better way to manage modular Git projects

    Releases Tracker logo

    Keep track of new releases

    Jetify Cloud logo

    Spin up a cloud development environment on the edge in seconds. Deploy to Jetify Cloud with 1-click

    Contrast Security SCA logo

    Automated software composition analysis at scale

    DepChecker Bot logo

    Find and fix npm dependency issues during code reviews

    Phylum logo

    Automate software supply chain security to prevent malware, vulnerabilities, and other risks

    watchman-pypi logo

    A bot, which continuously monitors dependency conflicts for millions of Python libraries in PyPI ecosystem

    Container Registry logo

    Best-in-class CNCF Harbor based Container Image Management for individuals, teams and organizations

    StackAid logo

    Fund all your open source dependencies

    Dpulls logo

    Mark a pull request as depending on another

    Black Duck Security logo

    Onboard SAST/SCA at scale, find and fix security and code quality issues in your code and open source