GitHub code scanning in pull requests
GitHub DocsGitHub explains that code scanning alerts appear as annotations in pull requests, in the conversation tab, and in files changed.
Why it matters: This is what trustworthy product copy looks like: it names the exact surface, the exact user moment, and the next action a reviewer can take.
Open source example