UX Design & Webflow Agency NYC | Composite Global

All posts

Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Subscribe for the latest code AI news and product updates

Detecting supply chain attacks at scale with Deep Search

Poisoned LiteLLM packages on PyPI started stealing credentials. Using Deep Search and Code Search, we traced which public repos were protected by version pinning and which were left exposed. Here's how—and how you can do the same for any supply chain incident.

Image

The Future of SCIP

We are excited to announce our transition to a community-driven open source project. While making this change, we reaffirm our deep commitment to remaining active members of the community.

Image

MCP Stories From The Field

While direct API calls seem cheaper and easier, they lack the safety layer large organizations rely on. Tool connection protocols aren't dead; they remain vital for security, governance, and centralized control in big teams.

Image

CodeScaleBench: Testing Coding Agents on Large Codebases and Multi-Repo Software Engineering Tasks

The initial findings from CodeScaleBench, a new benchmark designed to evaluate coding agents against the true complexity of enterprise software development, including large codebases and multi-repository tasks.

Image

A New Era for Sourcegraph: The Intelligence Layer for AI Coding Agents and Developers

Today, we're announcing Sourcegraph 7.0, a release that marks the beginning of a new chapter for our company and product.

Image

Building DataBot: Our Always-On Data Assistant

The hidden cost of being a data-driven company is context-switching for analysts due to "quick questions." DataBot allows the data team to focus on auditing analysis instead of performing it.

Image

How Our Support Engineers Use Deep Search to Investigate Customer Issues Faster

Deep Search empowers our Support Engineers to bypass initial escalations, enabling them to dive directly into investigating the root cause of issues.

Image

Cross-Repository Code Navigation

Cross-repo search provides semantic code understanding across repositories.

Image

Introducing the new Sourcegraph changelog

Introducing the new Sourcegraph changelog, rolling out with the release of Sourcegraph 6.12 to better highlight exciting new improvements and features. Learn more about the new changelog and the future of Sourcegraph updates.

Image

Tools for companies that don't need Sourcegraph

Sourcegraph is only for companies who face “big code” problems. What are “big code” problems you ask?

Image

Weekly updates are coming to Sourcegraph Cloud

We're excited to share that starting on February 25 2026, we will be transitioning to shipping exciting weekly product updates for Sourcegraph Cloud customers.

Image

Secret Detection in Code: A Complete Guide for 2026

Millions of hardcoded secrets are pushed to public repositories every year, making credential leakage a leading cause of data breaches. This complete guide explains how to prevent these leaks, compares popular detection tools, and details the layered strategy required to secure your entire enterprise codebase.

Image

Best Developer Experience Tools for 2026

Developer experience is the key competitive advantage for engineering leaders in 2026, enabling higher retention and faster delivery by eliminating tooling friction. Dive into our comprehensive guide comparing the 12 best DevEx tools across six critical categories—from code search to developer portals and metrics to build your unified DevEx stack.

Image

Episode III: Revenge of the React Vulnerabilities

The React Server Components vulnerability was more persistent than initially anticipated, but the latest patch has eliminated the React2Shell exploit.

Image

Why code search at scale is essential when you grow beyond one repository

Your AI coding assistant can write code, but can it tell you where that endpoint is called across your 500 microservices spread out across dozens of repositories?

Image

Fixing The React2Shell Vulnerability in Large and Complex Enterprise Codebases (Part 2)

Automate the fix and full remediation for the critical React Server Components vulnerability across your codebase using Sourcegraph's Batch Changes, MCP server, and Deep Search.

Image

Agentic Coding is creating more code. More code is creating a bigger need for Code Search

AI coding tools are generating code faster than ever, making strong code search and intelligence like Sourcegraph a critical tool for managing the resulting growth and complexity of enterprise codebases.

Image

Hunting Down The React2Shell Vulnerability Across Enterprise Codebases (Part 1)

This post provides Sourcegraph code search queries and Deep Search instructions to immediately find and track all projects affected by the CVE-2025-55182 remote code execution flaw in React Server Components.

Image

A note from Dan

Our new CEO, Dan Adler, reflects on the evolution of code search and shares our strategic vision for supporting deep code understanding to both developers and AI agents.

Image

Why Sourcegraph and Amp Are Becoming Independent Companies

Sourcegraph and Amp are becoming two separate companies, with Dan Adler stepping up as CEO of the code search business while co-founders Quinn Slack and Beyang Liu launch Amp Inc. to focus on frontier coding agents.

Image