GitHub
서비스 중개발자GitHub 커넥터 — 읽기 전용, 에이전트리스
Works for a personal account or an organization — detected automatically. Scans repository visibility, collaborator access, deploy keys, and installed GitHub Apps and their scopes.
스캔 대상
- Repository visibility, collaborator and team access (never source code)
- Installed GitHub Apps / OAuth apps and their granted scopes
- Deploy keys per repository, including whether each key is read-only
읽기 전용 모니터링 — 자동 교정을 활성화하고 쓰기 액세스를 별도로 허용하지 않는 한 GitHub 데이터는 변경되지 않습니다.
보안 탐지 항목
26개의 탐지 규칙이 모든 GitHub 스캔 시 실행됩니다. 각 탐지 항목에는 쉬운 언어로 된 설명, 이를 뒷받침하는 증거, 그리고 조치 단계가 함께 제공됩니다.
- CRITICALPublic exposure
Public link with edit/owner access
- CRITICALExternal access
External principal holds ownership
- HIGHPublic exposure
Public link share (link-only)
- HIGHPublic exposure
Public + web-discoverable share
- HIGHExternal access
External access to sensitive data
- HIGHExternal access
External collaborator with edit access
- HIGHOver permission
Sensitive resource editable org-wide
- HIGHOver permission
Broad group access to sensitive data
- HIGHAI agent
Service account with broad write access
- HIGHAI agent
AI agent with access to sensitive data
- HIGHAI agent
AI agent with edit/owner access
- HIGHExternal access
Access granted to a look-alike (typosquat) domain
- HIGHStale access
Copilot seat assigned to a departed member
- HIGHOver permission
Installed GitHub App holds write or admin permissions
- HIGHOver permission
Deploy key with write access
- MEDIUMOver permission
Broad org-wide edit access (aggregate)
- MEDIUMOver permission
Resource with multiple owners
- MEDIUMStale access
Stale external read access
- MEDIUMStale access
Dormant privileged internal account
- MEDIUMMisconfig
Direct share breaks folder inheritance
- MEDIUMMisconfig
GitHub Copilot allows suggestions that match public code
- MEDIUMStale access
Copilot seat unused for 90+ days
- MEDIUMStale access
Write-capable GitHub App looks abandoned
- MEDIUMExternal access
Public repository has collaborators with write access
- MEDIUMMisconfig
Vendor AI-training data-contribution posture
- LOWMisconfig
Copilot seats auto-assigned to all members
Related guide
GitHub 연결 방법
1단계
8200.dev에 가입하거나 로그인하십시오
2단계
커넥터 → GitHub(으)로 이동하십시오
3단계
연결을 클릭하고 GitHub의 동의 화면을 통해 인증하십시오
4단계
8200.dev가 자동으로 스캔합니다 — 결과는 몇 분 내에 표시됩니다
몇 분 안에 첫 번째 소스를 연결하십시오 — 무료, 읽기 전용, 영업 상담 불필요.