10110010011101001011001101101110101018200.devFrom Enterprise.Systems
GitHub logo

GitHub

ДоступноДля разработчиков

Коннектор GitHub — только для чтения, без агентов

Works for a personal account or an organization — detected automatically. Scans repository visibility, collaborator access, deploy keys, and installed GitHub Apps and their scopes.

Что мы сканируем

  • Repository visibility, collaborator and team access (never source code)
  • Installed GitHub Apps / OAuth apps and their granted scopes
  • Deploy keys per repository, including whether each key is read-only

Мониторинг только для чтения — данные в Вашем GitHub не изменяются, если только Вы не включите автоматическое устранение нарушений и не предоставите доступ на запись отдельно.

Выявленные угрозы безопасности

При каждом сканировании GitHub выполняется 26 правил обнаружения. Каждая находка сопровождается понятным объяснением, лежащими в её основе доказательствами и шагами по устранению.

  • CRITICALPublic exposure

    Public link with edit/owner access

  • CRITICALExternal access

    External principal holds ownership

  • HIGHPublic exposure

    Public link share (link-only)

  • HIGHPublic exposure

    Public + web-discoverable share

  • HIGHExternal access

    External access to sensitive data

  • HIGHExternal access

    External collaborator with edit access

  • HIGHOver permission

    Sensitive resource editable org-wide

  • HIGHOver permission

    Broad group access to sensitive data

  • HIGHAI agent

    Service account with broad write access

  • HIGHAI agent

    AI agent with access to sensitive data

  • HIGHAI agent

    AI agent with edit/owner access

  • HIGHExternal access

    Access granted to a look-alike (typosquat) domain

  • HIGHStale access

    Copilot seat assigned to a departed member

  • HIGHOver permission

    Installed GitHub App holds write or admin permissions

  • HIGHOver permission

    Deploy key with write access

  • MEDIUMOver permission

    Broad org-wide edit access (aggregate)

  • MEDIUMOver permission

    Resource with multiple owners

  • MEDIUMStale access

    Stale external read access

  • MEDIUMStale access

    Dormant privileged internal account

  • MEDIUMMisconfig

    Direct share breaks folder inheritance

  • MEDIUMMisconfig

    GitHub Copilot allows suggestions that match public code

  • MEDIUMStale access

    Copilot seat unused for 90+ days

  • MEDIUMStale access

    Write-capable GitHub App looks abandoned

  • MEDIUMExternal access

    Public repository has collaborators with write access

  • MEDIUMMisconfig

    Vendor AI-training data-contribution posture

  • LOWMisconfig

    Copilot seats auto-assigned to all members

Как подключить GitHub

  1. Шаг 1

    Зарегистрируйтесь или войдите в 8200.dev

  2. Шаг 2

    Перейдите в раздел Connectors → GitHub

  3. Шаг 3

    Нажмите Connect и авторизуйтесь на экране согласия GitHub

  4. Шаг 4

    8200.dev выполняет сканирование автоматически — результаты появятся в течение нескольких минут

Подключите первый источник за несколько минут — бесплатно, только для чтения, без звонка с менеджером.