github / github/roadmap

Fine-grained PATs can target multiple organizations in an enterprise [Public Preview]

未关闭
#1,118 0 条评论 0 个 reaction 已指派 0 人 在 GitHub 查看
Enterprise Paused Preview
主要语言
没有语言数据
星标
8.9k
派生
1.8k
PR 合并指标
30 天内没有已合并 PR

描述

### Value Prop

Today, fine-grained PATs (Personal Access Tokens) can only be targeted to a single organization, which can be very restrictive for developers who's workflows span multiple organizations. Right now they're stuck juggling multiple tokens, or more likely falling back to PATs (Classic) at the cost of improved security.

With multi-targeting, a single fine-grained PAT can be given access to multiple organizations at once, allowing more developers to move off of PATs (Classic).

### Expected Outcome

When creating a fine-grained PAT, developers can pick which enterprise they'd like to target, and then select the organizations within that enterprise the token should be valid for. The permissions selected for the token will be the same in each organization - selecting specific permissions per organization is not supported in this release.

For each organization that has an approval process setup, the token will have to be approved. Organization access will light up on a one by one basis as those approvals are granted.

At this time, for the sake of governance and isolation, we are not looking to let a token access multiple unrelated organizations. Thus, Free-plan and Team-plan organizations you are a member of would still have to be individually targeted with a token.

贡献指南

打开贡献指南

调研方向

该 issue 未指出任何源文件、测试或入口点。首先检查 GitHub fine-grained PAT 和 enterprise 组织目标定位的上下文;完成意味着按描述支持 enterprise 选择、多个组织目标、共享权限以及按组织分别处理的审批行为。

由索引模型根据 Issue 内容生成。

评估

技术栈
github
领域
authentication, security
Issue 类型
功能
难度
5/5
预计耗时
一周以上
活跃度
停滞
描述清晰度
需要澄清
新手友好度
20/100

把新 issue 发到你的邮箱

精选适合新手参与的 GitHub issue 摘要。