github / github/roadmap

Workflow Execution Protections: Actor and Event Configuration [Public Preview]

Open
#1,259 1 comment 0 reactions 0 assignees View on GitHub
cloud Enterprise Free Shipped Team
Dominant language
No language data
Stars
8.9k
Forks
1.8k
PR merge metrics
No merged PRs in 30d

Description

### Value Prop

Workflow execution protections give administrators precise control over which GitHub Actions workflows can run, based on who triggers them and what event starts them. This helps teams prevent unauthorized or unexpected workflow runs, making it easier to safeguard sensitive information and maintain build integrity across all projects.

### Expected Outcome

By introducing these protections, organizations can strengthen their security posture and reduce the risk of supply chain attacks or insider threats. Applying consistent, centralized rules for workflow triggers helps teams scale their governance, ensuring only trusted actors and events can execute workflows across repositories.

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.