github / github/roadmap

GitHub secret scanning - extended metadata is generally available [GA]

未关闭
#1,263 1 条评论 0 个 reaction 已指派 0 人 在 GitHub 查看
cloud GitHub Advanced Security (GHAS) Shipped
主要语言
没有语言数据
星标
8.9k
派生
1.8k
PR 合并指标
30 天内没有已合并 PR

描述

### Value Prop
To help you understand ownership and impact of a leaked secret, GitHub secret scanning now surfaces additional metadata for supported secret types. Metadata varies by type and includes `owner-email`, `owner-id`, `owner-name`, `secret-id`, `secret name`, `secret-issued-date`, `secret-expiration-date`, `organization-name`, `organization-id`, and `last-used-date`.

### Expected Outcome
When a secret is leaked, knowing *what* was exposed is only half the battle. Teams also need to know who owns it, when it was created, and what systems it can access. This enriched metadata helps teams dramatically reduce the time it takes security and development teams to triage and remediate leaked secrets.

贡献指南

打开贡献指南

评估

这个 Issue 还没有评估数据。

把新 issue 发到你的邮箱

精选适合新手参与的 GitHub issue 摘要。