Skip to content

workflow run_github_audit

EDAMAME Dev edited this page Jul 2, 2026 · 2 revisions

Run a GitHub organization audit


Workflow

📚 Run a GitHub organization audit

Overview Step-by-step guide to running a GitHub organization audit from Settings > Integrations. The audit analyzes GitHub events for security-relevant activity (boundary changes, PAT usage, trust modifications, membership changes, git operations). In the demo workspace the GitHub connection and audit are simulated, so this walkthrough runs the full flow end-to-end safely.

➡️ View the related feature

🪜 Steps

1. Open Settings > Integrations

Open Settings and select the Integrations tab. You will see a table of available integrations, including GitHub ('Audit your GitHub organization activity and security events.') with a 'Connect' button (highlighted).


Open Settings > Integrations

Step 1: Open Settings > Integrations


2. Connect GitHub

Click 'Connect' on the GitHub row. In production this opens GitHub's app authorization; in the demo workspace clicking Connect instantly connects GitHub (no GitHub login required). Once connected, an 'Audit' button (highlighted) appears on the GitHub row.


Connect GitHub

Step 2: Connect GitHub


3. Open the Audit menu and start

Click the 'Audit' button on the GitHub row to open the popover, pick a lookback window (7, 30, 90, or 180 days), then click 'Start audit' (highlighted). The audit runs and opens the results page.


Open the Audit menu and start

Step 3: Open the Audit menu and start


4. Review the audit results

The audit results page shows an overall audit score, stat cards (Total/Human/Non-Human events, Unique Actors, Unique IPs), a severity distribution, top actors and IPs, an activity map, category filter pills, and a full events table. You can return to it any time via 'View last audit' on the GitHub row.


Review the audit results

Step 4: Review the audit results



🏠 Navigation


This page was automatically generated from workflow definitions.

Clone this wiki locally