Skip to main content

Viewing security information for your organization or enterprise

Visualize adoption rates for GitHub Advanced Security features, alert discovery, and remediation for your organization or enterprise.

Who can use this feature?

Secret risk assessment is available for all organizations owned by GitHub Team or GitHub Enterprise. Additional views are available for:

  • Organizations owned by a GitHub Team account with GitHub Secret Protection or GitHub Code Security
  • Organizations owned by a GitHub Enterprise account

About security overview

You can gain insights into the overall security landscape of your organization or enterprise and identify repositories that require intervention using security overview.

Viewing security insights

You can use the overview dashboard in security overview to monitor the security landscape of the repositories in your organization.

Assessing adoption of security features

You can use security overview to see which teams and repositories have already enabled features for secure coding, and identify any that are not yet protected.

Assessing the security risk of your code

You can use security overview to see which teams and repositories are affected by security alerts, and identify repositories for urgent remedial action.

Filtering alerts in security overview

Use filters to view specific categories of alerts

Exporting data from security overview

From security overview, you can export CSV files of the data used for your organization or enterprise's overview, risk, coverage, and CodeQL pull request alerts pages.

Viewing metrics for secret scanning push protection

You can use security overview to see how secret scanning push protection is performing in repositories across your organization, and to identify repositories where you may need to take action.

Viewing metrics for pull request alerts

You can use security overview to see how CodeQL is performing in pull requests for repositories across your organizations, and to identify repositories where you may need to take action.

Reviewing requests to bypass push protection

You can use security overview to review requests to bypass push protection from contributors pushing to repositories across your organization.