Skip to content

Add secrets push protection bypass gates#1674

Open
yanziwei wants to merge 1 commit into
UnitOneAI:mainfrom
yanziwei:improve/secrets-push-protection-bypass
Open

Add secrets push protection bypass gates#1674
yanziwei wants to merge 1 commit into
UnitOneAI:mainfrom
yanziwei:improve/secrets-push-protection-bypass

Conversation

@yanziwei
Copy link
Copy Markdown

@yanziwei yanziwei commented Jun 7, 2026

Summary

  • add push protection bypass governance checks to secrets-management
  • require bypass alert, audit-log, delegated bypass, reviewer, and remediation evidence
  • add a report table for push protection status, delegated bypass, bypass alert review, fix-later tickets, and residual risk

Validation

  • git diff --check
  • Markdown fence-balance check
  • marker checks for Push Protection Bypass Governance, delegated bypass, Bypass Alerts, Fix-Later, and GitHub push protection references

Notes

The change is scoped to hosted secret scanning push protection governance and does not alter existing secret value handling guidance. The skill still instructs reviewers never to reproduce actual secret values.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant