Business Secret Scanning Push Protection
| action | Description | Sample | Rule |
|---|---|---|---|
| business_ | Push protection for secret scanning was disabled for your enterprise. | N | Y |
| business_ | Push protection for secret scanning was disabled for new repositories in your enterprise. | N | Y |
| business_ | Push protection for secret scanning was enabled for your enterprise. | N | N |
| business_ | Push protection for secret scanning was enabled for new repositories in your enterprise. | N | N |
business_secret_scanning_push_protection.disable
#Description
Push protection for secret scanning was disabled for your enterprise.
Documented only in GitHub's enterprise audit log reference, not the organization or user audit log pages. Full rule details for this event, including ATT&CK technique mappings and native queries →Detection Rules #
Sigma #
T1685↳ also matches business_secret_scanning_push_protection.disabled_for_new_repos YARA-L #
T1562↳ also matches business_secret_scanning_push_protection.disabled_for_new_repos Panther #
T1562↳ also matches business_secret_scanning_push_protection.disabled_for_new_repos
business_secret_scanning_push_protection.disabled_for_new_repos
#Description
Push protection for secret scanning was disabled for new repositories in your enterprise.
Documented only in GitHub's enterprise audit log reference, not the organization or user audit log pages. Full rule details for this event, including ATT&CK technique mappings and native queries →Detection Rules #
Sigma #
T1685↳ also matches business_secret_scanning_push_protection.disable YARA-L #
T1562↳ also matches business_secret_scanning_push_protection.disable Panther #
T1562↳ also matches business_secret_scanning_push_protection.disable
business_secret_scanning_push_protection.enable
#Description
Push protection for secret scanning was enabled for your enterprise.
Documented only in GitHub's enterprise audit log reference, not the organization or user audit log pages.
business_secret_scanning_push_protection.enabled_for_new_repos
#Description
Push protection for secret scanning was enabled for new repositories in your enterprise.
Documented only in GitHub's enterprise audit log reference, not the organization or user audit log pages.