Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Enforce GitHub collaborator access in Terraform #1428

Open
AgaDufrat opened this issue Aug 14, 2024 · 0 comments
Open

Enforce GitHub collaborator access in Terraform #1428

AgaDufrat opened this issue Aug 14, 2024 · 0 comments

Comments

@AgaDufrat
Copy link
Contributor

Following the work to automate granting team access to govuk-tagged repos , we now automate the granting of certain access to certain ‘teams’ in GitHub. The vast majority of GOV.UK repos should follow the same pattern of access.

Over the years, inconsistencies have crept in, whereby certain other teams or individuals have been granted access to certain repos. In most cases we expect we can remove those individuals'/teams' access with no ill effect.

Leaving the inconsistent access as-is is a security risk, as it means that some people who have left GDS might still have write-access to some repos.

Access audit spreadsheet

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant