CIS GitHub Benchmark v1.0.0

Ensure Periodic Review and Removal of Inactive User Accounts
Profile Applicability:  Level 1 Description:  User accounts that have been inactive for a specified duration must be regularly reviewed and disabled or rem...
Tue, 27 May, 2025 at 6:29 AM
Ensure Restrict Team Creation Permissions to Authorized Users
Profile Applicability:  Level 1 Description:  The ability to create new teams within the organization’s collaboration or version control platform must be r...
Tue, 27 May, 2025 at 6:34 AM
Ensure Limit and Manage Administrator Accounts in the Organization
Profile Applicability:  Level 1 Description:  The number of administrator accounts within the organization’s collaboration or version control platform must...
Tue, 27 May, 2025 at 6:44 AM
​Ensure MFA for All Code Contributors
Profile Applicability:  Level 1 Description:  All contributors who submit new code to repositories must use Multi-Factor Authentication (MFA) when accessin...
Tue, 27 May, 2025 at 6:53 AM
Ensure Multi-Factor Authentication for All Organization Members
Profile Applicability:  Level 1 Description: The organization must enforce Multi-Factor Authentication (MFA) for all members accessing its resources, inclu...
Tue, 27 May, 2025 at 7:00 AM
Ensure Restrict Member Invitations to Company-Approved Email Addresses
Profile Applicability:  Level 1 Description:  All new members must be invited to the organization or repositories using email addresses that are approved a...
Tue, 27 May, 2025 at 7:10 AM
Ensure Maintain a Minimum of Two Administrators Per Repository
Profile Applicability:   Level 1 Description:  Each repository must have at least two designated administrators responsible for managing repository settin...
Tue, 27 May, 2025 at 7:36 AM
Ensure Strict Default Permissions on Repositories
Profile Applicability:  Level 1 Description:  Repositories must have strict base permissions configured to limit access only to authorized users and roles ...
Tue, 27 May, 2025 at 7:40 AM
Ensure to Confirm and Display Organization Verification Status
Profile Applicability:  Level 1 Description:  The organization must complete the necessary verification processes on platform(s) hosting its repositories o...
Tue, 27 May, 2025 at 7:46 AM
Ensure Restrict SCM Email Notifications to Verified Email Domains
Profile Applicability:  Level 1 Description:  Configure the Source Code Management (SCM) system to send email notifications only to recipients with verifie...
Tue, 27 May, 2025 at 8:11 AM