GitHub Advanced Security customers can now enable validity checks for supported partner patterns in their repository, organization, or enterprise level code security settings.
When you enable the checkbox in your settings, GitHub will automatically check validation for patterns on a cadence by sending the pattern to our relevant partner provider. You can use the validation status on leaked secrets to help prioritize secrets needing remediation action.
As we continuously work with our partners to add support for more patterns, we'll update the "Validity check" column in our documented supported patterns list.
- Learn more about secret scanning
- Become a secret scanning partner
- Got feedback? Open a discussion in our code security discussion.