Microsoft Defender for Cloud Apps
Cloud and workloads

Protect your GitHub Enterprise environment | Microsoft Defender for Cloud Apps

In brief

Updated the GitHub Enterprise Cloud section heading and anchor, clarified the connector setup step, refined best-practice wording, and refreshed the GitHub OAuth access link.

What Defender admins need to know

Administrators get clearer navigation and more precise guidance when configuring the GitHub connector.

Summaries are generated from the documentation change itself.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

SaaS security posture management for GitHub Enterprise Cloud

To see security posture recommendations for GitHub in Microsoft Secure Score, create an API connector via the Connectors tab, with Owner and Enterprise permissions. In Secure Score, select Recommended actions and filter by Product = GitHub.

Protect GitHub in real time

Review ourDefender for Cloud Apps best practices for securing and collaborating with guests.

Connect GitHub Enterprise Cloud to Microsoft Defender for Cloud Apps

  1. In the App connectors page, select +Connect an app, followed by GitHub.

  2. In the nextInstance name window, give the connector a descriptive name, and then select Next.

  3. In the Enter details window, fill out the Client ID and Client Secret from the OAuth app and the Organization Login Name you copied when configuring GitHub Enterprise Cloud.

    Back in the Defender for Cloud Apps console, you should receive a message that GitHub was successfully connected.

  4. Work with your GitHub organization owner to grant organization access to the OAuth app created under the GitHub Third-party access settings. For more information, see Enabling OAuth app access restrictions for your organization.

    The organization owner will find the request from the OAuth app only after connecting GitHub to Defender for Cloud Apps.