Improvement

March 23, 20261 Minute Read

Push protection exemptions from repository settings

You can now designate secret scanning push protection exemptions from your repository settings. Previously, exemptions could only be managed from security configurations at the organization and enterprise levels.

What are push protection exemptions?

Organizations with secret scanning push protection can now designate specific roles, teams, and apps as exempt from push protection enforcement. Exemption status is evaluated at the time of each push. When an exempt actor pushes content containing secrets, push protection is skipped and no bypass requests are created.

Learn more in our secret scanning documentation and our docs about push protection bypasses and exemptions.

Subscribe to our developer newsletter

Discover tips, technical guides, and best practices in our biweekly newsletter just for devs.

By submitting, I agree to let GitHub and its affiliates use my information for personalized communications, targeted advertising, and campaign effectiveness. See the GitHub Privacy Statement for more details.

Push protection exemptions from repository settings - GitHub Changelog