Skip to main content

プッシュ保護のために委任されたバイパスについて

組織またはリポジトリでプッシュ保護をバイパスする機能を持つチーム、またはロールを制御できます。

この機能を使用できるユーザーについて

プッシュ保護の委任されたバイパスは、次のリポジトリの種類で使用できます。

  • GitHub Secret Protection が有効になっている GitHub Team または GitHub Enterprise Cloud 上の organization 所有リポジトリ

About delegated bypass for push protection

When push protection is enabled for a repository, users with write access can bypass push protection and push a secret if they provide a reason and the bypass is approved.

With delegated bypass for push protection, you can:

  • Choose which individuals, roles, and teams can bypass push protection.
  • Introduce a review and approval cycle for pushes containing secrets from all other contributors.

Delegated bypass applies to files created, edited, and uploaded on GitHub.

To set up delegated bypass, organization owners or repository administrators create a list of users with bypass privileges. This designated list of users can then:

  • Bypass push protection, by specifying a reason for bypassing the block.
  • Manage (approve or deny) bypass requests coming from all other contributors. These requests are located in the "Push protection bypass" page in the Security tab of the repository.

The following types of users can always bypass push protection without having to request bypass privileges:

  • Organization owners
  • Security managers
  • Users in teams, default roles, or custom roles that have been added to the bypass list.
  • Users who are assigned (either directly or via a team) a custom role with the "review and manage secret scanning bypass requests" fine-grained permission.

Next steps