LoFP LoFP / legitimate publishing of repository pages by authorized users

Techniques

Sample rules

GitHub Repository Pages Site Changed to Public

Description

Detects when a GitHub Pages site of a repository is made public. This usually is part of a publishing process but could indicate or lead to potential unauthorized exposure of sensitive information or code.

Detection logic

condition: selection
selection:
  action: repo.pages_public