Skip to main content

How-tos for analyzing security data for an organization

Learn how to assess security risks, track feature adoption, view key metrics, and export data to analyze your organization's security posture.

Assessing the security risk of your code

You can use security overview to see which teams and repositories are affected by security alerts, and identify repositories for urgent remedial action.

Assessing adoption of security features

See which teams and repositories have already enabled features for secure coding, and identify any that are not yet protected.

Exploring GitHub Code Quality results in your organization

Understand your organization's code health at a glance with the organization-level dashboard for Code Quality.

Finding repositories with security alerts using security overview

Monitor and prioritize security alerts with security overview.

Exporting data from security overview

From security overview, you can export CSV files of the data used for your organization or enterprise's overview, risk, coverage, and CodeQL pull request alerts pages.

Viewing security insights

You can use the overview dashboard in security overview to monitor the security landscape of the repositories in your organization.

Viewing metrics for pull request alerts

Monitor CodeQL's performance in pull requests across your organizations to identify repositories where you may need to take action.

Viewing metrics for secret scanning push protection

Monitor push protection's performance across your organization to identify repositories where you may need to take action.

Viewing metrics for Dependabot alerts

You can use security overview to see how many Dependabot alerts are in repositories across your organization, to prioritize the most critical alerts to fix, and to identify repositories where you may need to take action.

Exporting the secret risk assessment report to CSV

Export the secret risk assessment report to a CSV file for detailed investigation and stakeholder sharing.