Update audit log event data (#58797)
Co-authored-by: Sophie <29382425+sophietheking@users.noreply.github.com>
This commit is contained in:
@@ -3570,23 +3570,6 @@
|
|||||||
],
|
],
|
||||||
"docs_reference_titles": "/code-security/code-scanning/introduction-to-code-scanning/about-code-scanning"
|
"docs_reference_titles": "/code-security/code-scanning/introduction-to-code-scanning/about-code-scanning"
|
||||||
},
|
},
|
||||||
{
|
|
||||||
"action": "code.search",
|
|
||||||
"description": "A code search was run targeting an organization. This event is not available in the web interface, only via the REST API, audit log streaming, or JSON/CSV exports.",
|
|
||||||
"docs_reference_links": "/search-github/github-code-search",
|
|
||||||
"fields": [
|
|
||||||
"@timestamp",
|
|
||||||
"action",
|
|
||||||
"actor_id",
|
|
||||||
"business_id",
|
|
||||||
"query",
|
|
||||||
"org_id",
|
|
||||||
"user_id",
|
|
||||||
"_document_id",
|
|
||||||
"search_string"
|
|
||||||
],
|
|
||||||
"docs_reference_titles": "/search-github/github-code-search"
|
|
||||||
},
|
|
||||||
{
|
{
|
||||||
"action": "codespaces.allow_permissions",
|
"action": "codespaces.allow_permissions",
|
||||||
"description": "A codespace using custom permissions from its devcontainer.json file was launched.",
|
"description": "A codespace using custom permissions from its devcontainer.json file was launched.",
|
||||||
|
|||||||
@@ -1831,23 +1831,6 @@
|
|||||||
"programmatic_access_type"
|
"programmatic_access_type"
|
||||||
]
|
]
|
||||||
},
|
},
|
||||||
{
|
|
||||||
"action": "code.search",
|
|
||||||
"description": "A code search was run targeting an organization. This event is not available in the web interface, only via the REST API, audit log streaming, or JSON/CSV exports.",
|
|
||||||
"docs_reference_links": "/search-github/github-code-search",
|
|
||||||
"fields": [
|
|
||||||
"@timestamp",
|
|
||||||
"action",
|
|
||||||
"actor_id",
|
|
||||||
"business_id",
|
|
||||||
"query",
|
|
||||||
"org_id",
|
|
||||||
"user_id",
|
|
||||||
"_document_id",
|
|
||||||
"search_string"
|
|
||||||
],
|
|
||||||
"docs_reference_titles": "/search-github/github-code-search"
|
|
||||||
},
|
|
||||||
{
|
{
|
||||||
"action": "codespaces.allow_permissions",
|
"action": "codespaces.allow_permissions",
|
||||||
"description": "A codespace using custom permissions from its devcontainer.json file was launched.",
|
"description": "A codespace using custom permissions from its devcontainer.json file was launched.",
|
||||||
|
|||||||
@@ -362,23 +362,6 @@
|
|||||||
"programmatic_access_type"
|
"programmatic_access_type"
|
||||||
]
|
]
|
||||||
},
|
},
|
||||||
{
|
|
||||||
"action": "code.search",
|
|
||||||
"description": "A code search was run targeting an organization. This event is not available in the web interface, only via the REST API, audit log streaming, or JSON/CSV exports.",
|
|
||||||
"docs_reference_links": "/search-github/github-code-search",
|
|
||||||
"fields": [
|
|
||||||
"@timestamp",
|
|
||||||
"action",
|
|
||||||
"actor_id",
|
|
||||||
"business_id",
|
|
||||||
"query",
|
|
||||||
"org_id",
|
|
||||||
"user_id",
|
|
||||||
"_document_id",
|
|
||||||
"search_string"
|
|
||||||
],
|
|
||||||
"docs_reference_titles": "/search-github/github-code-search"
|
|
||||||
},
|
|
||||||
{
|
{
|
||||||
"action": "codespaces.allow_permissions",
|
"action": "codespaces.allow_permissions",
|
||||||
"description": "A codespace using custom permissions from its devcontainer.json file was launched.",
|
"description": "A codespace using custom permissions from its devcontainer.json file was launched.",
|
||||||
|
|||||||
@@ -1831,23 +1831,6 @@
|
|||||||
"programmatic_access_type"
|
"programmatic_access_type"
|
||||||
]
|
]
|
||||||
},
|
},
|
||||||
{
|
|
||||||
"action": "code.search",
|
|
||||||
"description": "A code search was run targeting an organization. This event is not available in the web interface, only via the REST API, audit log streaming, or JSON/CSV exports.",
|
|
||||||
"docs_reference_links": "/search-github/github-code-search",
|
|
||||||
"fields": [
|
|
||||||
"@timestamp",
|
|
||||||
"action",
|
|
||||||
"actor_id",
|
|
||||||
"business_id",
|
|
||||||
"query",
|
|
||||||
"org_id",
|
|
||||||
"user_id",
|
|
||||||
"_document_id",
|
|
||||||
"search_string"
|
|
||||||
],
|
|
||||||
"docs_reference_titles": "/search-github/github-code-search"
|
|
||||||
},
|
|
||||||
{
|
{
|
||||||
"action": "codespaces.allow_permissions",
|
"action": "codespaces.allow_permissions",
|
||||||
"description": "A codespace using custom permissions from its devcontainer.json file was launched.",
|
"description": "A codespace using custom permissions from its devcontainer.json file was launched.",
|
||||||
|
|||||||
@@ -2064,23 +2064,6 @@
|
|||||||
],
|
],
|
||||||
"docs_reference_titles": "/code-security/code-scanning/introduction-to-code-scanning/about-code-scanning"
|
"docs_reference_titles": "/code-security/code-scanning/introduction-to-code-scanning/about-code-scanning"
|
||||||
},
|
},
|
||||||
{
|
|
||||||
"action": "code.search",
|
|
||||||
"description": "A code search was run targeting an organization. This event is not available in the web interface, only via the REST API, audit log streaming, or JSON/CSV exports.",
|
|
||||||
"docs_reference_links": "/search-github/github-code-search",
|
|
||||||
"fields": [
|
|
||||||
"@timestamp",
|
|
||||||
"action",
|
|
||||||
"actor_id",
|
|
||||||
"business_id",
|
|
||||||
"query",
|
|
||||||
"org_id",
|
|
||||||
"user_id",
|
|
||||||
"_document_id",
|
|
||||||
"search_string"
|
|
||||||
],
|
|
||||||
"docs_reference_titles": "/search-github/github-code-search"
|
|
||||||
},
|
|
||||||
{
|
{
|
||||||
"action": "codespaces.allow_permissions",
|
"action": "codespaces.allow_permissions",
|
||||||
"description": "A codespace using custom permissions from its devcontainer.json file was launched.",
|
"description": "A codespace using custom permissions from its devcontainer.json file was launched.",
|
||||||
|
|||||||
@@ -2173,23 +2173,6 @@
|
|||||||
],
|
],
|
||||||
"docs_reference_titles": "/code-security/code-scanning/introduction-to-code-scanning/about-code-scanning"
|
"docs_reference_titles": "/code-security/code-scanning/introduction-to-code-scanning/about-code-scanning"
|
||||||
},
|
},
|
||||||
{
|
|
||||||
"action": "code.search",
|
|
||||||
"description": "A code search was run targeting an organization. This event is not available in the web interface, only via the REST API, audit log streaming, or JSON/CSV exports.",
|
|
||||||
"docs_reference_links": "/search-github/github-code-search",
|
|
||||||
"fields": [
|
|
||||||
"@timestamp",
|
|
||||||
"action",
|
|
||||||
"actor_id",
|
|
||||||
"business_id",
|
|
||||||
"query",
|
|
||||||
"org_id",
|
|
||||||
"user_id",
|
|
||||||
"_document_id",
|
|
||||||
"search_string"
|
|
||||||
],
|
|
||||||
"docs_reference_titles": "/search-github/github-code-search"
|
|
||||||
},
|
|
||||||
{
|
{
|
||||||
"action": "codespaces.allow_permissions",
|
"action": "codespaces.allow_permissions",
|
||||||
"description": "A codespace using custom permissions from its devcontainer.json file was launched.",
|
"description": "A codespace using custom permissions from its devcontainer.json file was launched.",
|
||||||
|
|||||||
@@ -2173,23 +2173,6 @@
|
|||||||
],
|
],
|
||||||
"docs_reference_titles": "/code-security/code-scanning/introduction-to-code-scanning/about-code-scanning"
|
"docs_reference_titles": "/code-security/code-scanning/introduction-to-code-scanning/about-code-scanning"
|
||||||
},
|
},
|
||||||
{
|
|
||||||
"action": "code.search",
|
|
||||||
"description": "A code search was run targeting an organization. This event is not available in the web interface, only via the REST API, audit log streaming, or JSON/CSV exports.",
|
|
||||||
"docs_reference_links": "/search-github/github-code-search",
|
|
||||||
"fields": [
|
|
||||||
"@timestamp",
|
|
||||||
"action",
|
|
||||||
"actor_id",
|
|
||||||
"business_id",
|
|
||||||
"query",
|
|
||||||
"org_id",
|
|
||||||
"user_id",
|
|
||||||
"_document_id",
|
|
||||||
"search_string"
|
|
||||||
],
|
|
||||||
"docs_reference_titles": "/search-github/github-code-search"
|
|
||||||
},
|
|
||||||
{
|
{
|
||||||
"action": "codespaces.allow_permissions",
|
"action": "codespaces.allow_permissions",
|
||||||
"description": "A codespace using custom permissions from its devcontainer.json file was launched.",
|
"description": "A codespace using custom permissions from its devcontainer.json file was launched.",
|
||||||
|
|||||||
@@ -2366,23 +2366,6 @@
|
|||||||
],
|
],
|
||||||
"docs_reference_titles": "/code-security/code-scanning/introduction-to-code-scanning/about-code-scanning"
|
"docs_reference_titles": "/code-security/code-scanning/introduction-to-code-scanning/about-code-scanning"
|
||||||
},
|
},
|
||||||
{
|
|
||||||
"action": "code.search",
|
|
||||||
"description": "A code search was run targeting an organization. This event is not available in the web interface, only via the REST API, audit log streaming, or JSON/CSV exports.",
|
|
||||||
"docs_reference_links": "/search-github/github-code-search",
|
|
||||||
"fields": [
|
|
||||||
"@timestamp",
|
|
||||||
"action",
|
|
||||||
"actor_id",
|
|
||||||
"business_id",
|
|
||||||
"query",
|
|
||||||
"org_id",
|
|
||||||
"user_id",
|
|
||||||
"_document_id",
|
|
||||||
"search_string"
|
|
||||||
],
|
|
||||||
"docs_reference_titles": "/search-github/github-code-search"
|
|
||||||
},
|
|
||||||
{
|
{
|
||||||
"action": "codespaces.allow_permissions",
|
"action": "codespaces.allow_permissions",
|
||||||
"description": "A codespace using custom permissions from its devcontainer.json file was launched.",
|
"description": "A codespace using custom permissions from its devcontainer.json file was launched.",
|
||||||
|
|||||||
@@ -9,5 +9,5 @@
|
|||||||
"git": "Note: Git events have special access requirements and retention policies that differ from other audit log events. For GitHub Enterprise Cloud, access Git events via the REST API only with 7-day retention. For GitHub Enterprise Server, Git events must be enabled in audit log configuration and are not included in search results.",
|
"git": "Note: Git events have special access requirements and retention policies that differ from other audit log events. For GitHub Enterprise Cloud, access Git events via the REST API only with 7-day retention. For GitHub Enterprise Server, Git events must be enabled in audit log configuration and are not included in search results.",
|
||||||
"sso_redirect": "Note: Automatically redirecting users to sign in is currently in beta for Enterprise Managed Users and subject to change."
|
"sso_redirect": "Note: Automatically redirecting users to sign in is currently in beta for Enterprise Managed Users and subject to change."
|
||||||
},
|
},
|
||||||
"sha": "8efd989592ccb44cd746d9715ae6a69c87a8af8d"
|
"sha": "c0e079a256a9934069dee8b935190467e5fa3a5c"
|
||||||
}
|
}
|
||||||
Reference in New Issue
Block a user