Skip to main content

How-tos for analyzing security data for an organization

Learn how to assess security risks, track feature adoption, view key metrics, and export data to analyze your organization’s security posture.

Assessing the security risk of your code

You can use security overview to see which teams and repositories are affected by security alerts, and identify repositories for urgent remedial action.

Assessing adoption of security features

You can use security overview to see which teams and repositories have already enabled features for secure coding, and identify any that are not yet protected.

Exporting data from security overview

From security overview, you can export CSV files of the data used for your organization or enterprise's overview, risk, coverage, and CodeQL pull request alerts pages.

Viewing security insights

You can use the overview dashboard in security overview to monitor the security landscape of the repositories in your organization or enterprise.

Interpreting security findings

You can analyze security data on repositories in your organization to determine if you need to make changes to your security setup.

Viewing metrics for pull request alerts

You can use security overview to see how CodeQL is performing in pull requests for repositories across your organizations, and to identify repositories where you may need to take action.

Viewing metrics for secret scanning push protection

You can use security overview to see how secret scanning push protection is performing in repositories across your organization or enterprise, and to identify repositories where you may need to take action.

Viewing metrics for Dependabot alerts

You can use security overview to see how many Dependabot alerts are in repositories across your organization, to prioritize the most critical alerts to fix, and to identify repositories where you may need to take action.

Exporting the secret risk assessment report to CSV

Export the secret risk assessment report to a CSV file for detailed investigation and stakeholder sharing.