Follow the Least Privilege Principle


Apps should use the principle of least privilege and request the Oauth scopes and Github App permissions that the app needs to perform its intended functionality. For more information, see Principle of least privilege.

Stack layerSecurity domainSecurity tool initiated by this item
Third party appAccess controlManual input

Did this page help you?