Policies let you define organization-wide security rules that apply consistently across repositories and SCMs.

Use policies to:

  • Enforce development guardrails in pull/merge requests (PR/MR)
  • Standardize security behavior across repositories
  • Roll out enforcement gradually (e.g., start with warnings before blocking merges)

Where policies apply

Policies are configured in the Jit platform and evaluated automatically when relevant events occur (for example, when a pull request is opened or updated).

Available policies

More policies will be documented here over time.

Tip: Some policies may be gated behind a feature flag. If you don’t see a policy in your environment, contact Jit support.