diff --git a/COMPLIANCE.md b/COMPLIANCE.md new file mode 100644 index 0000000..348847b --- /dev/null +++ b/COMPLIANCE.md @@ -0,0 +1,125 @@ +([Back](README.md)) + +# Compliance + +## Table of Contents + +* [Compliance](#compliance) + * [Overview](#overview) + * [GitHub Foundations Toolkit PBMM Compliance Features](#github-foundations-toolkit-pbmm-compliance-features) + * [GitHub Security Features Status](#github-security-features-status) + * [Audit Logs](#audit-logs) + * [Daily Audit Log Export](#daily-audit-log-export) + * [Exporting GitHub Enterprise Audit Logs to Azure Sentinel](#exporting-github-enterprise-audit-logs-to-azure-sentinel) + * [Streaming Audit Logs to Other Platforms](#streaming-audit-logs-to-other-platforms) + +## Overview + +This document outlines the compliance and security features of the platform. + +## GitHub Foundations Toolkit PBMM Compliance Features + +The following table maps the features of the GitHub Foundations Toolkit to the [PBMM Controls]() + + + + +| Item | What | Where | Controls | Open-Source Alternative | +| --- | --- | --- | --- | --- | +| Encrypted Secrets | Uses GitHub public key to encrypt secrets. Secrets must be encrypted to be used. |