Team coverage
Which repositories have at least one team-based permission path?
Free GitHub Access Audit
repod's free GitHub access audit gives private engineering orgs a fast first pass on repo access drift: direct grants, private repos without team coverage, high-privilege teams, and unclear ownership.
What it answers
The audit identifies repositories outside the team model, durable access held as individual exceptions, and teams with elevated permissions. It gives a platform lead a concrete starting queue rather than another inventory export.
For the complete operating workflow, see how the GitHub access audit tool moves from evidence to reviewed changes.
Signals
Each signal corresponds to a permission or ownership decision that can be verified in GitHub.
Which repositories have at least one team-based permission path?
Which private repositories have no team grant or clear owning group?
Which user-to-repository grants sit outside the normal GitHub Team model?
Which teams hold Maintain or Admin and need an explicit justification?
Interpret the results with the GitHub Teams hierarchy and repository permissions guide and the explanation of GitHub Direct access vs Organization access.
Synthetic example
These sample figures illustrate the report structure. A live audit calculates them from the selected GitHub organization.
Review repositories outside the team model first.
Assign an owning team or document the exception.
Move durable access into teams where practical.
Confirm that Maintain or Admin is still justified.
Manual worksheet
Use the template for a small review or to agree the fields your team needs before automating the process.
| Repository | Visibility | Owning team | Direct access | Review decision |
|---|---|---|---|---|
acme-platform/deployment-controller | Private | platform-engineering | alice-dev, vendor-reviewer | Replace durable direct access with team access; verify the vendor exception. |
The download also includes exception owner, expiry, permission, and notes columns. For a full manual process, use the GitHub repository permissions audit checklist or the GitHub repo access audit guide.