Skip to main content
Integration

GitHub Live connector

Install the SREDlog GitHub App on your organization and approve the repositories that matter. SREDlog then creates read-only evidence summaries from commits, pull requests and issues using short-lived installation tokens.

What SREDlog takes in

  • Commit messages, timestamps and authorship
  • Pull request and repository activity
  • A summarized evidence item per synced repository

What it never touches

  • Your source code is not stored. SREDlog reads activity, not codebase contents
  • No write access: SREDlog can never push, open PRs or change anything
  • Repositories you don't select are never touched
GitHub connection record
2026-07-20

Evidence type

Commit history, pull requests, repository activity

How it connects

SREDlog GitHub App (installation), background sync job

Authentication

Short-lived installation tokens, with no personal access tokens or write access

Security

Read-only, least-privilege installation tokens the client grants and can revoke at any time. Nothing is written back to GitHub.

Available on

All plans

Setting it up

  1. 01In Settings, start the GitHub connection and install the SREDlog App on your org.
  2. 02Choose which repositories to include.
  3. 03Map repositories to the client/project they belong to.
  4. 04The first sync runs automatically; new activity syncs on a schedule.

Bring your GitHub evidence into a claim

Start a free trial and add one of your existing evidence sources to a project.

7-day free trial · No credit card required