{"meta":{"title":"シークレット セキュリティの概念","intro":"GitHubのシークレット セキュリティ機能の主要な概念について説明します。","product":"セキュリティとコードの品質","breadcrumbs":[{"href":"/ja/enterprise-server@3.18/code-security","title":"セキュリティとコードの品質"},{"href":"/ja/enterprise-server@3.18/code-security/concepts","title":"Concepts"},{"href":"/ja/enterprise-server@3.18/code-security/concepts/secret-security","title":"シークレット セキュリティ"}],"documentType":"subcategory"},"body":"# シークレット セキュリティの概念\n\nGitHubのシークレット セキュリティ機能の主要な概念について説明します。\n\n## Links\n\n* [秘密漏えいリスク](/ja/enterprise-server@3.18/code-security/concepts/secret-security/secret-leakage-risks)\n\n  API キー、パスワード、リポジトリにコミットされたトークンなどのシークレットは、承認されていないユーザーによって悪用され、組織に対するセキュリティ、コンプライアンス、財務上のリスクが発生する可能性があります。\n\n* [シークレット スキャン](/ja/enterprise-server@3.18/code-security/concepts/secret-security/secret-scanning)\n\n  公開された資格情報を悪用する前に自動的に検出することで、シークレットの不正使用を防止します。\n\n* [/public-monitoring](/public-monitoring)\n\n* [プッシュプロテクション](/ja/enterprise-server@3.18/code-security/concepts/secret-security/push-protection)\n\n  プッシュ保護を使用して、シークレットがリポジトリに到達するのを防ぎ、シークレットをセキュリティで保護します。\n\n* [GitHubを使用したシークレット セキュリティ](/ja/enterprise-server@3.18/code-security/concepts/secret-security/secret-security-with-github)\n\n  GitHubのセキュリティ ツールを使用して、シークレットリークを特定、修復、防止する方法について説明します。\n\n* [シークレット スキャン アラートについて](/ja/enterprise-server@3.18/code-security/concepts/secret-security/about-alerts)\n\n  さまざまな種類の シークレット スキャンニング アラートについて説明します。\n\n* [カスタムパターン](/ja/enterprise-server@3.18/code-security/concepts/secret-security/custom-patterns)\n\n  カスタム パターンを使用して、組織に固有のシークレットの種類を検出します。\n\n* [/validity-checks](/ja/enterprise-server@3.18/validity-checks)\n\n* [プッシュ保護用の委任バイパス](/ja/enterprise-server@3.18/code-security/concepts/secret-security/delegated-bypass)\n\n  プッシュ保護のために委任されたバイパスを使用して信頼されたアクターのブロックを解除しながら、シークレットのセキュリティを維持します。\n\n* [プッシュ保護の要求をバイパスする](/ja/enterprise-server@3.18/code-security/concepts/secret-security/bypass-requests)\n\n  プッシュ保護によってシークレットを含むコミットがブロックされた場合のバイパス要求のしくみについて説明します。\n\n* [/secret-scanning-for-partners](/ja/enterprise-server@3.18/secret-scanning-for-partners)\n\n* [GitHub シークレットの種類](/ja/enterprise-server@3.18/code-security/concepts/secret-security/secret-types)\n\n  GitHubで使用されるさまざまな種類のシークレットについて説明します。\n\n* [シークレット スキャンのプッシュ保護メトリック](/ja/enterprise-server@3.18/code-security/concepts/secret-security/push-protection-metrics)\n\n  組織全体におけるプッシュ保護の効果を把握します。\n\n* [コマンド ラインからのプッシュ保護](/ja/enterprise-server@3.18/code-security/concepts/secret-security/command-line-push-protection)\n\n  GitHubがプッシュ保護を使用してコマンド ラインからのシークレット リークを防ぐ方法について説明します。\n\n* [/push-protection-and-the-github-mcp-server](/ja/enterprise-server@3.18/push-protection-and-the-github-mcp-server)\n\n* [REST API からのプッシュ保護を操作する](/ja/enterprise-server@3.18/code-security/concepts/secret-security/push-protection-from-the-rest-api)\n\n  あなたのプッシュがGitHubに対してブロックされている場合、secret scanningがAPI要求のコンテンツ内にシークレットを検出したことを示します。これを解除するためのオプションをREST APIを使用して学びます。"}