Skip to main content
GitHub integration supports project source workflows and authenticated webhook reconciliation. The exact operations available depend on the configured installation, repository permissions, and project source authority.

Safe operating model

  • grant only the repository permissions required by the integration;
  • review the repository and branch before importing or mirroring;
  • treat webhooks as authenticated events and verify their signatures;
  • keep deployment and provider secrets in P2HS configuration, not committed files;
  • review generated changes before production deployment.
For a first project, start with Import an existing project.