redpanda-ai / Meerkat

Used for the Meerkat project
Other
1 stars 1 forks source link

managing enterprise source code repository #663

Open shrenikashok opened 8 years ago

shrenikashok commented 8 years ago

securing source code is one of the integral responsibility to protect intellectual property of a company.

goal: secure the source code of a project with version control and enable developers to maximize their performance.

after multiple discussions, we have identified github organizational account to hold Meerkat source code, here are the task breakup to manage the source code repository:

  1. Clean up the organizational account and keep users only with valid access
  2. All users associated with github repository should be from Yodlee email
  3. grant admin accounts only on need basis
  4. Enable admin accounts with 2 factor or multi factor authentication
  5. If a user is added or deleted, admin privilege granted/revoked, log a Service Request for audit
  6. create a process to accommodate user termination, his/her access with the account has to be revoked
shrenikashok commented 8 years ago

Dheeraj, is no more with Yodlee now, as a first step in this direction, can we cleanup his access from the repository and any other places if applicable.