Enterprise Admins Can Now Enforce GitHub Advanced Security Configurations
GitHub now allows enterprise administrators to enforce Advanced Security configurations across all organizations, preventing overrides by organization or repository administrators. This change enables security and compliance teams to apply consistent policies enterprise-wide, improving security posture and governance. Previously, enforcement only applied to repository owners. The new enforcement options are available via a dropdown menu in security configurations.
Features (1) ›
- Extended Enforcement for GitHub Advanced Security Configurations
Enterprise administrators can now enforce GitHub Advanced Security configurations, preventing organization and repository administrators from overriding settings. This expands on previous functionality which only prevented repository owners from changing these settings, ensuring consistent policy application for security and compliance teams.
https://github.blog/changelog/2026-09-15-enforce-github-advanced-security-configurations
Related releases
- GitHub Copilot suggests custom repository property definitions GitHub Changelog ·
- GitHub confirms SHA-1 in HTTPS sunset for github.com and Enterprise Cloud GitHub Changelog ·
- GitHub Profiles Now Show Highest Achievement Badge Tier GitHub Changelog ·
- GitHub Copilot adds tiers for cost and quality in auto model selection GitHub Changelog ·
- GitHub Copilot usage metrics now include VS Code Agents activity GitHub Changelog ·
- GitHub Copilot Code Review Gains Auto-Resolution, Smart Commits, and Deeper Analysis GitHub Changelog ·