GitHub Enterprise Cloud introduces proof of presence for high-impact actions
GitHub Enterprise Cloud now supports requiring interactive re-authentication or multi-factor challenges for high-impact actions, expanding sudo mode for enhanced enterprise security. This public preview feature helps prevent supply chain attacks stemming from stolen session cookies or tokens by verifying a real, authorized person is acting. It is currently scoped to managed user (EMU) enterprises on github.com and GHEC-DR that use Microsoft Entra ID as their SSO identity provider. The feature also assists regulated customers in meeting compliance requirements for fresh authentication.
Features (1) ›
- Require proof of presence for high-impact actions
GitHub Enterprise Cloud now allows administrators to mandate interactive re-authentication or a multi-factor challenge before members can perform high-impact actions such as creating tokens or changing security settings. This public preview feature enhances security by validating the user's presence at the moment of the action, utilizing the enterprise's configured IdP policies via SAML or OIDC.
https://github.blog/changelog/2026-09-24-require-proof-of-presence-for-high-impact-actions
Related releases
- GitHub Actions Deprecates Node 20, Requires Node 24 for JavaScript Actions GitHub Changelog ·
- GitHub Copilot Code Review Gets Enhanced Personal & Enterprise Configuration GitHub Changelog ·
- GitHub Copilot app gains local sandboxing for enhanced security GitHub Changelog ·
- GitHub Copilot App Adds OpenTelemetry Support for Enterprise Monitoring GitHub Changelog ·
- GitHub Copilot for JetBrains 1.18.0 Adds AI-Assisted Approvals, Shared Skills GitHub Changelog ·
- GitHub Copilot CLI now offers faster C++ code intelligence with whole codebase indexing GitHub Changelog ·