GitHub | Ploy
NEWFreshservice is now a Ploy integrationSee what shipped
INTEGRATIONSSOURCE CONTROL
GitHub28 OF 28 CAPABILITIES ASSESSED

Every repo, team and outside collaborator, owned

Org roles, team membership and repo permissions, including the outside collaborators nobody remembers inviting.

TYPE · SCMAUTH · GITHUB APPDOMAIN · GITHUB.COM
GitHub connectorHOURLY SYNCCAPABILITIES
WHAT PLOY DOES
Sync organisation members and Enterprise usersEveryone in the organisation lands as an identity. Members are reported active: a suspended or deleted GitHub account is not separately detected.
READ
Discover repositories, teams and organisationsEvery repository, team and organisation account is a grantable resource in Ploy, alongside the Enterprise licence resources.
READ
Map org membership, team membership and repository collaboratorsWho holds which access and at what level, including the Enterprise licence and owner grants that sit above the organisation.
READ
Read consumed Enterprise licencesSeat counts come from GitHub Enterprise consumed-licence scans. An organisation-only install does not report seats.
READ
Invite a user to the organisationPloy invites or adds the user to the org. It does not create a personal GitHub account: people bring their own.
WRITE
Grant and revoke org, team and repository accessOrganisation membership, team membership and repository collaborator access are added and removed from Ploy.
WRITE
Remove a member or a pending invitationA leaver comes off the organisation and any unaccepted invitation is withdrawn. The personal GitHub account is untouched.
WRITE

Ploy connects to a GitHub organisation through a GitHub App, so access is scoped to the org you install it on and can be revoked from GitHub at any time.

What Ploy reads

  • Organisation members and GitHub Enterprise users
  • Teams and team membership
  • Repositories, and the collaborators on them with their permission level
  • Enterprise licence and owner grants, where the install reaches the enterprise

What Ploy can change

Revoking a grant removes the user from the org, the team, or the repository, depending on which level the grant was issued at. Ploy can also invite someone into the organisation and withdraw an invitation that was never accepted. It never creates or deletes a personal GitHub account.

Setting it up

Install the Ploy GitHub App from your organisation settings and approve the requested read scopes. The first sync usually completes in under a minute.

2.1WHAT IT UNLOCKS

Three jobs this connector does on day one

COLLABORATORS

The access nobody remembers granting

Repository collaborators are read alongside organisation and team membership, so someone added to a single repo two years ago sits on the same list as everyone else.

ACCESS

Teams and repos are the grant

An approved request writes organisation, team or repository collaborator access straight into GitHub, and takes it back when the grant ends.

LEAVERS

Off the organisation, invitations included

On the last working day Ploy removes the person from the organisation, its teams and the repositories they collaborated on, and withdraws any invitation still pending.

2.3

SETUP

TYPICALLY 10 MINUTES
STEP 01

Install the app

An org owner installs the Ploy app on your GitHub organisation. Read only to begin with.

STEP 02

Watch the first sync

Members, teams, repos and collaborators land in the graph.

STEP 03

Turn on writes

Pick which teams Ploy may change, and who approves.

Connect GitHub, see it in 10 minutes.