Skip to main content
Warning

The github.com/department-of-veterans-affairs organization is being sunset and all users and repositories are migrating to va.ghe.com (GHEC-US). See migrations for more information.

Security Policies

Security policies and standards for the Department of Veterans Affairs GitHub organization, including code scanning requirements and secrets management.

Code Scanning

The VA requires code scanning for all repositories with supported languages. Learn more about:

Secrets Management

Learn how to properly handle sensitive information:


Return to Policies and Standards