ASSOCIATED DRATA CONTROL
This test is part of the Version Control Can Only By Accessed By Authorized Employees control that ensures all users of your company version control system are authenticated with their company accounts.
WHAT TO DO IF A TEST FAILS
If Drata finds users within your version control system that are not reflected via their company accounts the test will fail. With a failed test you will receive a list of users within your version control system that do not have a matching company account.
To remediate a failed test, you will need to either create IdP accounts for these version control system users or revoke access for these users. In the event that users do not have their company email attached to their version control account you will need to notify them to properly associate their company account.
STEPS TO REMEDIATE
Log in to Drata as an admin
Ensure that your IDP, Infrastructure, and Version Control providers are connected
Navigate to the Personnel page
Link Version Control accounts to your users or mark them as service accounts.