SaaS License & Feature Checker GitHub

GitHub: SSO, SCIM & audit log plans

GitHub SSO and SCIM require Enterprise Cloud; a basic organization audit log is available on Free, while its API requires Enterprise Cloud.

VerifiedGitHub
Minimum documented plan or add-on per admin control for GitHub
ControlAvailabilityMinimum route
Enterprise SSOEnterprise onlyEnterprise (Enterprise Cloud) · SAML
SCIM / automated provisioningEnterprise onlyEnterprise (Enterprise Cloud)
Administrative audit logsIncludedFree

Product scope

GitHub organization and enterprise-account identity. Plan ladder: Free, Team, Enterprise (Enterprise Cloud).

Market scope

Global English documentation (github.com, docs.github.com).

Identity scope note

Identity controls span the organization account, the enterprise account, and Enterprise Managed Users (EMU). This profile covers the organization / enterprise identity layer, not every product line.

Admin controls

The three controls in detail

Availability, protocol where relevant, the minimum plan or add-on, the purchase path, one caveat, and the official sources.

Enterprise SSO

Enterprise onlySAMLMixed
Min. route
Enterprise (Enterprise Cloud)

SAML SSO is available with GitHub Enterprise (Enterprise Cloud), at the organization or enterprise-account level. OIDC is also supported for Enterprise Managed Users (Entra ID). Larger deals are sales-led.

Official sources

SCIM / automated provisioning

Enterprise onlyMixed
Min. route
Enterprise (Enterprise Cloud)

SCIM provisioning is tied to GitHub Enterprise Cloud; Enterprise Managed Users (EMU) provisioning differs from standard organization SCIM.

Official sources

Administrative audit logs

IncludedSelf-serve
Min. route
Free

A basic organization audit log (owners-only, 180-day history) is available for organizations on GitHub Free. The GraphQL/REST audit-log API and log streaming require GitHub Enterprise Cloud.

Official sources

Plans and add-ons referenced

Plan names are shown exactly as GitHub documents them. No prices.

  • FreeFree
  • TeamPaid
  • Enterprise (Enterprise Cloud)Enterprise

Evidence boundary

CertPilot summarizes first-party vendor documentation for three admin controls — enterprise SSO, SCIM, and administrative audit logs. Plans and packaging change; confirm the current entitlement with the vendor before purchasing or changing a subscription. This is not pricing data, a recommendation, a security score, or a tenant inspection.

Methodology: each control is written from the official first-party sources listed above and human-verified on the checked date. Availability is normalized to included / enterprise-only / paid add-on; the purchase path is recorded separately. A control with no clear first-party answer is marked unclear, never guessed. Profiles are re-checked on a 90-day cadence and unpublished after 120 days without re-verification.

Related vendor profiles