The Inventory page displays an overview of your integrated orgs assets and users, along with high level details of the org. Here you can find details and totals of multiple elements for each Source Code Management (SCM) type.
If you have integrated orgs from more than one SCM, you will have access to a dropdown menu that displays each SCM available to you. The inventory page will then display a summary of details specific to that SCM type and will include all integrated elements.
Inventory pages
Github
Identities
This summary displays the total number of identities for all GitHub integrations in your organization. It displays a table of all identities with their GitHub organizations and additional details including their name (if exists), all email addresses, highest role, days since last action, and their Arnica designated risk level.
If the identity doesn't have a public name or Arnica did not identify other names based on the historical user activity, the name can be modified by clicking on the pencil ๐๏ธ next to the name.
Additionally, Arnica maps all emails associated to each identity based on the historical behavior and SCIM information. It helps to identify users who use other emails accounts to author code for the company. The checkbox โ next to the name means that the user has either a validated email or SSO enabled - hover on the icon to see the details.
Organizations
- Domain Verification (Yes / No)
-MFA Required (Yes / No)
-Org Plan level (Free - Enterprise)
-Default Permission of members (Read-Admin)
-Total Identity count
-SSO Enabled for Identitied (Yes / No)
Repositories
This summary displays the total number of repositories for all GitHub integrations in your org. Clicking into the Total Repositories summary will display a table of all repos with their GitHub org and additional details including the number of days since the last commit, the number of admins and the average pull request response time per Repo.
GitHub Apps
This section displays the total number of GitHub apps installed and if clicked will display a breakdown of each app, the org it is associated with, permissions granted, and the last date it was updated.
Azure DevOps
Identities
This summary displays the total number of identities for all Azure DevOps integrations in your Arnica tenant. It displays a table of all identities with their organizations and additional details including their name (if it exists), all email addresses, highest role, days since last action, and their Arnica designated risk level.
If the identity doesn't have a public name or Arnica did not identify other names based on the historical user activity, the name can be modified by clicking on the pencil ๐๏ธ next to the name.
Additionally, Arnica maps all emails associated to each identity based on the historical behavior and SCIM information. It helps to identify users who use other emails accounts to author code for the company. The checkbox โ next to the name means that the user has either a validated email or SSO enabled - hover on the icon to see the details.
Repositories
This summary displays the total number of repositories for all Azure DevOps integrations in your Arnica Tenant. The repositories summary table will display a table of all repos with their org name and additional details including the number of days since the last commit and the average pull request response time per Repo.
Excessive Licenses
The excessive licenses page identifies Azure DevOps identities with unused or underutilized licenses. These identities represent opportunities to save money through the reduction or removal of the identities existing Azure DevOps license.
For each license, Arnica will provide the users display name, license type, and each organization they are a member of.
This summary displays the total number of organizations integrated with your Arnica tenant. Useful information on each org is included within the table. This includes: