Team Sync Tenant

actionDescriptionSampleRule
team_sync_tenant.disabledTeam synchronization with a tenant was disabled.NY
team_sync_tenant.enabledTeam synchronization with a tenant was enabled.NY
team_sync_tenant.update_okta_credentialsThe Okta credentials for team synchronization with a tenant were changed.NY

team_sync_tenant.disabled

#
Category
team-sync-tenant

Description

Team synchronization with a tenant was disabled.

Documented on GitHub's enterprise audit log reference.

Detection Fields #

Fields referenced by at least one attached detection rule. This view counts distinct rules and is not a complete event schema.

NameRulesVendors
action1 detection rulePanther

Detection Rules #

Full rule details for this event, including ATT&CK technique mappings and native queries →

Panther #

team_sync_tenant.enabled

#
Category
team-sync-tenant

Description

Team synchronization with a tenant was enabled.

Documented on GitHub's enterprise audit log reference.

Detection Fields #

Fields referenced by at least one attached detection rule. This view counts distinct rules and is not a complete event schema.

NameRulesVendors
action1 detection rulePanther

Detection Rules #

Full rule details for this event, including ATT&CK technique mappings and native queries →

Panther #

team_sync_tenant.update_okta_credentials

#
Category
team-sync-tenant

Description

The Okta credentials for team synchronization with a tenant were changed.

Documented on GitHub's enterprise audit log reference.

Detection Fields #

Fields referenced by at least one attached detection rule. This view counts distinct rules and is not a complete event schema.

NameRulesVendors
action1 detection rulePanther

Detection Rules #

Full rule details for this event, including ATT&CK technique mappings and native queries →

Panther #