Skip to main content

Limiting OAuth app and GitHub App access requests and installations

As an organization owner, you can control which users can request organization access for apps.

Who can use this feature?

Organization owners can limit who can make app access requests to the organization.

About app access requests

When app access requests are enabled, members and outside collaborators can request organization access for GitHub Apps which have not yet been approved by your organization. For GitHub Apps this is a request for installation, which grants the app access to your organization directly.

You can control if outside collaborators are able to request unapproved apps for your organization. Users can still consent to apps for use in their personal accounts, and use them with your organization if you've approved those apps for use.

By default, app access requests are enabled. If your organization has a large number of outside collaborators, you may want to disable app access requests to reduce the number of requests you have to review.

Enabling or disabling app access requests

  1. In the upper-right corner of GitHub, click your profile picture, then click Organizations.
  2. Next to the organization, click Settings.
  3. In the "Access" section of the sidebar, click Member privileges.
  4. Under "Integration access requests" select which users should be allowed to request apps and click Save.