- Most migration tools, including first-party tools published by GitHub, require a combination of many highly privileged credentials to perform their work.
- Any individual operating migration tools, whether for their own use or on behalf of another organization, is required to have the privileged credentials mentioned previously to carry out migration tasks.
- Due to the privileged nature of these credentials, the number of these individuals is typically small, further constraining the throughput of the migration process.
- Because migrations necessarily involve the processing of nearly all an organization’s software artifacts, including those of a business-critical or trade-secret nature, customers require the utmost transparency, security, and governance of these processes.
- Storing and managing credentials securely,
- Executing migration tools without exposing credentials or compromising the integrity of the runtime environment, and
- Ensuring the confidentiality, integrity, and privacy of customer data.