← SailPoint

2026 SailPoint — GitHub repository intrusion via third-party app flaw (Apr 20; SEC May)

2026 Unknown records affected Share on X

Data compromised

Subset of GitHub repositories; no attested production/staging customer environment access per SailPoint

Technical writeup

Identity-security vendor SailPoint disclosed in an SEC filing that on April 20, 2026 it detected unauthorized access to a subset of GitHub repositories, terminated the activity, and remediated a vulnerability in a third-party application used in the development workflow. SailPoint said a third-party forensics firm found no evidence that customer data in production or staging environments was accessed or that services were interrupted, and that customers were notified if their information appeared in accessed repositories. SecurityWeek reported the disclosure on May 11, 2026. BreachHistory classifies the row as a developer-repository incident rather than a SailPoint Identity Security Cloud tenant database breach.

Root cause

Third-party application vulnerability enabling unauthorized GitHub repository access

References