LOW
Source
CloudSploit
ID
gpg-keys-rotated

GPG Keys Rotated

Ensures GitHub GPG keys are rotated frequently.

GitHub GPG keys are used to cryptographically sign code commits and should be rotated every 180 days.

Invalidate and delete old GPG keys and create new ones every 180 days.