repository control
With your own GitHub token we read one thing: whether you can push to the repository the package declares. A push, maintain or admin permission passes. If GitHub does not return a permission block for the scopes you granted, the answer is recorded as unknown rather than as a no.
- checked against the GitHub api, not typed in
- shown as "repo linked", never as verified
- half of one route to verification, on its own worth nothing