Skip to main content

Fixing code quality findings on a pull request

Keep quality issues out of your default branch by applying autofixes, delegating remediation work to Copilot, or dismissing irrelevant findings.

누가 이 기능을 사용할 수 있나요?

쓰기 권한이 있는 사용자

GitHub Team 또는 GitHub Enterprise Cloud

If you're new to Code Quality, see Preventing code quality issues from reaching your default branch for a guided walkthrough of how Code Quality works on pull requests.

How Code Quality works on pull requests

When you open a pull request, Code Quality runs two types of analysis and posts findings as comments on the pull request.

  1. github-code-quality[bot] findings: Code Quality uses CodeQL to perform a rule-based scan of your changes. These findings are posted as comments by github-code-quality[bot] and include a suggested autofix. Findings are labeled by severity (Error, Warning, Note), and administrators can set quality gates to block merges based on the severity of these findings.

  2. Copilot findings: If your organization has Copilot licenses and AI features are enabled for your enterprise, Code Quality uses Copilot 코드 검토 to identify quality issues that rules-based analysis may not detect. These findings are posted as comments by Copilot, and include a suggested autofix. See GitHub Copilot 코드 검토 정보.

Resolving a finding

  1. On GitHub, navigate to your open pull request.
  2. On the Files Changed tab, scroll to a comment left by github-code-quality[bot] or Copilot.
  3. Carefully review the comment and the suggested autofix for logic, security, and style.
  4. If you agree with the suggestion and you want to apply the fix, click Commit suggestion, or Add suggestion to batch.
  5. Alternatively, if the finding isn't relevant or actionable, you can dismiss the finding. For example, you might dismiss a finding that is in legacy code no longer maintained, is a known exception to your team's coding standards, or is a false positive that doesn't pose a real quality risk.
    • For comments left by github-code-quality[bot], click Dismiss finding.
    • For comments left by Copilot, click Resolve.

Delegating remediation work to Copilot

또는 Copilot 라이선스가 있는 경우, Copilot 클라우드 에이전트에게 수정 작업을 위임할 수 있습니다. 끌어오기 요청에서 @Copilot을 언급하고 Copilot에게 발견된 문제를 수정하도록 요청합니다.

Copilot 클라우드 에이전트를 호출한 PR 주석을 보여 주는 스크린샷

Copilot은 사용자의 주석에 눈 이모티콘(👀)으로 응답하고, 새 에이전트 세션을 시작하고, 필요한 수정 사항을 이용해 끌어오기 요청을 엽니다.

Copilot 클라우드 에이전트의 작업을 추적할 수 있습니다.

Copilot를 호출하려면 Copilot 클라우드 에이전트 라이선스가 필요합니다.
등록 Copilot

Next steps