Note
Code Quality has its own standalone enterprise policies. Access was previously controlled by your Advanced Security policies, and those existing settings are automatically applied to the new Code Quality policies.
Note
Agentic Autofix for GitHub Code Quality backlog findings is currently in public preview and subject to change.
When you allow Code Quality for an organization and set the repository admin policy to Allowed, repository administrators can enable Code Quality scans and all associated capabilities, including bulk agentic remediation with Copilot. There is no separate policy for agentic remediation.
If you restrict Code Quality, repository administrators cannot enable scans or use Copilot-powered autofixes for code quality findings.
- Navigate to your enterprise. For example, from https://github.com/settings/enterprises.
- At the top of the page, click Policies.
- In the sidebar, click Code Quality.
- Select the "Organization access" dropdown menu, then click Allow for all organizations or Allow for selected organizations.
- If you choose "Allow for selected organizations", select the dropdown menu for each organization where you want to enable Code Quality, then click Available.
- To allow repository administrators to enable Code Quality on their repositories, select the "Repository admin policy" dropdown menu, then click Allowed.
Next steps
To see Code Quality in action, turn the feature on for one or more repositories. See Enabling GitHub Code Quality.