Skip to main content
Connect your GitHub repositories to let Antigen investigate code vulnerabilities and prepare pull requests. Without a connected repository, Antigen can still triage a vulnerability, but it cannot inspect the affected code or create a code remediation.

Connect GitHub

Install the Antigen GitHub App from Integrations. During installation, choose the repositories Antigen can access. An organization admin must complete the connection. Antigen uses the connected repository access to inspect code during triage and remediation. It only works with repositories included in the GitHub App installation.

What Antigen can do

When a vulnerability is assigned to remediation-agent, the agent can use the connected repository to investigate the affected code, write a fix, and open a pull request for your team to review. Antigen does not merge pull requests or deploy code. Your team keeps control of review, merge, and deployment through its existing GitHub workflow.

When a repository is not connected

If triage-agent or remediation-agent needs a repository that the GitHub App cannot access, the agent records that it is blocked and creates a request for your team. Grant access to the repository through the GitHub App installation, then the workflow can continue.