Tech article
Code scanning AI Scan no longer requires CodeQL default setup
Publisher description: You can now use AI Scan for pull requests to find security vulnerabilities, even when CodeQL default setup isn’t enabled on a repository.
github | Sep 16, 2026 | Allison
Automated excerpt
You can now use AI Scan for pull requests to find security vulnerabilities, even when CodeQL default setup isn’t enabled on a repository. Previously, AI Scan for pull requests only ran on repositories where CodeQL default setup was configured. Code scanning and AI Scan for pull requests must still be enabled at the repository, organization, or enterprise level, if the organization belongs to an enterprise.
Selected automatically from source text; not independently written or fact-checked. Read the original for full context.