Install GitHub App — AppHandoff Documentation

The AppHandoff GitHub App connects your repositories to the scanning pipeline. Install it on your GitHub organization or individual account to grant AppHandoff read access to code and metadata, plus write access to pull requests and issues. The app uses fine-grained permissions and never accesses repositories you have not explicitly selected.

During installation, choose which repositories to expose. AppHandoff only scans repos that are linked to a project in the portal. You can adjust repository access at any time from your GitHub settings without reinstalling the app. Webhook events from connected repos trigger automatic re-scans within seconds of each push.