The SiftPulse GitHub App requests a narrow, read-mostly set of permissions:
- Read access to code & metadata — to fetch diffs and repository context for PR reviews.
- Read access to issues & pull requests — to read issue bodies, PR comments, and labels for triage and review.
- Write access to issues & pull requests — so SiftPulse can post its review, triage, and TL;DR comments.
- Repository content (read) — to read source files and refs.
SiftPulse does
not request write access to repository code, cannot push commits, and does
not have access to environment secrets, deploy keys, or repository administration. Install on only the repositories you want reviewed. See the full
security & permissions table for the complete list of what SiftPulse can and cannot do.