
GitHub
Opens fix pull requests on github.com and GitHub Enterprise Server 3.12 and later.
Category
Code host
Setup time
4 minutes
Access
GitHub App: read code and metadata, write pull requests
What Quorum reads
Every branch you connect, its lockfiles, workflow files and infrastructure code, plus the logs of public GitHub Actions runs. Quorum reads code at the commit it scans and does not keep a copy after the scan finishes.
What the fix changes
Quorum opens a normal pull request from a branch named quorum/…, requests review from your CODEOWNERS and runs your checks like any other change. It never pushes to your default branch and cannot merge.
Set it up
Open Integrations in Quorum and choose GitHub.
Install the Quorum app on your organization and pick the repos to scan.
Choose a merge rule for each fix type. Two approvals is the default for critical fixes.
Other integrations

GitLab
Opens merge requests on GitLab.com and self-managed GitLab 16.0 and later.
6 minutes

Bitbucket
Opens pull requests on Bitbucket Cloud workspaces, with Pipelines checks.
5 minutes

AWS
Reads S3, IAM, EC2 security groups, Lambda and CloudTrail across every region.
8 minutes

Google Cloud
Reads Cloud Storage, IAM, firewall rules and Cloud Run services per project.
7 minutes
Run a free scan on one repo
Connect one repo and one cloud account with read-only access. You get the findings and the first fix pull requests within a day, and you keep them either way.