Skip to main content
Connected during onboardingThe Checksum team connects your code and tests repositories with you during onboarding. Come back here to check the connection status, review permissions, switch repositories, connect an additional repository, or reconnect after a token rotation. Your Checksum contact can also make these changes for you.

At a glance

  • Where: web app → Settings → Git Integration. Checksum connects repositories during onboarding.
  • Webhooks (push, PR, installation events) are set up automatically and keep the repo mirror in sync.
  • Not supported: GitHub Enterprise Server (self-hosted), and tests repositories on Azure DevOps.
  • Removing the integration disables test generation and auto-healing.
Developer guide
The access Checksum needs on each provider

Required permissions

Checksum needs read-only access to your application code, and read and write access to your tests repository, where it opens pull requests. On GitHub you simply approve the Checksum app, which requests these permissions for you. On GitLab, Bitbucket, and Azure DevOps you create a token with the scopes below. A few provider details to know. On GitHub, if one app installation covers both repositories, GitHub shows the combined request (read + write on actions, code, issues, and pull requests), but write access is only used on the tests repository. On GitLab, protected branches may need Maintainer, or a branch rule that lets Checksum merge. On Bitbucket, repository access and pull-request access are separate permissions, so grant both. Azure DevOps is supported for code repositories only; Checksum-managed tests repositories aren’t supported there.
  • Write access is used only on the tests repository. Checksum never writes to the code repository.
  • GitHub combined installations show read + write on actions, code, issues, and pull requests.
  • Bitbucket: grant repository and pull-request access separately.
▦
In the Checksum web app
Connect providers, change repositories, and check status in Settings → Git Integration

Add or reconnect a repository

Use these steps to connect an additional repository, move to a different Git provider, or reconnect after an app was uninstalled or a token expired. The same steps are used during onboarding.

GitHub: install or update the Checksum GitHub App

1

Open Settings → Git Integration

In the Checksum web app. Under Codebase repository (or Tests Repository), click Connect / Install GitHub App.
2

Authorize on GitHub

You’re redirected to GitHub to authorize the Checksum app. This may require an organization owner.
3

Choose repositories

Grant access to only the repositories Checksum needs, then complete the installation.
4

Select repositories in Checksum

Back in Checksum, pick the tests and code repositories (see Change repositories).
GitHub App authorization

Authorizing the Checksum GitHub App.

If you’re not an organization owner

GitHub can’t complete the install for you directly. The button reads Install and request (or Request), and GitHub emails your organization owners to approve it. Until they do, Checksum shows the app as not installed. To approve the request, an organization owner:
  1. Opens the email notification, or goes to the organization’s Settings → Third-party Access → GitHub Apps.
  2. Finds the pending Checksum request.
  3. Reviews the requested repositories and permissions, adjusting the repository selection if needed.
  4. Clicks Approve (or Install).
Organizations can restrict who installs apps. If repository admins are blocked from installing GitHub Apps, an organization owner must approve or install the Checksum app. Once approved, it shows as active in Settings → Git Integration.Installing the app also sets up the webhooks that keep the repo mirror in sync, and it enables /checksum generate comments on PRs (see Generate Tests).

Change repositories

Your repositories are selected during onboarding. To point Checksum at a different repository:
1

Open Settings → Git Integration

2

Tests Repository

Select the repository that holds your Playwright tests. Checksum opens PRs here. Change it only if your tests move to a different repository.
3

Code Repository (required)

Select your application source repository. You can change it at any time.
Git Integration repository selection

Selecting the tests and code repositories.

Integration status

The Settings page shows the state of your integration:
Git Integration status

Change or remove an integration

  • Change repositories: go to Settings → Git Integration and update your selection.
  • Remove the integration: go to Settings → Git Integration and click Remove Integration.
Removing disables deliveryRemoving the Git integration disables test generation and auto-healing, because Checksum can no longer open PRs in your repository.
i
How it works
What Checksum does with each repository

Tests repository and code repository

Checksum works with two repositories, and they can be the same one:
Why the code repository mattersThe code repository gives Checksum significantly faster and more accurate detection, and better generation and healing. If your tests live alongside your app code, the same repository is used for both.

Troubleshooting

You’re either not an organization owner or signed in to the wrong GitHub account. Sign in as an owner of your *.ghe.com enterprise and reopen the GitHub tab. On shared machines, a fresh browser profile or incognito window usually fixes it.
The host must end in .ghe.com, such as acme.ghe.com. You can paste a full URL, and the field strips https://, any path, and the port. A GitHub Enterprise Server hostname like github.your-company.com won’t work.
Make sure you clicked Install (not just Create GitHub App) and selected at least one repository, then refresh Settings → Git Integration. The flow is safe to repeat.
The app is installed but wasn’t granted any repos. In GitHub, open the app’s installation settings and add the repositories, then refresh.
Not supported yet. Only GitHub Enterprise Cloud with data residency (*.ghe.com) is. Contact Checksum support to discuss options.
An organization owner still has to approve the installation request. See If you’re not an organization owner.
The token’s user or role can’t read the repository, for example a GitLab Guest. Recreate the token with at least the minimum role in Required permissions: Reporter for a code repository, Developer for a tests repository.
Recreate the token with the scopes listed for that repository in Required permissions: read_api and read_repository for a code repository, api and write_repository for a tests repository.
The token has read access but not write access on the tests repository. Grant write access: GitLab api and write_repository, or Bitbucket Repositories: Read + Write and Pull requests: Read + Write. On GitHub, make sure the app installation includes the tests repository.
Use a token with the Maintainer role, or add a branch rule that lets Checksum merge.

Test Repository & Config

How the repo mirror reads and writes.

/checksum generate

Trigger generation from a PR comment.

Security & Access

A permissions summary for security review.