Zum Inhalt springen

CodeRabbit Release Notes

29 Einträge aus 1 Quelle. Zuletzt aktualisiert:

Folge CodeRabbit, um die Release Notes in deinen Feed zu holen.

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

CodeRabbit

Merge-Blockierung bei offenen Security-Kommentaren in GitHub

Admins können den Check „CodeRabbit Security“ mit Schweregrad-Schwellenwert veröffentlichen und in GitHub als Pflicht festlegen, sodass Merges blockiert werden, solange qualifizierende Security-Kommentare in einem Pull Request ungelöst sind.

Security merge blocking

|

You can now block merges while qualifying Security comments remain unresolved on a pull request. Admins can publish the CodeRabbit Security check with a severity threshold, then require it in GitHub to enforce merge blocking. Publishing the check alone does not block merges.

Learn more in the CodeRabbit Security check documentation.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

CodeRabbit

AI Deep Scan nutzt Kontext aus verknüpften Repositories (Beta)

AI Deep Scan kann in der Beta nun Kontext aus verknüpften Repositories (z. B. einer gemeinsamen Authentifizierungsbibliothek) nutzen, um Security-Findings im primären Repository gründlicher zu prüfen und zu verifizieren.

AI Deep Scan with linked repositories

|

You can now give AI Deep Scan context from linked repositories to analyze your primary repository more thoroughly. Source from dependencies, such as a shared authentication library, helps CodeRabbit investigate and verify security findings in the primary repository.

Learn more in the linked repositories documentation.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

CodeRabbit

AI Deep Scan API jetzt in allen Tarifen nutzbar

Die AI Deep Scan Code-Findings-API ist jetzt in allen Tarifen mit einem nicht-agentischen API-Key und der Berechtigung security:read nutzbar, ohne Enterprise-Plan, Security-Add-on oder Security-Trial.

AI Deep Scan API access

The AI Deep Scan code findings API is available on all plans with a non-agentic API key and the security:read permission. No Enterprise plan, Security add-on, or Security trial is required. Results remain limited to the key's authorized organization or workspace scope. This change applies only to retrieving existing Security findings; scan billing and other APIs' plan requirements remain unchanged.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

CodeRabbit

Guideline-Dateien in der Review-Zusammenfassung aufgeführt

Die Review-Zusammenfassung listet nun die verwendeten Guideline-Dateien des Repositories auf und zeigt, ob sie konfiguriert, automatisch erkannt oder ein Agent Skill waren.

Repository guideline files in the review summary

You can now see which of your repository's guideline files CodeRabbit used for a review. The summary lists each file and shows whether it was configured, auto-discovered, or an Agent Skill.

Learn more in the Code Guidelines documentation.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

CodeRabbit

Merge-Blockierung durch Security-Check

Merges lassen sich nun blockieren, solange qualifizierende Security-Kommentare in einem Pull Request ungelöst sind, indem Admins den Check „CodeRabbit Security“ mit Schweregrad-Schwelle veröffentlichen und ihn in GitHub verpflichtend machen.

Security merge blocking

|

You can now block merges while qualifying Security comments remain unresolved on a pull request. Admins can publish the CodeRabbit Security check with a severity threshold, then require it in GitHub to enforce merge blocking. Publishing the check alone does not block merges.

Learn more in the CodeRabbit Security check documentation.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

CodeRabbit

AI Deep Scan mit verknüpften Repositories

AI Deep Scan kann nun Kontext aus verknüpften Repositories wie einer gemeinsamen Authentifizierungsbibliothek nutzen, um das primäre Repository gründlicher zu analysieren und Security-Funde zu überprüfen.

AI Deep Scan with linked repositories

|

You can now give AI Deep Scan context from linked repositories to analyze your primary repository more thoroughly. Source from dependencies, such as a shared authentication library, helps CodeRabbit investigate and verify security findings in the primary repository.

Learn more in the linked repositories documentation.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

CodeRabbit

AI Deep Scan API für alle Pläne verfügbar

Die AI Deep Scan Code-Findings-API ist nun in allen Plänen mit einem nicht-agentischen API-Key und der Berechtigung security:read nutzbar, ohne Enterprise-Plan, Security-Add-on oder Security-Trial.

AI Deep Scan API access

The AI Deep Scan code findings API is available on all plans with a non-agentic API key and the security:read permission. No Enterprise plan, Security add-on, or Security trial is required. Results remain limited to the key's authorized organization or workspace scope. This change applies only to retrieving existing Security findings; scan billing and other APIs' plan requirements remain unchanged.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

CodeRabbit

Guideline-Dateien in der Review-Zusammenfassung

Die Review-Zusammenfassung listet nun die vom Review verwendeten Guideline-Dateien des Repositorys auf und zeigt, ob sie konfiguriert, automatisch erkannt oder ein Agent Skill sind.

Repository guideline files in the review summary

You can now see which of your repository's guideline files CodeRabbit used for a review. The summary lists each file and shows whether it was configured, auto-discovered, or an Agent Skill.

Learn more in the Code Guidelines documentation.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

CodeRabbit

Webhook-Migration für selbst gehostetes GitLab

Bestehende CodeRabbit-Projekt-Webhooks in selbst gehostetem GitLab lassen sich per migrate-Befehl des Skripts auf einen neuen Endpunkt umziehen, ohne sie neu anzulegen, wobei Hook-IDs und Event-Einstellungen erhalten bleiben und --apply die Änderungen erst durchführt.

GitLab webhook migration

You can now move existing CodeRabbit project webhooks to a new endpoint without recreating them, for one project or the projects in a group. The script's migrate command previews changes by default; --apply updates the URL and destination secret together while preserving hook IDs and event settings.

Migration requires destination secrets and stops before updates if matches are ambiguous; existing installation commands are unchanged. See migration inputs, safety checks and recovery steps before applying changes.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

CodeRabbit

Migration von GitLab-Webhooks

Bestehende CodeRabbit-Projekt-Webhooks lassen sich nun ohne Neuanlage auf einen neuen Endpoint umziehen, wobei der Befehl migrate standardmäßig nur eine Vorschau zeigt und --apply URL und Secret unter Beibehaltung von Hook-IDs und Event-Einstellungen aktualisiert.

GitLab webhook migration

You can now move existing CodeRabbit project webhooks to a new endpoint without recreating them, for one project or the projects in a group. The script's migrate command previews changes by default; --apply updates the URL and destination secret together while preserving hook IDs and event settings.

Migration requires destination secrets and stops before updates if matches are ambiguous; existing installation commands are unchanged. See migration inputs, safety checks and recovery steps before applying changes.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

CodeRabbit

Kontrolle über Freigaben durch Autoren eigener Pull Requests

Mit reviews.allow_author_approval: false lässt sich verhindern, dass Autoren ihre eigenen Pull Requests per @coderabbitai approve oder @coderabbitai resolve freigeben, wobei die Branch-Konfiguration des PRs die Einstellung nicht wieder aktivieren kann.

Author approval control

Set reviews.allow_author_approval to false to prevent pull request authors from using @coderabbitai approve and @coderabbitai resolve on their own pull requests. The setting defaults to true, and the pull request's branch configuration cannot re-enable it when disabled. See Explicit approval commands.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

CodeRabbit

Automatische Verknüpfung für GitLab und Bitbucket Cloud

Die automatische Repository-Verknüpfung funktioniert jetzt auch für GitLab (inklusive Self-Managed) und Bitbucket Cloud und lässt sich über knowledge_base.automatic_linking_mode mit auto oder enabled aktivieren, während disabled Standard bleibt.

GitLab and Bitbucket Cloud automatic linking

Automatic repository linking extends to GitLab, including self-managed instances, and Bitbucket Cloud. Set knowledge_base.automatic_linking_mode to auto for visibility-aware discovery or enabled to allow eligible private repositories to supply context to public repository reviews. disabled remains the default, and manual links are preserved.

CodeRabbit requires synchronized repository identity and visibility within the same connected provider organization and instance. Discovery grows progressively as repositories are reviewed; relationships do not appear immediately after enabling the feature. See Automatic repository linking.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

CodeRabbit

Automatische Verknüpfung für GitLab und Bitbucket Cloud

Die automatische Repository-Verknüpfung gilt nun auch für GitLab (inklusive Self-Managed) und Bitbucket Cloud und wird über knowledge_base.automatic_linking_mode mit auto, enabled oder dem Standard disabled gesteuert.

GitLab and Bitbucket Cloud automatic linking

Automatic repository linking extends to GitLab, including self-managed instances, and Bitbucket Cloud. Set knowledge_base.automatic_linking_mode to auto for visibility-aware discovery or enabled to allow eligible private repositories to supply context to public repository reviews. disabled remains the default, and manual links are preserved.

CodeRabbit requires synchronized repository identity and visibility within the same connected provider organization and instance. Discovery grows progressively as repositories are reviewed; relationships do not appear immediately after enabling the feature. See Automatic repository linking.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

CodeRabbit

Triage für GitLab als Beta verfügbar

Triage ist als Beta für GitLab Cloud und Self-Managed GitLab ab dem Team-Plan verfügbar.

Triage for GitLab

|

is now available in beta for GitLab Cloud and self-managed GitLab organizations on the Team plan and higher. The Triage documentation covers access requirements, prioritization, views, and supported actions.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

CodeRabbit

Neue Triage-Regeln für GitHub und GitLab

Neue Triage-Regeln handeln automatisch auf passende Pull Requests, etwa durch Mergen risikoarmer Änderungen, Schließen veralteter PRs, Auto-Fix per Coding Agent, wiederkehrende Slack-Erinnerungen und Starter-Vorlagen.

Triage rules

|

Triage rules act on pull requests that match conditions you choose, so routine work moves forward without a manual step for each pull request. Configure them in Triage settings.

  • Merge low-risk changes: Merge a pull request with squash, merge commit, or rebase once its required checks and reviews pass and GitHub permits the merge. Branches that use a merge queue submit the pull request to GitHub's queue.
  • Close stale pull requests: Post a notice, wait 24 hours, and close the pull request unless new relevant activity cancels it.
  • Auto-fix PRs: Ask the Coding Agent to fix failed CI checks and address CodeRabbit and human review feedback on an inactive pull request. Auto-fix acts on new relevant activity after you enable the rule, not on your existing backlog.
  • Recurring Slack reminders: Remind authors and reviewers at a delivery time and timezone you choose, with a cooldown and respect for quiet hours.
  • Starter templates: Start from Merge low-risk changes, Auto-fix PRs, Close stale PRs, Send Slack reminders, or Prioritize urgent fixes, and edit the conditions before you enable anything. …

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

CodeRabbit

Provenance-Angaben für AI Deep Scan Findings

AI Deep Scan Code-Findings können nun optional Provenance-Angaben zu Scan, Revision des primären Repositories und ausgewählten Kontext-Repositories enthalten, wobei CSV kompakte Provenance und SARIF die vollständige verfügbare Evidenz liefert.

AI Deep Scan finding provenance

AI Deep Scan code findings can now include optional provenance that identifies the scan, the primary repository revision, and selected context repositories. Selection alone does not establish that a repository supplied evidence. The primary repository remains the owner of the finding and its coverage.

Paginated JSON leaves supporting evidence unloaded. CSV includes compact provenance, while SARIF includes the full available evidence. See the AI Deep Scan code findings API reference for the response schema.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

CodeRabbit

Triage für GitLab als Beta

Triage ist nun als Beta für GitLab Cloud und Self-Managed GitLab Organisationen im Team-Plan und höher verfügbar.

Triage for GitLab

|

is now available in beta for GitLab Cloud and self-managed GitLab organizations on the Team plan and higher. The Triage documentation covers access requirements, prioritization, views, and supported actions.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

CodeRabbit

Triage Rules für Pull Requests

Triage Rules bearbeiten Pull Requests mit passenden Bedingungen automatisch, etwa durch Mergen risikoarmer Änderungen, Schließen veralteter PRs, Auto-Fix über den Coding Agent und Slack-Erinnerungen, und lassen sich in den Triage-Einstellungen konfigurieren.

Triage rules

|

Triage rules act on pull requests that match conditions you choose, so routine work moves forward without a manual step for each pull request. Configure them in Triage settings.

  • Merge low-risk changes: Merge a pull request with squash, merge commit, or rebase once its required checks and reviews pass and GitHub permits the merge. Branches that use a merge queue submit the pull request to GitHub's queue.
  • Close stale pull requests: Post a notice, wait 24 hours, and close the pull request unless new relevant activity cancels it.
  • Auto-fix PRs: Ask the Coding Agent to fix failed CI checks and address CodeRabbit and human review feedback on an inactive pull request. Auto-fix acts on new relevant activity after you enable the rule, not on your existing backlog.
  • Recurring Slack reminders: Remind authors and reviewers at a delivery time and timezone you choose, with a cooldown and respect for quiet hours.
  • Starter templates: Start from Merge low-risk changes, Auto-fix PRs, Close stale PRs, Send Slack reminders, or Prioritize urgent fixes, and edit the conditions before you enable anything. …

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

CodeRabbit

Provenienz für AI Deep Scan Findings

AI Deep Scan Code-Findings können nun optional Provenienzangaben zu Scan, Revision des primären Repositorys und ausgewählten Kontext-Repositories enthalten, wobei CSV kompakte Provenienz und SARIF die vollständige verfügbare Evidenz liefert.

AI Deep Scan finding provenance

AI Deep Scan code findings can now include optional provenance that identifies the scan, the primary repository revision, and selected context repositories. Selection alone does not establish that a repository supplied evidence. The primary repository remains the owner of the finding and its coverage.

Paginated JSON leaves supporting evidence unloaded. CSV includes compact provenance, while SARIF includes the full available evidence. See the AI Deep Scan code findings API reference for the response schema.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

CodeRabbit

CodeRabbit CLI Version 0.8.0

CLI v0.8.0 fügt cr review --deep, cr usage zur Anzeige verfügbarer Included Reviews und cr handoff zum Fortsetzen lokaler Arbeit in der Cloud samt automatischem Codex- oder Claude-Code-Transcript hinzu und verbessert Agent-Login sowie Fehlermeldungen bei zu großen Reviews.

CLI v0.8.0

  • Deep review: Added cr review --deep.
  • Included-review availability: Run cr usage to see available included reviews, the rolling window, and when capacity returns. Add --agent for structured output.
  • Continue local work in the cloud: Run cr handoff --summary /path/to/SUMMARY.md to create a new CodeRabbit Cloud task from your committed and pushed branch. Pass --summary - to read the summary from standard input, and add --plan /path/to/PLAN.md to include an implementation plan.
  • Bring session context: Handoff supports up to 25 MiB per file and automatically includes an available Codex or Claude Code transcript for the current session. An unavailable or failed optional transcript upload does not block the handoff.
  • Clearer agent sign-in: Agent login presents the browser URL while the callback is live and explains how to restart an expired attempt.
  • Accurate oversized-review errors: Errors report file sizes only when the size is known, while retaining guidance to reduce the review scope.

Run cr update to update your CLI. See cloud coding commands for setup, transcript behavior, and retry guidance.

Originalquelle(öffnet in neuem Tab)Problem melden