Article URL: https://github.com/microsoft/vscode/pull/310226 Comments URL: https://news.ycombinator.com/item?id=47989883 Points: 60 # Comments: 19
Coding
VS Code inserting 'Co-Authored-by Copilot' into commits regardless of usage
A critical vulnerability in Visual Studio Code's integration with GitHub Copilot has been exposed, allowing the AI-powered coding assistant to insert its own authorship into commits without user consent, effectively bypassing traditional collaboration workflows and raising concerns about intellectual property ownership and accountability. The issue stems from a misconfigured default setting that enables Copilot's "Co-Authored-by" feature by default. This oversight has sparked a heated debate among developers. AI-assisted, human-reviewed.