Skip to main content

GitHub Copilot Example Setup for Defra

Practical setup guidance for configuring GitHub Copilot in Defra projects. This site provides ready-to-use agents, skills, instructions, and reusable prompts that help Copilot enforce Defra software development standards (opens in new tab) — the single source of truth for how Defra teams write code. These configuration files do not replace or override those standards; they encode them so Copilot produces compliant code from the start.

New to AI in software development? Read the Defra AI in the SDLC playbook (opens in new tab) first. It covers the four pillars (opens in new tab) of working effectively with AI — particularly Rules and Instructions and Prompts — which this site implements with ready-to-use configuration files. For tool-specific privacy and compliance guidance, see the AI Tool Guidance site (opens in new tab).

Why this matters

AI coding tools work best when given clear, project-specific context. A well-configured GitHub Copilot will:

  • Follow your team’s coding standards and conventions automatically
  • Produce code that passes your quality gates first time
  • Understand your architecture and make consistent decisions
  • Save time on repetitive tasks like writing tests, ADRs, and documentation

What is in this guide

Getting Started

The main setup guide — explains GitHub Copilot’s configuration system and how to set up your repository with instructions, agents, prompts, and skills. Includes a quick start with the three essential files to get you running.

Agents

Specialised AI personas you invoke in Copilot Chat. Each agent has a defined role, expertise, and workflow.

  • Defra App Developer — builds Defra-compliant applications following all software development standards
  • Code Reviewer — systematic code review using Defra quality criteria
  • Tester — BDD-focused testing with coverage enforcement and Playwright journey tests
  • Accessibility Advisor — WCAG 2.2 AA and GOV.UK Design System compliance for UI code
  • Orchestrator — plans complex features and delegates phases to specialist agents
  • Repo Setup — interviews you about your project and generates the full Copilot configuration

Instructions

Project-specific rules and standards that Copilot follows automatically.

  • Root instructions — project overview, branching, commits, quality gates
  • Node.js backend — Hapi, vanilla JavaScript, logging, error handling
  • C# backend — ASP.NET Core Minimal APIs, Serilog, FluentValidation, xUnit
  • Python backend — FastAPI, Pydantic Settings, async MongoDB, pytest
  • Frontend — WCAG 2.2 AA, GOV.UK Design System, Nunjucks
  • Documentation — READMEs, ADRs, JSDoc, inline comment discipline
  • Testing — Jest, BDD naming, AAA pattern, coverage targets, mock discipline
  • Real-world example — complete production instructions for a Node.js/Hapi service

Prompts

Reusable prompt templates for common tasks.

  • Write ADR — generate architecture decision records
  • Write Tests — generate test suites for existing code
  • Security Review — review code against OWASP and Defra security standards
  • Scaffold Repo — generate the full .github/ config, skills, .copilotignore, and MCP setup for a new project
  • Generate PR Description — write a structured PR description from staged changes
  • Write Runbook — generate an operational runbook for a service
  • Refactor to Standards — audit code against Defra standards and produce a prioritised refactor plan

Skills

Reusable capability packages that agents discover and load automatically based on what you are working on.

  • Defra Standards — Node.js and .NET coding standards, approved packages, and CDP platform conventions
  • GOV.UK Accessibility — WCAG 2.2 AA guidance, GOV.UK Frontend macros, and common failure patterns
  • Security and PII — UK data classifications, PII handling, parameterised queries, and OWASP guidance

MCP Setup

How to configure MCP servers to extend what Copilot agents can do — connecting them to GitHub, Azure DevOps, Playwright, and other tools.

.copilotignore and Advanced Configuration

Content exclusion, model pinning, enabling Agent Skills, and Plan Mode.

Cross-Tool Config

How to adapt the examples for other AI tools — Claude Code, Cursor, Windsurf, and others. The rules and standards are the same; only the file format changes.

How to use the examples

  1. Browse the Getting Started guide to understand the configuration structure
  2. Navigate to the example files that match your project’s needs
  3. Copy the raw markdown content into the matching directory in your repository
  4. Edit the examples to fit your specific project context

Quick start — minimum viable setup

Copy four files into your repo’s .github/ directory and you are up and running. See the Getting Started guide for the full setup table, what to edit in each file, and how to add more configuration as your team’s needs grow.

Contact us

The Defra AI Capabilities and Enablement team maintains this site. Contact us:

  • Microsoft Teams: Defra AI Community
  • Email: AICapabilitiesEnablement@defra.gov.uk

Licence

All content is available under the Open Government Licence v3.0 (opens in new tab), except where otherwise stated.