Right, the downside being that the app needs write access to your repository.
Writing to PR branches should really be some new kind of permission.