If CoPilot bumps these crumby solutions into 'average' solutions then it's a big improvement under those circumstances.
But when making highly refined software, CoPilot's suggestions might be relatively mundane; a degradation in quality.
Sometimes it's great, sometimes the middle of the curve is itself bad. :)
This strengthens the case for careful assessment of when CoPilot is used vs not used, and in cases that it's used, how much effort goes into rigorously testing and scrutinizing its suggestions (as opposed to unthinkingly accepting them as one may for tasks known to have no downside risk).
Maybe there is an option to make Copilot prioritize security concern over other aspects when working in the context of security related apps or features.
This is how humans work, too.
Technically, this is fine tuning or prompt engineering.
I personally say "it" as I see it as a machine.