All-in-one code security platform with AI autofix that opens reviewable pull requests across scan types.
[ Directory ]
Tool directory
67 tools. Sorted by name. No paid boost.
AWS agent that auto-reviews new GitHub pull requests and commits suggested fixes on request.
AI agents that turn detected code vulnerabilities into merge-ready fix pull requests for developers.
Pipelineless AppSec platform running hybrid deterministic and AI SAST on pushes and pull requests with fixes.
Engineering review platform with specialized AI reviewers for code, security, plans, and merges.
AI Code Review Agent using a codebase knowledge graph for cross-repository impact analysis.
Free GitHub bot and Action that posts LLM generated review comments on pull requests.
Anthropic's multi-agent PR review for GitHub, plus a local /code-review command in Claude Code.
Automated code quality and security scanning with an LLM-based AI Reviewer commenting on pull requests.
Code review and application security platform combining AST analysis with AI reviewers.
Optimizes Python code for speed, verifying correctness and benchmarking candidates before proposing changes.
Automated AI review of pull requests with summaries, line comments, and suggested fixes across major Git platforms.
Code health analytics platform whose ACE feature generates validated AI refactorings for flagged code smells.
OpenAI Codex reviews GitHub pull requests automatically or when tagged with @codex review.
AI-native SAST that finds business logic and auth flaws and generates fixes on pull requests.
Enterprise SAST whose Polaris Assist adds AI issue summaries and copy-ready fix suggestions for findings.
AI code review for complex codebases, learning repository patterns to cut review noise.
Cursor's PR review agent focused on finding hard logic bugs with few false positives.
Static analysis platform combining thousands of deterministic rules with AI review comments and Autofix patches.
Automated pull request review feature of Cognition's Devin autonomous software engineer.
GitHub-native AI teammate that reviews pull requests and handles follow-up coding tasks.
Agentic security analysis of every pull request with findings posted as PR comments and plain-language policies.
Managed coding agent platform whose agents review pull requests and automate engineering workflows.
AppSec platform whose multi-agent AI code review flags security design risks on every pull request.
AI code review that checks pull requests against incident history and production monitoring signals.
AI SAST combining LLM agents with program analysis to catch logic flaws, with PR autofix.
Gemini agent that summarizes and reviews GitHub pull requests, now offered as an enterprise product.
Copilot reviews pull requests on GitHub, posting inline comments and ready-to-apply change suggestions.
AI reviewer for GitLab merge requests, assignable as a reviewer with customizable instructions.
Open source AI code reviewer that runs in CI or locally with any LLM provider.
Code review platform combining stacked pull requests, a merge queue, and an AI review agent.
Codebase-aware PR review agent that finds cross-file bugs by indexing the full repository graph.
On-demand network of vetted human code reviewers with AI triage, run by HackerOne.
Autonomous security agents that hunt for vulnerabilities on every code change.
heyGRC
Listed by Better ISMS (same rules as everyone)
Reviews pull requests for compliance impact, citing controls from frameworks like ISO 27001 and SOC 2.
Estimates cloud cost impact of infrastructure changes and enforces FinOps policies on pull requests.
Automatic pull request reviews on GitHub and GitLab from the open source Kilo Code project.
Open source review agent pairing a deterministic AST rule engine with LLM analysis.
AI code reviews with bug detection, suggested fixes, PR summaries, and team insight dashboards.
AI engine that summarizes codebase changes, reviews pull requests, and finds bugs for teams.
Open source code review agent generating PR summaries, bug and security findings, and tests.
Static code analysis combining graph neural networks with LLM based explanations.
Documentation agent that reads code changes and opens pull requests updating affected docs pages.
Automated vulnerability fixer that converts SAST findings into ready-to-merge pull requests, plus a PR review mode.
Autonomous AppSec agents that scan commits and PRs, validate exploitability, and open self-correcting fix PRs.
Self hosted review bot from Vercel Labs, triggered by mentioning it in pull request comments.
Agentic pull request reviewer that indexes the full repository on GitHub and GitLab.
Low-noise PR review agent with security checks, now part of a broader autonomous QA platform.
Automated product security engineer that triages scanner findings and opens convention-aware fix pull requests.
Community maintained open source PR review agent supporting GitHub, GitLab, Bitbucket, and Azure DevOps.
Free open source GitHub Action that reviews pull requests using your own LLM key.
Drafts documentation updates from pull requests, support tickets, and Slack threads to prevent drift.
Code Climate successor bundling 70+ linters with opt-in AI autofix suggestions and explanations.
JetBrains code quality platform running IDE grade static analysis in CI pipelines.
Context-aware pull request review and management agent, built on the open source PR-Agent project.
Bug-focused checker for pull requests, staged changes, and coding agent feedback loops.
Atlassian's AI reviewer for Bitbucket Cloud and GitHub, checking pull requests against linked Jira criteria.
Static analysis platform with an AI assistant that triages findings and posts remediation guidance on pull requests.
Sentry feature that predicts errors, reviews pull requests, and generates tests using production context.
Extendable open source review agent that runs in CI and explores the codebase with tools.
Developer security platform whose DeepCode AI engine finds vulnerabilities and generates one-click fixes in PRs and IDEs.
Static analysis platform for 30+ languages with AI CodeFix suggestions and AI pull request review.
Automated PR reviews with bug findings, security checks, and real-time feedback in the IDE.
Agentic code review tool that writes pull request descriptions and learns team standards.
Reviews pull requests and validates each suggested patch in a sandbox before posting it.
Guardrails and AI reviews that enforce team standards on AI generated code.
AI security scanner that reviews every pull request inline and proposes patches that build and pass tests.