Repo Scan
A one-off review of an entire repository by eight specialist reviewers, ranked by risk and consolidated into root causes, a health score and a report you can hand over.
One-time run
Run it on a codebase you know to see what Codity finds before you subscribe, or on a legacy one to see where the risk sits before anyone changes it.
- Price
$80per repository scan
- You provide
- One repository and one branch, on GitHub, GitLab, Bitbucket or Azure DevOps
- Reviewed by
- Eight specialist reviewers, across 24 languages
- You get back
- A 0 to 100 health score, root causes to fix first and a PDF report by email
- Subscription
- Not needed
Security, correctness, concurrency and state, performance and scalability, data and contracts, operability, architecture and test coverage. Each area of the code gets the specialists its signals call for, and two of them read the whole repository from above.
Every file is ranked by how much depends on it, how often it changes and how sensitive it is (auth, payments, crypto, SQL), so the deepest review goes to the code where a defect costs most.
Repeats of the same defect are folded into one issue with every location listed, then grouped into "What to fix first" themes with a recommendation for each.
The dashboard shows a 0 to 100 health score, hotspots and every finding with a suggested fix. A PDF report arrives by email, covering architecture, major flaws and what each risk could mean in production.
Pick a repository and a branch on GitHub, GitLab, Bitbucket or Azure DevOps, pay by card or from your organization's wallet, and the scan runs on its own. No subscription needed.
Specialists
8 lensesMore Features
- PentestingBlack-box and active DAST testing of your live application, with evidence-checked findings.
- Model EvaluationEvaluate your LLM feature with tests written from what it is meant to do.
- ReviewsContext-aware pull request review with summaries, requirement tracking, re-reviews and autofix.
- Security ScansSecrets, injection, auth gaps, dependency risk and an org-wide SBOM, caught before the merge.
- GovernanceMerge gates, policy checks and review rules, enforced on every pull request.
- Code NavigationA live architecture map, component health from Repo X-Ray, and answers across every repository.
- Developer AnalyticsReview latency, rework, throughput and DORA metrics per team and repository.
- Monitoring & InsightsContinuous repository monitoring with anomaly detection and deployment insight.

