Codity icon

Codity

Codity is an AI code review platform for GitHub, GitLab, Bitbucket, and Azure DevOps, with repo-wide scans, security checks, and developer analytics.

Codity

AI code review with repository-wide context

Codity is an AI code review platform that reads a whole repository instead of looking only at changed files. It connects to GitHub, GitLab, Bitbucket, or Azure DevOps and uses repository context to review pull requests, scan for security problems, and surface feedback where developers already work.

Beyond PR review, Codity adds code navigation, developer analytics, and monitoring features so teams can understand architecture, track engineering trends, and follow production issues. The product is sold with annual per-seat pricing, and the pricing page also includes CLI, plugin, and API access on every plan.

Core capabilities

Context-aware pull request review

Codity reviews each pull request using full repository context, including linked tickets and service dependencies, and posts findings inline on the PR.

Security scanning

The platform scans for leaked secrets, vulnerable dependencies, injection risks, insecure patterns, and other security issues during review.

Code navigation and repository intelligence

Codity can search across repositories, trace dependencies, follow execution flows, and help teams understand how services and components fit together.

Engineering analytics

Developer analytics track review efficiency, merge velocity, deployment trends, DORA metrics, bottlenecks, workload, and burnout-risk signals.

Monitoring and incident response

Codity supports continuous monitoring for unusual code changes, quality regressions, and engineering trends, plus incident analysis that correlates code changes, deployments, logs, metrics, and traces.

Multi-surface workflows

The product includes terminal, plugin, and API surfaces, with CLI review and scan tools, Claude Code commands, and public endpoints for review, scan, and navigation.

Common workflows

  • PR review for engineering teams

    Use Codity to review pull requests with full repository context, so comments can reflect architecture, linked tickets, and service dependencies rather than only the edited lines.

  • Security scanning during development

    Run security scans on pull requests and local workflows to catch leaked secrets, vulnerable dependencies, injection risks, and insecure patterns before code reaches production.

  • Repository exploration and onboarding

    Use the code navigation and chat-style intelligence tools to trace dependencies, search repositories, and understand how a new or unfamiliar service is wired together.

  • Engineering analytics and reporting

    Track merge velocity, review efficiency, DORA metrics, and workload signals to get a broader view of delivery health across teams.

  • Policy enforcement and review governance

    Apply policies, custom rules, and audit trails to enforce coding standards, require tests, and keep review workflows consistent across repositories.

Pros and Cons

Pros

  • Reviews pull requests with full repository context instead of only the changed files.
  • Covers both quality and security, including leaked secrets and dependency-related findings.
  • Includes code navigation and analytics in the same platform, which can reduce tool switching.
  • Offers multiple workflow surfaces: dashboard, CLI, plugin, and API.
  • Pricing page clearly describes plan structure and usage pools, which helps teams understand how consumption works.

Cons

  • The marketing site does not publish a full supported-language list; it points readers to documentation.
  • Some integrations are mentioned only generally, so connector breadth and limits are not fully detailed on the public pages.
  • A few enterprise-oriented options, such as on-prem deployment and custom connectors, are arranged separately rather than included in the self-serve plans.

FAQ

How does Codity work?

Codity connects to a Git provider, indexes repositories with full context, and reviews pull requests automatically. It summarizes changes, ranks findings by severity, and posts feedback inline when a PR opens.

What programming languages does Codity support?

Codity says it supports all major languages and frameworks out of the box, while the full supported-language list is kept in its documentation.

Why use Codity instead of a regular linter?

Codity is positioned as context-aware review rather than a regular linter. It reads repository architecture, conventions, and history so findings are based on how the codebase actually works, not only on isolated syntax rules.

Who is Codity for?

Codity is aimed at engineering teams of any size, including startups, platform teams, and enterprises that need security scanning and org-wide visibility.

What integrations and workflows does Codity support?

The source shows Codity available through GitHub, GitLab, Bitbucket, and Azure DevOps, with CLI, plugin, API, and dashboard-based workflows. Some integrations such as Jira, Linear, Confluence, Slack, Microsoft Teams, and webhooks are also referenced on the site.

Quick Facts

Category
Developer Tool
Primary use
AI code review and repository intelligence
Platforms
GitHub, GitLab, Bitbucket, Azure DevOps
Access surfaces
Dashboard, CLI, plugin, public API
Pricing
Annual per-seat plans with Basic, Premium, and Codity One
Company domain
codity.ai