Skip to content

CodeDecayFind what your coding agent missed before merge

Open-source PR red-teaming for AI-built code with user-owned agents, real execution evidence, and local-first workflows.

CodeDecay Judge Lab hero showing verified diff evidence

Start Here

  • Getting Started: install the CLI and run your first PR analysis
  • GitHub Action: add CodeDecay to pull request workflows
  • Redteam Reports: generate merge-safety reports for yourself or your coding agent
  • Task-Scoped Context: retrieve bounded route, file, test, memory, ADR, owner, and proof context for one task
  • Closed-Loop Orchestration: drive a user-owned agent through fix and re-verify rounds
  • Editor Workflows: surface JSON and SARIF findings in VS Code or other local tools before opening a PR
  • Trend Snapshots: persist repository health snapshots and compare them over time without a hosted dashboard
  • Product Testing: configure live app targets and inspect UI/API failure bundles for agents and PRs
  • Agent Task Bundles: hand deterministic evidence to Codex, Claude Code, Cursor, Pi, OpenCode, or desktop agents
  • MCP Server: expose CodeDecay as a local MCP tool for agent clients
  • Release Policy: understand the current compatibility contract before wiring CodeDecay into CI

For Humans

  • Use the sidebar and local search to navigate product docs quickly.
  • Open Sample Reports to see the actual Markdown, JSON, and SARIF outputs before integrating CodeDecay.
  • Use the GitHub edit links to tighten docs in the same repo that ships the code.

For Agents

These endpoints are generated from the same source files as the docs site, so humans and agents read the same content instead of drifting copies.

Local-first docs for merge safety, redteam workflows, and agent handoff.