# CodeAnt AI ## Docs - [CodeAnt AI](https://docs.codeant.ai/index.md): AI agents that review every pull request and continuously secure your code, cloud, and runtime. - [Github](https://docs.codeant.ai/setup/github.md): Setup CodeAnt on Github Organization - [GitHub Enterprise](https://docs.codeant.ai/setup/github_enterprise.md): Integrate CodeAnt with your self-hosted GitHub Enterprise Server for AI-powered code analysis - [Bitbucket](https://docs.codeant.ai/setup/bitbucket.md): Setup CodeAnt on Bitbucket Workspace - [Bitbucket Data Center](https://docs.codeant.ai/setup/bitbucket_data_center.md): Configure CodeAnt AI for Self-hosted Bitbucket Data Center - [GitLab Access Token](https://docs.codeant.ai/setup/gitlab/access-token.md): Create the GitLab access token CodeAnt AI uses to review merge requests. - [Manual Webhook Setup](https://docs.codeant.ai/setup/gitlab/manual-webhooks.md): Add CodeAnt AI webhooks to GitLab manually - group-level (Premium / Ultimate) or per-project. - [Self-Hosted GitLab Setup](https://docs.codeant.ai/setup/gitlab/self-hosted/control_center.md): Connect CodeAnt AI to your self-hosted GitLab instance. - [Microsoft Entra Workload Identity](https://docs.codeant.ai/setup/azure_devops/cloud/entra_workload_identity.md): Connect CodeAnt AI to Azure DevOps without a personal access token or client secret. - [Service Account](https://docs.codeant.ai/setup/azure_devops/cloud/service_account.md): Setup service account for CodeAnt AI integration with Azure DevOps - [Pull Request Review](https://docs.codeant.ai/setup/azure_devops/cloud/pull_request.md): Configure CodeAnt AI pull request review for Azure Devops - [Control Center](https://docs.codeant.ai/setup/azure_devops/cloud/control_center.md): Configure CodeAnt AI control center for Cloud Azure Devops - [Pull Request Review](https://docs.codeant.ai/setup/azure_devops/self-hosted/pull_request.md): Configure CodeAnt AI pull request review for Self-hosted Azure Devops - [Control Center](https://docs.codeant.ai/setup/azure_devops/self-hosted/control_center.md): Configure CodeAnt AI control center for Self-hosted Azure Devops - [Organization Teams](https://docs.codeant.ai/settings/teams.md): Group GitHub repositories into reusable organization teams for access control and team-level configuration. - [Access Control](https://docs.codeant.ai/settings/access-control.md): Create roles and grant users least-privilege access to CodeAnt product areas, settings, teams, and repositories. - [API Tokens](https://docs.codeant.ai/settings/api-tokens.md): Create and manage CodeAnt API tokens to authenticate CI pipelines and the CodeAnt API. - [How to Use](https://docs.codeant.ai/pull_request/howToUse.md): A complete guide to using CodeAnt AI for pull request reviews - [Code Review](https://docs.codeant.ai/pull_request/features/code_review.md): Inline code review with severity levels, suggested fixes, and steps of reproduction - [Chat](https://docs.codeant.ai/pull_request/features/chat.md): Have conversations with CodeAnt AI directly on your pull requests - [Learnings](https://docs.codeant.ai/pull_request/features/learnings.md): Teach CodeAnt AI about your codebase by dismissing suggestions - [Fix in IDE](https://docs.codeant.ai/pull_request/features/fix_in_ide.md): Open CodeAnt review suggestions directly inside Cursor or VS Code (Claude Code) with one click - [Auto Approve PR](https://docs.codeant.ai/pull_request/features/auto_approve_pr.md): Automatically approve pull requests once every CodeAnt review thread has been resolved - [Automated PR Descriptions](https://docs.codeant.ai/pull_request/description.md): Effortlessly Add Detailed Descriptions to Your Pull Requests - [Agent Personas](https://docs.codeant.ai/pull_request/customize/agent_personas.md): Enable and configure pre-built AI review agents for your repositories - [Instructions](https://docs.codeant.ai/pull_request/customize/instructions.md): Configure review instructions through CodeAnt AI Dashboard - [Rules](https://docs.codeant.ai/pull_request/customize/rules.md): Create and manage custom review rules through CodeAnt AI Dashboard - [Example Prompts](https://docs.codeant.ai/pull_request/customize/prompt_examples.md): Explore framework-specific custom prompts for improving PR review coverage and compliance with your internal standards. - [Suggestions Threshold](https://docs.codeant.ai/pull_request/customize/thresholds.md): Configure the threshold level for AI-generated PR suggestions - [Global Repo Configuration](https://docs.codeant.ai/pull_request/customize/global_repo_config.md): Maintain a single org-wide source of truth for .codeant/ config and merge it into every repo automatically - [Quality Gates](https://docs.codeant.ai/pull_request/quality_gates/setup.md): Configure CodeAnt AI pull request Quality gates - [Repository Configuration](https://docs.codeant.ai/pull_request/quality_gates/repository_configuration.md): Configure repository-level quality gate conditions using a configuration file - [Jira Ticket Compliance](https://docs.codeant.ai/pull_request/jira_compliance.md): Check whether the code changes are compliant with jira ticket requirements - [Third-Party Tools](https://docs.codeant.ai/pull_request/third_party/integrations.md): CodeAnt seamlessly connects with these tools - [Analysis Configuration](https://docs.codeant.ai/scan_center/analysis_configuration.md): Configure which analyses run on your repository and how files are filtered - [Application security](https://docs.codeant.ai/scan_center/code_security/security.md): Comprehensive Detection and Management of Application Security Vulnerabilities - [Secrets detection](https://docs.codeant.ai/scan_center/code_security/secrets.md): Automatically Detect and Protect Sensitive Information in Your Codebase - [IaC Analysis](https://docs.codeant.ai/scan_center/code_security/iac.md): Comprehensive Static Analysis of Infrastructure as Code - [Software Composition Analysis](https://docs.codeant.ai/scan_center/code_security/sca.md): Comprehensive Detection and Management of Third-Party Package Vulnerabilities - [Penetration Testing](https://docs.codeant.ai/pentesting/overview.md): Black box, gray box, and white box penetration testing with CodeAnt AI. - [Black Box Testing](https://docs.codeant.ai/pentesting/black_box.md): Test your application from an external attacker's perspective with zero internal knowledge. - [Gray Box Testing](https://docs.codeant.ai/pentesting/gray_box.md): A private, scoped penetration testing engagement run with partial knowledge of your systems. - [White Box Testing](https://docs.codeant.ai/pentesting/white_box.md): Source-aware penetration testing with AI Exploitation - chain vulnerabilities into real attack paths. - [CSPM](https://docs.codeant.ai/cloud_security/cspm.md): Cloud Security Posture Management (CSPM) with CodeAnt AI - [VM Scanning](https://docs.codeant.ai/cloud_security/vm-scanning.md): Agentless VM disk scanning for AWS and Azure - [Container Scanning](https://docs.codeant.ai/cloud_security/container-scanning.md): Scan container registry images for vulnerabilities and secrets - [AWS](https://docs.codeant.ai/cloud_security/setup/aws.md): Connect AWS to CodeAnt for Cloud Security Posture Management (CSPM) - [GCP](https://docs.codeant.ai/cloud_security/setup/gcp.md): Connect GCP to CodeAnt for Cloud Security Posture Management (CSPM) - [Azure](https://docs.codeant.ai/cloud_security/setup/azure.md): Connect Azure to CodeAnt for Cloud Security Posture Management (CSPM) - [Docstring Generation](https://docs.codeant.ai/scan_center/code_quality/docstring.md): Effortlessly Generate Contextual Docstrings for Your Codebase - [Dead code](https://docs.codeant.ai/scan_center/code_quality/dead_code.md): Effortlessly Identify and Eliminate Unused Code in Your Repository - [Duplicate code](https://docs.codeant.ai/scan_center/code_quality/duplicate_code.md): Effortlessly Identify duplicate code in Your Repository - [Complex Functions](https://docs.codeant.ai/scan_center/code_quality/complex_functions.md): Identify and Manage Complex Functions in Your Codebase* - [Antipatterns/Bugs](https://docs.codeant.ai/scan_center/code_quality/antipatterns.md): Identify and Fix Antipatterns and Bugs in Your Codebase - [Reporting](https://docs.codeant.ai/scan_center/code_quality/report_generation.md): Comprehensive reporting for any repository - [DORA Metrics](https://docs.codeant.ai/engineering_productivity/dora_metrics.md): Track and Improve Your Software Delivery Performance with Industry-Standard Metrics - [Developer Productivity Metrics](https://docs.codeant.ai/engineering_productivity/dev_metrics.md): Measure and Optimize Your Engineering Team Efficiency and Workflow - [VS Code Extension](https://docs.codeant.ai/ide/setup/vscode.md): Install and setup CodeAnt AI extension for Visual Studio Code - [Cursor Extension](https://docs.codeant.ai/ide/setup/cursor.md): Install and setup CodeAnt AI extension for Cursor - [Windsurf Extension](https://docs.codeant.ai/ide/setup/windsurf.md): Install and setup CodeAnt AI extension for Windsurf - [JetBrains IDEs Plugin](https://docs.codeant.ai/ide/setup/jetbrains.md): Install and setup CodeAnt AI plugin for JetBrains IDEs - [Visual Studio Extension](https://docs.codeant.ai/ide/setup/visualstudio.md): Install and setup CodeAnt AI extension for Visual Studio - [How to use](https://docs.codeant.ai/ide/review/how_to_use.md): How to start CodeAnt AI code reviews in VS Code - [Code review Instructions](https://docs.codeant.ai/ide/review/code_review_instructions.md): Configure review instructions for CodeAnt AI - [Custom Review Rules](https://docs.codeant.ai/ide/review/custom_prompts.md): Extend CodeAnt AI with custom review rules for company-specific practices - [Review Configuration](https://docs.codeant.ai/ide/review/configuration.md): Configure which files CodeAnt AI reviews in your pull requests - [Installation & Setup](https://docs.codeant.ai/cli/setup.md): Install the CodeAnt AI CLI and configure authentication for your SCM platform - [CLI Commands](https://docs.codeant.ai/cli/commands.md): Complete reference for all CodeAnt AI CLI commands - [AI Code Review](https://docs.codeant.ai/cli/review.md): Run AI-powered agentic code reviews from the command line - [SCM Integration & PR Tools](https://docs.codeant.ai/cli/scm-integration.md): Manage pull requests, code reviews, and comments across GitHub, GitLab, Bitbucket, and Azure DevOps - [Scan Center](https://docs.codeant.ai/cli/scan-center.md): Browse and query CodeAnt AI scan results interactively or from scripts and agents - [Git Hooks](https://docs.codeant.ai/cli/git-hooks.md): Set up pre-commit hooks to automatically scan code before committing - [Claude Code Integration](https://docs.codeant.ai/cli/claude-code-integration.md): Integrate CodeAnt AI code review and PR comment resolution into your Claude Code workflow - [Cursor Integration](https://docs.codeant.ai/cli/cursor-integration.md): Integrate CodeAnt AI code review and PR comment resolution into your Cursor AI workflow - [MCP Server](https://docs.codeant.ai/cli/mcp-server.md): Use CodeAnt as an MCP server in any MCP-compatible client - [Azure Pipelines](https://docs.codeant.ai/control_center/ci/ci_azuredevops.md): Set up Azure Pipelines workflow for CodeAnt CI scan. - [Bitbucket Pipelines](https://docs.codeant.ai/control_center/ci/ci_bitbucket.md): Set up CodeAnt CI security and code quality analysis in your Bitbucket pipeline. - [Github Actions](https://docs.codeant.ai/control_center/ci/ci_github.md): Set up CodeAnt into your github CI Pipeline. - [GitLab](https://docs.codeant.ai/control_center/ci/ci_gitlab.md): Set up GitLab CI workflow for CodeAnt CI scan. - [Jenkins](https://docs.codeant.ai/control_center/ci/ci_jenkins.md): Set up a Jenkins pipeline for CodeAnt CI scan. - [GitHub Actions](https://docs.codeant.ai/control_center/test_coverage/github.md): Set up GitHub Actions workflow for coverage reporting. - [Bitbucket Pipelines](https://docs.codeant.ai/control_center/test_coverage/bitbucket.md): Set up Bitbucket Pipelines workflow for coverage reporting. - [GitLab CI/CD](https://docs.codeant.ai/control_center/test_coverage/gitlab.md): Set up GitLab CI/CD workflow for coverage reporting. - [Azure Pipelines](https://docs.codeant.ai/control_center/test_coverage/azuredevops.md): Set up Azure Pipelines workflow for coverage reporting. - [Jenkins](https://docs.codeant.ai/control_center/test_coverage/jenkins.md): Set up Jenkins Pipeline for coverage reporting. - [CircleCI](https://docs.codeant.ai/control_center/test_coverage/circleci.md): Set up CircleCI Pipeline for coverage reporting. - [GitHub Actions](https://docs.codeant.ai/control_center/quality_gates/quality_gate_github.md): Set up CodeAnt Quality Gates in your GitHub CI Pipeline. - [GitLab CI/CD](https://docs.codeant.ai/control_center/quality_gates/quality_gate_gitlab.md): Set up CodeAnt Quality Gates in your GitLab CI Pipeline. - [Azure Pipelines](https://docs.codeant.ai/control_center/quality_gates/quality_gate_azuredevops.md): Set up CodeAnt Quality Gates in your Azure DevOps CI Pipeline. - [Bitbucket Pipelines](https://docs.codeant.ai/control_center/quality_gates/quality_gate_bitbucket.md): Set up CodeAnt Quality Gates in your Bitbucket CI Pipeline. - [Jenkins](https://docs.codeant.ai/control_center/quality_gates/quality_gate_jenkins.md): Set up CodeAnt Quality Gates in your Jenkins CI Pipeline. - [Jenkins](https://docs.codeant.ai/control_center/dast/dast_jenkins.md): Run CodeAnt DAST (Dynamic Application Security Testing) scans from your Jenkins CI Pipeline. - [Setup](https://docs.codeant.ai/control_center/jira/setup.md): Integrate Jira with CodeAnt AI - [Create Jira Issues](https://docs.codeant.ai/control_center/jira/create_tickets.md): Create Jira tickets from the CodeAnt AI dashboard - [Setup](https://docs.codeant.ai/control_center/linear/setup.md): Connect your Linear workspace to CodeAnt AI - [Create Linear Issues](https://docs.codeant.ai/control_center/linear/create_tickets.md): Create Linear tickets from any CodeAnt AI finding - [Slack Integration](https://docs.codeant.ai/control_center/slack/setup.md): Connect your CodeAnt AI workspace to Slack for sprint report notifications - [EU AI Act Statement](https://docs.codeant.ai/compliance/EU-AI-Act-Statement.md): CodeAnt AI's position on compliance with Regulation (EU) 2024/1689 - the EU Artificial Intelligence Act. - [GDPR](https://docs.codeant.ai/compliance/GDPR.md) - [HIPAA](https://docs.codeant.ai/compliance/HIPAA.md) - [ISO/IEC 27001:2022](https://docs.codeant.ai/compliance/ISO-IEC-27001:2022.md) - [ISO 27002:2022](https://docs.codeant.ai/compliance/ISO-27002:2022.md) - [RBI Baseline Cyber Security and Resilience Requirements](https://docs.codeant.ai/compliance/RBI-Baseline-Cyber-Security-and-Resilience-Requirements.md) - [PCI DSS v4.0](https://docs.codeant.ai/compliance/PCI-DSS-v4.0.md) - [SOC 2](https://docs.codeant.ai/compliance/SOC-2.md) - [MISRA-C-2012](https://docs.codeant.ai/compliance/MISRA-C-2012.md) - [MISRA-CPP-2023](https://docs.codeant.ai/compliance/MISRA-CPP-2023.md) - [AUTOSAR-CPP-2014](https://docs.codeant.ai/compliance/AUTOSAR-CPP-2014.md) - [Pyspark](https://docs.codeant.ai/antipattern-rules/pyspark.md) - [Python - 1](https://docs.codeant.ai/antipattern-rules/Python/python1.md): Learn about Python Anti-Patterns and How they help you write better code, and avoid common pitfalls. - [Python - 2](https://docs.codeant.ai/antipattern-rules/Python/python2.md): Learn about Python Anti-Patterns and How they help you write better code, and avoid common pitfalls. - [Python - 3](https://docs.codeant.ai/antipattern-rules/Python/python3.md): Learn about Python Anti-Patterns and How they help you write better code, and avoid common pitfalls. - [Java - 1](https://docs.codeant.ai/antipattern-rules/Java/java1.md): Learn about Java Anti-Patterns and How they help you write better code, and avoid common pitfalls. - [Java - 2](https://docs.codeant.ai/antipattern-rules/Java/java2.md): Learn about Java Anti-Patterns and How they help you write better code, and avoid common pitfalls. - [Java - 3](https://docs.codeant.ai/antipattern-rules/Java/java3.md): Learn about Java Anti-Patterns and How they help you write better code, and avoid common pitfalls. - [Java - 4](https://docs.codeant.ai/antipattern-rules/Java/java4.md): Learn about Java Anti-Patterns and How they help you write better code, and avoid common pitfalls. - [C / CPP](https://docs.codeant.ai/rules/cfamily.md) - [C #](https://docs.codeant.ai/rules/csharp.md) - [Javascript](https://docs.codeant.ai/rules/javascript.md) - [Angular](https://docs.codeant.ai/rules/angular.md) - [Autofix](https://docs.codeant.ai/rules/autofix.md) - [Eslint](https://docs.codeant.ai/rules/eslint.md) - [Import](https://docs.codeant.ai/rules/import.md) - [Jsx](https://docs.codeant.ai/rules/jsx.md) - [Next](https://docs.codeant.ai/rules/next.md) - [Promise](https://docs.codeant.ai/rules/promise.md) - [React](https://docs.codeant.ai/rules/react.md) - [React native](https://docs.codeant.ai/rules/react_native.md) - [Security](https://docs.codeant.ai/rules/security.md) - [Sonar](https://docs.codeant.ai/rules/sonar.md) - [Tailwind](https://docs.codeant.ai/rules/tailwind.md) - [Typescript](https://docs.codeant.ai/rules/typescript.md) - [Unicorn](https://docs.codeant.ai/rules/unicorn.md) - [Jcl](https://docs.codeant.ai/rules/jcl.md) - [Kotlin](https://docs.codeant.ai/rules/kotlin.md) - [Kubernetes](https://docs.codeant.ai/rules/kubernetes.md) - [Abap](https://docs.codeant.ai/rules/abap.md) - [Apex](https://docs.codeant.ai/rules/apex.md) - [Azure Source Manager](https://docs.codeant.ai/rules/azureresourcemanager.md) - [Php](https://docs.codeant.ai/rules/php.md) - [Pli](https://docs.codeant.ai/rules/pli.md) - [Plsql](https://docs.codeant.ai/rules/plsql.md) - [Secrets](https://docs.codeant.ai/rules/secrets.md) - [Swift](https://docs.codeant.ai/rules/swift.md) - [Terraform](https://docs.codeant.ai/rules/terraform.md) - [Text](https://docs.codeant.ai/rules/text.md) - [Tsql](https://docs.codeant.ai/rules/tsql.md) - [Rpg](https://docs.codeant.ai/rules/rpg.md) - [Ruby](https://docs.codeant.ai/rules/ruby.md) - [Elixir](https://docs.codeant.ai/rules/elixir.md): Learn about the Elixir anti-patterns detected by CodeAnt AI. - [Scala](https://docs.codeant.ai/rules/scala.md) - [Vb6](https://docs.codeant.ai/rules/vb6.md) - [Vbnet](https://docs.codeant.ai/rules/vbnet.md) - [Xml](https://docs.codeant.ai/rules/xml.md) - [Flex](https://docs.codeant.ai/rules/flex.md) - [Go](https://docs.codeant.ai/rules/go.md) - [Html](https://docs.codeant.ai/rules/html.md) - [Docker](https://docs.codeant.ai/rules/docker.md) - [Css](https://docs.codeant.ai/rules/css.md) - [Cobol](https://docs.codeant.ai/rules/cobol.md) - [Common](https://docs.codeant.ai/rules/common.md) - [Infrastructure Security Database](https://docs.codeant.ai/infra_security_descriptions.md): This is a custom database of cloud infrastructure security rules that CodeAnt AI scans in any given infrastructure. Every policy in this database explains why it is important, what the impact is if it is violated, and how to implement a fix for it. We also levarage checkov for some of the findings. - [Application Security Rules](https://docs.codeant.ai/application_rules/overview.md): CodeAnt AI detects security vulnerabilities across 25+ programming languages, organized by the OWASP Top 10 2021 security standard. Each rule is mapped to specific CWE identifiers for precise vulnerability classification. - [A01:2021 - Broken Access Control](https://docs.codeant.ai/application_rules/a01-broken-access-control.md): Security rules for Broken Access Control vulnerabilities. Access control enforces policy such that users cannot act outside of their intended permissions. Failures typically lead to unauthorized information d - [A02:2021 - Cryptographic Failures](https://docs.codeant.ai/application_rules/a02-cryptographic-failures.md): Security rules for Cryptographic Failures vulnerabilities. Failures related to cryptography which often lead to sensitive data exposure. This includes the use of weak or broken cryptographic algorithms, improp - [A03:2021 - Injection](https://docs.codeant.ai/application_rules/a03-injection.md): Security rules for Injection vulnerabilities. Injection flaws occur when an application sends untrusted data to an interpreter as part of a command or query. This includes SQL injection, NoSQL inj - [A04:2021 - Insecure Design](https://docs.codeant.ai/application_rules/a04-insecure-design.md): Security rules for Insecure Design vulnerabilities. Insecure design refers to risks related to flaws in the design and architecture of an application, as distinguished from implementation bugs. This inc - [A05:2021 - Security Misconfiguration](https://docs.codeant.ai/application_rules/a05-security-misconfiguration.md): Security rules for Security Misconfiguration vulnerabilities. Security misconfiguration is the most common issue in application security. This includes insecure default configurations, incomplete configurations, - [A06:2021 - Vulnerable and Outdated Components](https://docs.codeant.ai/application_rules/a06-vulnerable-outdated-components.md): Security rules for Vulnerable and Outdated Components vulnerabilities. Applications that use components with known vulnerabilities may undermine application defenses and enable various attacks. This includes outdated libr - [A07:2021 - Identification and Authentication Failures](https://docs.codeant.ai/application_rules/a07-auth-failures.md): Security rules for Identification and Authentication Failures vulnerabilities. Covers weak passwords, improper session management, credential exposure, and missing multi-factor authentication. - [A08:2021 - Software and Data Integrity Failures](https://docs.codeant.ai/application_rules/a08-data-integrity-failures.md): Security rules for Software and Data Integrity Failures vulnerabilities. Software and data integrity failures relate to code and infrastructure that does not protect against integrity violations. This includes insecure dese - [A09:2021 - Security Logging and Monitoring Failures](https://docs.codeant.ai/application_rules/a09-logging-monitoring-failures.md): Security rules for Security Logging and Monitoring Failures vulnerabilities. Without logging and monitoring, breaches cannot be detected. Insufficient logging, detection, monitoring, and active response allows attackers to furt - [A10:2021 - Server-Side Request Forgery (SSRF)](https://docs.codeant.ai/application_rules/a10-ssrf.md): Security rules for Server-Side Request Forgery (SSRF) vulnerabilities. SSRF flaws occur when a web application fetches a remote resource without validating the user-supplied URL. This allows attackers to force the applica - [Sprint Reports](https://docs.codeant.ai/how_codeant_uses_codeant/sprint_reports.md): Keep your entire team in the loop with automated sprint reports delivered to Slack - [Addressing Review Feedback](https://docs.codeant.ai/how_codeant_uses_codeant/addressing_review_feedback.md): How CodeAnt uses the Claude Code integration to resolve its own review comments automatically - [Cloud Security](https://docs.codeant.ai/how_codeant_uses_codeant/cloud_security.md): How CodeAnt uses CodeAnt AI CSPM to monitor its own AWS, GCP, and Azure infrastructure - [Quality Gates](https://docs.codeant.ai/how_codeant_uses_codeant/quality_gates.md): How CodeAnt uses CodeAnt AI Quality Gates to block PRs that regress security, duplication, or SAST posture - [Tree-sitter VB.NET Parser](https://docs.codeant.ai/open_source/vb-dot-net.md): Open Source Tree-sitter Grammar for Visual Basic .NET - [Superhuman Context](https://docs.codeant.ai/blog/superhuman-context.md): How Call Graphs Gave Our LLM Superhuman Context - [Practical Agent Sandboxing](https://docs.codeant.ai/blog/practical-agent-sandboxing.md): Code Sandboxes for LLMs and AI Agents - [Start Analysis](https://docs.codeant.ai/api-reference/analysis/start-analysis.md): Initiates a background analysis task for a repository - [Get Analysis Results](https://docs.codeant.ai/api-reference/analysis/get-analysis-results.md): Retrieves the analysis results for a specific repository and commit - [Get SBOM Results](https://docs.codeant.ai/api-reference/analysis/get-sbom-results.md): Retrieves the Software Bill of Materials (SBOM) results for a specific repository and commit - [Get Secrets Scan Results](https://docs.codeant.ai/api-reference/analysis/get-secrets-scan-results.md): Retrieves the secrets scanning results for a specific repository and commit - [Get Anti-patterns Results](https://docs.codeant.ai/api-reference/analysis/get-anti-patterns-results.md): Retrieves the code anti-patterns and code smell detection results for a specific repository and commit - [Get IaC Scan Results](https://docs.codeant.ai/api-reference/analysis/get-iac-scan-results.md): Retrieves Infrastructure as Code (IaC) security scanning results for a specific repository and commit - [Get Full Analysis Report](https://docs.codeant.ai/api-reference/analysis/get-full-analysis-report.md): Generates a sectioned CSV analysis report for a specific repository and commit, covering up to ten categories: SAST, Secrets, SCA, IaC, Anti-Patterns, Complex Functions, Docstring, Duplicate Code, Dead Code, and SBOM. Each category is emitted as its own labeled section with category-specific columns… - [Get Scan History](https://docs.codeant.ai/api-reference/analysis/get-scan-history.md): Retrieves the scan history for a repository, returning the last analysis results for each commit that has been scanned - [Create Team](https://docs.codeant.ai/api-reference/developer-metrics--teams/create-team.md): Creates a new developer team. Teams can be organized around **developers** (by adding members), **repositories** (by assigning repos), or **both**. You can also create empty teams and add members/repos later via the update and member endpoints. - [List Teams](https://docs.codeant.ai/api-reference/developer-metrics--teams/list-teams.md): Returns all teams for the given organization. By default only active teams are returned; set `include_inactive: true` to include soft-deleted teams. - [Get Team](https://docs.codeant.ai/api-reference/developer-metrics--teams/get-team.md): Retrieves a single team by its ID, including full member list and repository assignments. - [Update Team](https://docs.codeant.ai/api-reference/developer-metrics--teams/update-team.md): Updates team metadata such as name, description, color, team leads, tags, or assigned repositories. Only include the fields you want to change - omitted fields are left unchanged. - [Delete Team](https://docs.codeant.ai/api-reference/developer-metrics--teams/delete-team.md): Deletes a team. By default performs a **soft delete** (marks the team as inactive). Set `hard_delete: true` to permanently remove the team and its data. - [Add Team Member](https://docs.codeant.ai/api-reference/developer-metrics--teams/add-team-member.md): Adds a new member to a team. The `user_login` must be unique within the team. - [Remove Team Member](https://docs.codeant.ai/api-reference/developer-metrics--teams/remove-team-member.md): Removes a member from a team by their `user_login`. - [Update Team Member](https://docs.codeant.ai/api-reference/developer-metrics--teams/update-team-member.md): Updates a team member's role or display name. - [Get Developer Comparison](https://docs.codeant.ai/api-reference/developer-metrics/get-developer-comparison.md): Retrieves a developer's productivity metrics compared against the organization average. Includes commit activity, PR statistics, code review contributions, and more. Useful for individual performance dashboards and 1:1 reviews. - [Get Developer Summary](https://docs.codeant.ai/api-reference/developer-metrics/get-developer-summary.md): Generates an AI-powered natural-language summary of a developer's contributions across the specified repositories and date range. Includes PR descriptions and an overall narrative of work done. If `repositories` is omitted, all repositories under the organization are used. - [Get Active Developers](https://docs.codeant.ai/api-reference/developer-metrics/get-active-developers.md): Returns all developers who made commits in the organization during the specified date range. Includes per-developer statistics: commit counts, lines added/deleted, language breakdown, coding day distribution, and repository contributions. Useful for team activity dashboards and headcount tracking. - [Get Developer PR Data](https://docs.codeant.ai/api-reference/developer-metrics/get-developer-pr-data.md): Returns pull request activity for all developers in the organization during the specified date range. Includes open/merged/closed PR counts, code change statistics, and detailed PR listings per developer. Useful for code review dashboards and throughput analysis. - [Start Agent Scan](https://docs.codeant.ai/api-reference/agent-analysis/start-agent-scan.md): Initiates an AI-powered agent analysis for a repository. The agent uses LLM-based code exploration to perform deep security threat hunting, bug finding, or custom analysis based on user-provided instructions. Files are filtered by extension, size (≤400KB), and line count (≤5000 lines), with a maximu… - [Get Agent Scan Results](https://docs.codeant.ai/api-reference/agent-analysis/get-agent-scan-results.md): Retrieves the results of an agent analysis scan. If the scan is still in progress, returns a status of `in_progress`. Once complete, returns deduplicated issues found across all analyzed files. Issues are deduplicated using LLM-based analysis to remove duplicate findings across files. - [Get Agent Scan History](https://docs.codeant.ai/api-reference/agent-analysis/get-agent-scan-history.md): Retrieves the history of all agent analysis scans for a repository, sorted by most recent first. Each entry includes metadata about the scan such as the branch, commit, prompt used, and number of files analyzed. - [List Audit Events](https://docs.codeant.ai/api-reference/audit-logs/list-audit-events.md): Retrieves your organization's audit events oldest-first with cursor pagination. Designed for incremental ingestion: pass `since` (or the previous `next_cursor`) on each run to fetch only new events. Authenticate with a CodeAnt API token (requires the `settings_organization: read` permission when tok… ## OpenAPI Specs - [openapi](https://docs.codeant.ai/openapi.json)