frontpage.
newsnewestaskshowjobs

Open Source @Github

fp.

Open in hackernews

Show HN: CodeAnt AI – AI Code Reviewer, that understand code and dependencies

https://www.youtube.com/watch?v=uprOvRUUudQ
3•Amartya_jha•1y ago
Over the last year, we’ve been building CodeAnt AI, working closely with engineering teams struggling with code review quality and speed.

Manual code reviews are slow and repetitive. Reviews today mostly look at what changed — not what the change actually impacts. With more AI-written code, it's getting worse: bigger PRs, faster cycles, less team context.

We wanted to rethink how code reviews are done: → Build structured knowledge of the codebase → Understand infra and dependency changes → Analyze blast radius automatically at PR time

What CodeAnt AI Does (Technical Overview)

Repository Indexing and Graph Building:

When a repo is added, we index the entire codebase and build Abstract Syntax Trees (ASTs).

We map upstream and downstream dependencies across files, functions, types, and modules.

We run custom lightweight language servers for multiple languages to support:

go_to_definition to find symbol declarations

find_all_references to locate usage points

fetch_signatures and fetch_types for richer semantic context

Pull Request Analysis:

When a PR is created:

We detect the diff.

We pull relevant upstream/downstream context for any changed symbols.

We gather connected function definitions, usage sites, interfaces, and infra files touched.

The LLM invokes the language servers (almost like a developer navigating manually) to reason over this structured context, not just the raw diff.

Code Quality Analysis:

Along with AI reasoning, we layer traditional static checks inside PRs:

Detecting duplicate code patterns

Finding dead, unused code blocks

Flagging overly complex functions

Goal: Make linting + AI suggestions seamless, without needing separate tools.

Security and Infrastructure Context:

We maintain an internal curated database of application security issues, mapped to OWASP and CWE.

We run Infrastructure-as-Code (IaC) security checks across:

Terraform, Kubernetes, Docker, CloudFormation, Ansible

You can optionally connect cloud accounts (AWS, GCP, Azure):

We scan your live cloud infra for misconfigurations

We pull cloud resource context into PRs (e.g., when a Terraform PR changes a live VPC rule, we show the potential blast radius).

We monitor End-of-Life (EOL) libraries and third-party package vulnerabilities by scanning the National Vulnerability Database (NVD) every 20 minutes and flagging at PR time.

In short: We try to automate how an experienced developer would actually review a change: → Understand the code structure → Understand where it’s used → Understand how infra/cloud gets affected → Catch quality, security, and complexity issues before merge — without needing extra dashboards or tools.

Teams using CodeAnt AI have reported 50%+ faster code reviews while finding deeper and more actionable problems earlier.

Would love feedback from the HN community — both technical and critical are welcome.

Thanks for checking it out!

Fermi.gg – Daily game based on the "Fermi estimation" technique

https://fermi.gg
1•epaga•3m ago•0 comments

Everything Feels Fake – Here's Why: The Power Elite Playbook [video]

https://www.youtube.com/watch?v=P33-rjgOXzg
1•enemyz0r•8m ago•0 comments

How to Unslop a Commit?

1•blackbit•12m ago•0 comments

Plain Text Sports

https://plaintextsports.com/
1•tosh•12m ago•0 comments

ProductFight – Productfight.lol

2•thegeekybaniya•12m ago•0 comments

Ask HN: What do your agents do?

1•exyo•13m ago•0 comments

New wild cat species discovered – with only one known living member

https://www.bbc.com/news/articles/c6x2zgv9rr4ro
1•drgo•13m ago•0 comments

The Filename`IBHashImageName` Breaks iOS[video]

https://www.youtube.com/watch?v=Dt4o7hz0B60
1•sharma-arjun•16m ago•0 comments

The Front Page of the Internet Is Up for Grabs

https://idiallo.com/byte-size/the-front-page-of-the-internet
1•garo-pro•16m ago•0 comments

VIPR RNA-guided DNA recognition by noncontiguous geometric triplex formation

https://www.science.org/doi/10.1126/science.aei3472
1•gone35•17m ago•0 comments

Cloudron 10 – A decade of self-hosting

https://blog.cloudron.io/cloudron-10-a-decade-of-self-hosting/
2•gramakri2•21m ago•0 comments

Why Beyond Just RAG?

https://medium.com/@NikoZero11/your-rag-pipeline-doesnt-need-more-retrieval-it-needs-better-decis...
1•Savanjj•21m ago•0 comments

She's Leaving Me Because I Never Called Her Beautiful

https://etechx.co.ke/shes-leaving-me-because-i-never-called-her-beautiful
1•jameszx•21m ago•0 comments

Sometimes, It Takes Too Long Before the Sun Rises

https://etechx.co.ke/sometimes-it-takes-too-long-before-the-sun-rises
1•jameszx•22m ago•0 comments

Open Source / ClosedSource / ClaudeSource?

1•mtnielsendk•27m ago•0 comments

Jev vs. Luna for AI Observability

https://fatliverfreddy.substack.com/p/a-different-kind-of-model-for-ai
1•fatliverfreddy•27m ago•0 comments

The Making of Roger Scruton

https://firstthings.com/the-making-of-roger-scruton/
1•prismatic•27m ago•0 comments

Asking Authors About Their Own Papers (TMLR)

https://medium.com/@TmlrOrg/asking-authors-about-their-own-papers-3d2e04e5dee0
1•u1hcw9nx•30m ago•1 comments

Running Doom on Linux inside TinyEmu inside Docker inside WASM inside Electron

https://deepclause.substack.com/p/running-doom-on-risk-v-linux-inside
1•schmuhblaster•30m ago•0 comments

OpenTelemetry everywhere: Migrating a metrics platform at scale

https://www.cncf.io/blog/2026/09/17/opentelemetry-everywhere-migrating-a-metrics-platform-at-scale/
1•iamsyr•34m ago•0 comments

Former Labour deputy leader Tom Watson joins Palantir

https://www.theguardian.com/politics/2026/sep/18/former-labour-deputy-leader-tom-watson-joins-pal...
2•edward•34m ago•0 comments

Free Unlimited AI Text to Speech – No Sign Up

https://www.aitexttospeech.net/
2•wsm123456•37m ago•0 comments

P2panda – Building blocks for P2P apps

https://p2panda.org/
2•Ey7NFZ3P0nzAe•38m ago•1 comments

Zcode-silent-workspace-snapshot-upload

https://blog.ferstar.org/posts/zcode-silent-workspace-snapshot-upload/
1•xiebaiyuan•38m ago•0 comments

The More It Says, the More You Pay: A Black-Box Audit of Token Inflation in LLM

https://arxiv.org/abs/2609.20370
1•sbulaev•39m ago•0 comments

Here’s How an OpenAI Model Went Rogue and Hacked Hugging Face

https://www.hacktron.ai/blog/here-is-how-openai-model-hacked-huggingface
1•aeroscissorz1•40m ago•0 comments

I made a stupid simple app that charges me real money if I give up on focusing

https://quitcost.com/
1•pekingzcc•42m ago•0 comments

LLMs respond differently to harmful prompts when AI watermarking is used

https://arstechnica.com/security/2026/09/ai-text-watermarking-can-make-models-more-vulnerable-to-...
1•joozio•44m ago•0 comments

Smart devices can testify against you: How data from robots is used in court

https://www.the-independent.com/tech/robot-vacuum-fitbit-smart-device-data-trial-b3052060.html
1•Markoff•45m ago•0 comments

GPT-6 Astra solves 1918 ciphertext message from WW1

https://twitter.com/deredleritt3r/status/2100608983492862201
3•punnerud•47m ago•0 comments